← Taiwan-CA Inc. (TWCA) cases
Bugzilla #1883620 Certificate Problem Report

TWCA: TLS EV certificates with invalid subject attribute order

RESOLVED FIXED Taiwan-CA Inc. (TWCA)
AI Summary

TWCA identified an issue with 90 EV TLS certificates that were issued with a nonconforming subject attribute order, violating BR Section 7.1.4.2. Following the report of this potential mis-issuance on March 4, 2024, TWCA halted the issuance of EV TLS certificates and patched their issuing system. They have since revoked or expired 77 of the affected certificates and are working on revoking the remaining 13 by March 23, 2024. The incident highlighted the need for improved monitoring and compliance checks within their certificate issuance process.

Model: gpt-4o-mini Generated: 2026-06-13 20:52 UTC Confidence: 0.95
Chronology
  1. TLS BR 2.0.0 became effective.
  2. Email reporting the issue received.
  3. Compliance team confirmed the issue and stopped issuance of EV TLS certificates.
  4. All affected certificates identified.
  5. 77 affected certificates revoked or expired.
  6. All affected certificates in this incident have been revoked.
Participants
Hao-Chun Li hcli@twca.com.tw chtsai@twca.com.tw
Related Bugzilla IDs Mentioned
Similar Local Cases
#1886110 RESOLVED Certificate Problem Report Opened 2024-03-19 · Closed 2025-02-14 · 61% similar
TWCA: Revocation delay for TLS certificates with non-critical basicConstraints
#1885132 RESOLVED Certificate Problem Report Opened 2024-03-13 · Closed 2024-07-12 · 61% similar
TWCA: TLS certificates with non-critical basicConstraints
#1884568 RESOLVED Certificate Problem Report Opened 2024-03-10 · Closed 2025-02-14 · 60% similar
TWCA: Revocation delay for EV TLS certificates with invalid subject attribute order
#1793445 RESOLVED Certificate Problem Report Opened 2022-10-03 · Closed 2023-04-19 · 59% similar
TWCA: "unknown" OCSP response for issued certificates
#1848240 RESOLVED Certificate Problem Report Opened 2023-08-10 · Closed 2023-11-02 · 59% similar
TWCA: Undisclosed CA
#2004521 RESOLVED Certificate Problem Report Opened 2025-12-06 · Closed 2026-01-13 · 58% similar
TWCA: CA Certificate not published in DER Encoded Format
#1886624 RESOLVED Certificate Problem Report Opened 2024-03-20 · Closed 2025-06-04 · 48% similar
certSIGN: Certificates with incorrect Subject attribute order
#1864204 RESOLVED Certificate Problem Report Opened 2023-11-10 · Closed 2024-05-10 · 45% similar
Buypass: TLS certificates with incorrect Subject attribute order

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action