SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903208413Rev: 10 views
Sourcesslbl/ssl-fp-blacklist
CreatedNovember 8, 2025
UpdatedNovember 8, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"b7:9e:15:fd:62:d0:de:c5:9d:16:b4:82:da:07:dd:6d:ad:90:a1:43"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/b79e15fd62d0dec59d16b482da07dd6dad90a143/; sid:903208413; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!