SSLBL: Malicious SSL certificate detected (GhostPulse C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedMay 14, 2026
UpdatedMay 14, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (GhostPulse C&C)"; tls_cert_fingerprint; content:"a5:85:6e:3e:ec:60:23:b7:04:4e:2c:8f:fb:c3:09:46:90:d9:b0:f3"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/a5856e3eec6023b7044e2c8ffbc3094690d9b0f3/; sid:903209649; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!