← Global Digital Cybersecurity Authority Co., Ltd. (Formerly Guang Dong Certificate Authority (GDCA)) cases
Bugzilla #1467414 Certificate Misissuance

GDCA: Misissuance of certificates with small RSA keys

RESOLVED FIXED Global Digital Cybersecurity Authority Co., Ltd. (Formerly Guang Dong Certificate Authority (GDCA))
AI Summary

Global Digital Cybersecurity Authority Co., Ltd. (GDCA) misissued seven certificates with RSA-1024 keys, which violate the Baseline Requirements. The issue was reported by Rob Stradling on June 7, 2018, prompting GDCA to suspend the issuance of DV SSL certificates and investigate. They confirmed the misissuance and revoked the affected certificates the same day. GDCA implemented changes to their issuance system to prevent future occurrences, including integrating pre-issuance linting tools and enhancing their change management processes. The DV SSL certificate issuance service was resumed on June 27, 2018, with new checks in place.

Model: gpt-4o-mini Generated: 2026-06-13 17:51 UTC Confidence: 0.95
Chronology
  1. Rob Stradling reported misissued certificates to GDCA.
  2. GDCA suspended issuance of DV SSL certificates.
  3. GDCA confirmed misissuance and revoked affected certificates.
  4. GDCA resumed DV SSL certificate issuance with new checks.
Participants
Rob Stradling Xiu Lei
External References
Similar Local Cases
#1690807 RESOLVED Certificate Misissuance Opened 2021-02-04 · Closed 2023-02-22 · 51% similar
GlobalSign: RSA-1024 leaf certificate issued after 2013-12-31
#1475563 RESOLVED Certificate Misissuance Opened 2018-07-13 · Closed 2022-11-14 · 48% similar
GDCA: Misissuance of certificates with IP address
#1684442 RESOLVED Certificate Misissuance Opened 2020-12-29 · Closed 2023-02-22 · 48% similar
DigiCert: SHA-1 intermediate issued after 2016-01-01
#1887096 RESOLVED Certificate Misissuance Opened 2024-03-22 · Closed 2024-09-06 · 47% similar
Chunghwa Telecom: Wrong Extended Key Usage setting by GTLSCA
#2011865 RESOLVED Certificate Misissuance Opened 2026-01-22 · Closed 2026-03-17 · 45% similar
TrustAsia: SSL DV Mis-issuance against CP/CPS (IPAddress)
#1929189 RESOLVED Certificate Misissuance Opened 2024-11-05 · Closed 2025-07-01 · 44% similar
SwissSign: S/MIME certificates deviate from CPR
#1979475 RESOLVED Certificate Misissuance Opened 2025-07-26 · Closed 2026-01-20 · 43% similar
Microsoft PKI Services: End Entity Certificate Mis-issuance against CPS (BasicConstraints)
#1335132 RESOLVED Certificate Misissuance Opened 2017-01-30 · Closed 2023-02-22 · 43% similar
DigiCert: Verizon mis-issued test certificates

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action