SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903208804Rev: 10 views
Sourcesslbl/ssl-fp-blacklist
CreatedJanuary 31, 2026
UpdatedJanuary 31, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"07:e8:28:13:71:95:19:b2:c4:f1:d1:46:07:e4:cf:68:3c:fc:e0:71"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/07e82813719519b2c4f1d14607e4cf683cfce071/; sid:903208804; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!