SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedMarch 27, 2026
UpdatedMarch 27, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"5b:2a:56:2d:69:ed:cf:47:f0:50:79:0a:2b:8a:2a:04:81:6e:d1:e5"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/5b2a562d69edcf47f050790a2b8a2a04816ed1e5/; sid:903209370; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!