SSLBL: Malicious SSL certificate detected (PureLogsStealer C&C)

SID: 903210556Rev: 1EnabledDerived0 views
Filesslblacklist_tls_cert.rules
CreatedAugust 31, 2026
UpdatedAugust 31, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (PureLogsStealer C&C)"; tls_cert_fingerprint; content:"d2:68:bd:42:f6:86:34:bb:22:6b:e6:b5:6d:c4:b7:c1:3e:93:0d:2a"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/d268bd42f68634bb226be6b56dc4b7c13e930d2a/; sid:903210556; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!