← DigiCert cases
Bugzilla #1937693 · Certificate Misissuance
DigiCert now China CCP Dog,PEM uploaded
DigiCert · RESOLVED
AI Summary
A report was submitted regarding a potential certificate misissuance by DigiCert, claiming that a man-in-the-middle attack was facilitated using a DigiCert certificate for Facebook. The reporter provided evidence in the form of PEM files and expressed concerns about the implications of such a situation. However, upon review, it was determined that the certificate was valid and logged in Certificate Transparency, leading to the case being marked as invalid.
Chronology
- Case created and evidence submitted
- Case reviewed and closed as invalid
Participants
yellowwhite@tutamail.com
hablutzel1@gmail.com
bwilson@mozilla.com
External References
Similar Local Cases
DigiCert: Unclear Disclosure of CAA Issuer Domain Names
DigiCert / Verizon: Reserved/Intranet domain name
DigiCert: "Some-State" in stateOrProvinceName
DigiCert: Mis-Issuance Rekey certificates
DigiCert / Swiss Government: CommonName not in SANs
DigiCert / Wells Fargo: Invalid DNS names
DigiCert / Justica: Invalid DNS names
DigiCert / Telecom Italia: Several Problems