SSLBL - SSL Blacklist Logo

SSLBL - SSL Blacklist

0
Free
Visit Website

The SSL Blacklist (SSLBL) is a project of abuse.ch that detects malicious SSL connections by identifying and blacklisting SSL certificates used by botnet C&C servers. It also identifies JA3 fingerprints to detect and block malware botnet C&C communication on the TCP layer. The platform provides a list of malicious SSL certificates, JA3 fingerprints, and statistics on botnet C&C operations that leverage SSL to encrypt botnet C&C traffic. The platform offers several features, including: * Identifying botnet command and control (C&C) infrastructure * Detecting botnet C&C communication * Providing insights into botnet C&C operations that leverage SSL to encrypt botnet C&C traffic

FEATURES

ALTERNATIVES

A threat hunting tool for Windows event logs to detect APT movements and decrease the time to uncover suspicious activity.

A repository of Yara signatures under the GNU-GPLv2 license for the cybersecurity community.

A framework for managing cyber threat intelligence in structured formats.

Search engine for Windows executable files and hashes, providing insights into file prevalence, behavior, and security information.

A sophisticated npm attack attributed to North Korean threat actors, targeting technology firms and their employees.

Real-time monitoring tool for newly issued SSL certificates.

A collection of Yara rules for the Burp Yara-Scanner extension to identify malicious software on websites.

Repository of automatically generated YARA rules from Malpedia's YARA-Signator with detailed statistics.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved