← Microsec Ltd. cases
Bugzilla #1651632 Certificate Misissuance

Microsec: Failure to revoke noncompliant ICA within 7 days

RESOLVED FIXED Microsec Ltd.
AI Summary

Microsec Ltd. faced challenges in revoking noncompliant Intermediate Certificate Authority (ICA) certificates within the mandated 7-day period after being notified of misissued OCSP responder certificates. Although two affected ICA certificates were revoked promptly, two others could not be revoked due to significant user impact. The company worked on alternative solutions and ultimately revoked the misissued certificates and destroyed the affected keys under independent supervision. The incident was resolved with all affected certificates revoked and keys destroyed.

Model: gpt-4o-mini Generated: 2026-06-13 21:12 UTC Confidence: 0.95
Chronology
  1. Microsec notified of misissued OCSP responder certificates.
  2. Bug filed regarding the failure to revoke noncompliant ICA.
  3. Microsec destroyed all affected ICA keys.
Participants
dr. Sándor SZŐKE bwilson@mozilla.com
Similar Local Cases
#1886257 RESOLVED Certificate Misissuance Opened 2024-03-19 · Closed 2024-08-28 · 58% similar
Microsec: Misissuance an EV TLS certificate without CPSuri
#1676352 RESOLVED Certificate Misissuance Opened 2020-11-10 · Closed 2023-02-22 · 58% similar
Microsec: Certificate validity period greater than 398 days
#1512270 RESOLVED Certificate Misissuance Opened 2018-12-05 · Closed 2023-02-22 · 58% similar
Microsec: Validity period greater than 825 days
#1728384 RESOLVED Certificate Misissuance Opened 2021-08-31 · Closed 2023-02-22 · 57% similar
Microsec: Misissuance of one OV certificate with Key Usage KeyEncipherment
#1391055 RESOLVED Certificate Misissuance Opened 2017-08-16 · Closed 2023-02-22 · 57% similar
Microsec: Non-BR-Compliant Certificate Issuance
#1927384 RESOLVED Certificate Misissuance Opened 2024-10-28 · Closed 2025-01-29 · 46% similar
iTrusChina: Issuance of certificates using keys previously reported as compromised
#1828105 RESOLVED Certificate Misissuance Opened 2023-04-14 · Closed 2023-06-30 · 46% similar
Telia: Misissued certificate - wrong OrganizationName value "Hair 8 Brains"
#1724520 RESOLVED Certificate Misissuance Opened 2021-08-06 · Closed 2023-02-22 · 46% similar
SSL.com: Incorrect Domain Validation for 1 TLS certificate with FQDN having "www." string within domain labels

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action