RULE(RULE ID:716982)

Rule General Information
Release Date: 2024-10-28
Rule Name: Malicious SSL Cert Detection (AsyncRAT Trojan Server)
Severity:
CVE ID:
Rule Protection Details
Description: AsyncRAT is an open source remote Trojan, and because of its open source characteristics, it is one of the most common remote Trojan used by attackers. Its typical functions are: key recording, horizontal translation and load delivery. This rule detects AsyncRAT Trojan communication based on the identification of malicious SSL certificates.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.