SSLBL: Malicious SSL certificate detected (ACRStealer C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedDecember 3, 2025
UpdatedDecember 3, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (ACRStealer C&C)"; tls_cert_fingerprint; content:"a6:93:a9:ac:68:d1:8c:e4:b5:6a:61:10:12:4c:92:d8:29:dc:27:e5"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/a693a9ac68d18ce4b56a6110124c92d829dc27e5/; sid:903208513; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!