SSLBL: Malicious SSL certificate detected (RatonRAT C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedApril 15, 2026
UpdatedApril 15, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (RatonRAT C&C)"; tls_cert_fingerprint; content:"0d:b9:a3:18:ab:da:43:51:b8:44:91:53:5b:d4:d9:ee:01:a8:8b:fa"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/0db9a318abda4351b84491535bd4d9ee01a88bfa/; sid:903209554; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!