SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedNovember 12, 2025
UpdatedNovember 12, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)"; tls_cert_fingerprint; content:"25:af:c7:5c:49:3a:d5:35:1d:5c:2c:43:b2:74:46:cd:de:dd:6a:83"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/25afc75c493ad5351d5c2c43b27446cddedd6a83/; sid:903208422; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!