diff --git a/ssl/c2/asyncrat-c2.yaml b/ssl/c2/asyncrat-c2.yaml index c8433ccfbe..dd0fbfa240 100644 --- a/ssl/c2/asyncrat-c2.yaml +++ b/ssl/c2/asyncrat-c2.yaml @@ -1,7 +1,7 @@ id: asyncrat-c2 info: - name: Detect SSL Certificate AsyncRAT C2 + name: AsyncRAT C2 - Detect author: johnk3r severity: info description: | @@ -12,6 +12,7 @@ info: max-request: 1 verified: "true" shodan-query: ssl:"AsyncRAT Server" + censys-query: services.tls.certificates.leaf_data.issuer.common_name:AsyncRat tags: c2,ir,osint,malware ssl: