← Global Digital Cybersecurity Authority Co., Ltd. (Formerly Guang Dong Certificate Authority (GDCA)) cases
Bugzilla #1888060 Certificate Misissuance

GDCA: Issuance of SSL/TLS certificates with Non-critical Basic Constraints

RESOLVED FIXED Global Digital Cybersecurity Authority Co., Ltd. (Formerly Guang Dong Certificate Authority (GDCA))
AI Summary

Global Digital Cybersecurity Authority Co., Ltd. (GDCA) issued 20 SSL/TLS certificates between September 15 and October 8, 2023, with the Basic Constraints extension included but not marked as Critical. This misissuance was identified following a Certificate Problem Report received on March 26, 2024. GDCA has since revoked the problematic certificates and updated their compliance monitoring processes. They have also committed to deploying additional linting tools to prevent similar issues in the future.

Model: gpt-4o-mini Generated: 2026-06-13 21:22 UTC Confidence: 0.95
Chronology
  1. First problematic certificate issued.
  2. Last problematic certificate issued.
  3. Certificate Problem Report received.
  4. All problematic certificates revoked or expired.
  5. Closure summary provided.
Participants
capoc@gdca.com.cn ryandickson@google.com mathew.hodson@gmail.com bwilson@mozilla.com
External References
Similar Local Cases
#1895006 RESOLVED Certificate Misissuance Opened 2024-05-03 · Closed 2024-08-23 · 58% similar
IdenTrust: unintended creation of a Root CA certificate
#1662382 RESOLVED Certificate Misissuance Opened 2020-09-01 · Closed 2023-02-22 · 58% similar
GDCA: Incorrect Value in organizationName Field
#1724520 RESOLVED Certificate Misissuance Opened 2021-08-06 · Closed 2023-02-22 · 56% similar
SSL.com: Incorrect Domain Validation for 1 TLS certificate with FQDN having "www." string within domain labels
#1871113 RESOLVED Certificate Misissuance Opened 2023-12-20 · Closed 2024-05-15 · 56% similar
SSL.com: Issuance of one Sponsored-Validated S/MIME certificate with organization information in givenName and surName of the subjectDN
#1860750 RESOLVED Certificate Misissuance Opened 2023-10-24 · Closed 2023-11-08 · 55% similar
SwissSign: EV code in JurisdiktionStateOrProvinceName
#1546253 RESOLVED Certificate Misissuance Opened 2019-04-23 · Closed 2023-02-22 · 52% similar
GDCA: Authentication of Organization Identity Failure for an OV Certificate
#1943596 RESOLVED Certificate Misissuance Opened 2025-01-24 · Closed 2025-05-01 · 50% similar
HARICA: S/MIME certificate issuance with incorrect commonName
#1696872 RESOLVED Certificate Misissuance Opened 2021-03-08 · Closed 2025-03-20 · 50% similar
FNMT: Missisuance of web site certificates without CA/Browser Forum’s reserved policy OID

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action