← Asseco Data Systems S.A. cases
Bugzilla #1433118 Certificate Problem Report

Asseco DS / Certum: certificate issued by Certum with compromised private key not revoked (windows10.microdone.cn)

RESOLVED FIXED Asseco Data Systems S.A.
AI Summary

A certificate issued by Certum for the domain windows10.microdone.cn was reported as compromised due to the private key being embedded in software. The report was initially ignored, leading to concerns about the responsiveness of Certum. After further escalation, the certificate was revoked. The issue was attributed to an incorrect contact email on Certum's website, which caused the initial report to be misdirected.

Model: gpt-4o-mini Generated: 2026-06-13 17:43 UTC Confidence: 0.90
Chronology
  1. Initial report of compromised certificate submitted.
  2. Certum representative added to the bug.
  3. Certificate revoked after escalation.
  4. Investigation revealed incorrect contact email caused initial report to be overlooked.
Participants
Hanno Boeck Wayne Thayer Arkadiusz Ławniczak Kathleen Wilson
Similar Local Cases
#1427034 RESOLVED Certificate Problem Report Opened 2017-12-25 · Closed 2024-05-09 · 60% similar
DigiCert: localbattle.net certificate with private key in software / issued by Digicert
#1495518 RESOLVED Certificate Problem Report Opened 2018-10-01 · Closed 2023-02-22 · 59% similar
Asseco DS / Certum: Unallowed key usage for EC public key (Key Encipherment)
#1567062 RESOLVED Certificate Problem Report Opened 2019-07-18 · Closed 2023-02-22 · 56% similar
Asseco DS / Certum: inconsistent disclosure of externally-operated intermediate
#1511459 RESOLVED Certificate Problem Report Opened 2018-11-30 · Closed 2023-02-22 · 56% similar
Asseco DS / Certum: Corrupted certificates
#1421820 RESOLVED Certificate Problem Report Opened 2017-11-29 · Closed 2022-11-14 · 56% similar
Microsoft DSRE PKI: Microsoft shares wildcard certificates among cloud instances
#1442462 RESOLVED Certificate Problem Report Opened 2018-03-02 · Closed 2022-11-14 · 54% similar
CCADB: Bogus CAA info by D-Trust
#1320943 RESOLVED Certificate Problem Report Opened 2016-11-29 · Closed 2022-11-14 · 54% similar
Add revoked certificate Certification Authority of WoSign G2 issued by Certum CA root to OneCRL
#1398259 RESOLVED Certificate Problem Report Opened 2017-09-08 · Closed 2023-02-22 · 53% similar
SECOM: Non-BR-Compliant OCSP Responders

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action