logo

The Rise in SSL-based Threats

ID: f249a1f0-1063-55af-868c-bef5cdcc5993

STIX ID: report--f249a1f0-1063-55af-868c-bef5cdcc5993

Feed Name: Zscaler Security Research Blog

Threat Score
70/100

Date Published: 2025-04-02

Date Updated: 2026-05-01

...
...

This Zscaler ThreatLabZ report summarizes observations from August 2016 to January 2017 showing a substantial and growing use of SSL/TLS by malicious actors to hide exploit kits, phishing pages, malware callbacks, and adware distribution. The cloud blocked an average of ~600,000 SSL-backed malicious activities per day (with spikes near 2 million), and the report documents specific malware families using SSL or embedded certificates, adware that installs root CAs to intercept HTTPS, and the operational challenges organizations face in inspecting encrypted traffic.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.