← Microsec Ltd. cases
Bugzilla #1865880
Audit Related
Microsec: Findings in 2023 Audit
RESOLVED
FIXED
Microsec Ltd.
AI Summary
Microsec Ltd. underwent an audit in 2023, revealing a misclassification of a vulnerability in their JIRA system, which affected their accountability for fix times. The organization has since implemented new rules for vulnerability categorization and established an automatic reporting system to ensure compliance. All non-conformities were addressed prior to the issuance of the audit attestation. The audit incident report was opened to document the findings and actions taken, with ongoing updates provided to the community.
Chronology
- Audit finding regarding incomplete marking of a threat.
- Finding reported in the Attestation Letter.
- Audit Incident Report opened in Mozilla.
- Report on the final solution submitted to the auditor.
Participants
dr. Sándor SZŐKE
External References
Similar Local Cases
Microsec: preliminary Audit Letter Validation
Audit info for Microsec e-Szigno Root CA 2009
PKIoverheid: TSP CIBG Findings in 2025 ETSI Audit - Incident Report #5 – Risk Management
Telia: Findings in 2024 Audit
SwissSign: Findings in 2024 Audit
SSL.com: Findings in 2023 audit
Chunghwa Telecom: Findings in 2025 WebTrust Audit - GTLSCA Audit Incident Report #4 - Missing evaluation for third parties
Chunghwa Telecom: Findings in 2025 WebTrust Audit - GTLSCA Audit Incident Report #3 - Missing vulnerability scan