SSLBL: Malicious SSL certificate detected (RatonRAT C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedFebruary 24, 2026
UpdatedFebruary 24, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (RatonRAT C&C)"; tls_cert_fingerprint; content:"a8:db:58:ee:87:30:d4:5f:d0:1e:54:3d:0b:d4:bc:9f:6d:43:38:ff"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/a8db58ee8730d45fd01e543d0bd4bc9f6d4338ff/; sid:903209027; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!