← Cybertrust Japan / JCSI cases
Bugzilla #1805866
Certificate Misissuance
SECOM: One of the EV certificate was mis-issued with the incorrect Registration Number by Cybertrust Japan (CTJ)
RESOLVED
FIXED
Cybertrust Japan / JCSI
AI Summary
Cybertrust Japan (CTJ) reported a mis-issuance of an EV certificate that included an incorrect Registration Number. The issue was identified during the validation process, leading to the revocation of the problematic certificate within five days. Subsequent inspections revealed a total of seven mis-issued certificates, all of which were revoked promptly. CTJ has implemented a validation support tool to enhance accuracy and prevent future occurrences. The ultimate remediation of the RA system was completed by January 2023.
Chronology
- Mis-issued certificate identified
- Problematic certificate revoked
- Inspection completed, total of 7 mis-issued certificates found
- All mis-issued certificates revoked
- Technical control implemented
Participants
SECOM Trust Systems - ONO Fumiaki
External References
Similar Local Cases
SECOM: One of the EV certificate was mis-issued with the incorrect Registration Number by Cybertrust Japan (CTJ)
SECOM: Non conformant SCT Encoding Due to SCT Modification by Cybertrust Japan (CTJ)
SECOM: Non conformant SCT Encoding Due to SCT Modification by Cybertrust Japan (CTJ)
SwissSign: Mis-Issuance of S/MIME certificates
SECOM: Certificates Issued with lower case value in subject:countryName
HARICA: S/MIME certificate issuance with incorrect commonName
Sectigo: Wrong usage of LEI records for the issuance of SMIME Certificates
SwissSign: EV JurisdictionStateOrProvinceName - one certificate not selected for revocation