SSLBL: Malicious SSL certificate detected (RatonRAT C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedFebruary 23, 2026
UpdatedFebruary 23, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (RatonRAT C&C)"; tls_cert_fingerprint; content:"a0:8d:28:fa:68:b3:45:fc:17:f8:7b:6e:00:a3:79:e6:49:16:20:69"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/a08d28fa68b345fc17f87b6e00a379e649162069/; sid:903209021; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!