← GlobalSign nv-sa cases
Bugzilla #1917896
Certificate Problem Report
GlobalSign: Incorrect whois information for TLD
RESOLVED
FIXED
GlobalSign nv-sa
AI Summary
GlobalSign identified incorrect WHOIS information for the .mobi TLD, which could have led to potential mis-issuance of certificates. Upon discovering the issue, they promptly updated their WHOIS references and conducted a thorough audit of their WHOIS configurations. Although no mis-issuances were confirmed, they halted issuance for .mobi domains and implemented a change management process to monitor WHOIS server records. The incident has been resolved, and a full incident report is expected to be released shortly.
Chronology
- Email from Ars Technica received regarding WHOIS server hijacking.
- WHOIS references for .mobi updated to IANA server.
- Audit of WHOIS configuration completed.
- Full incident report expected to be released.
Participants
Christophe Bonjean
Arvid Vermote
Amir Aamidi
M. Palmer
External References
Similar Local Cases
GlobalSign: Invalid stateOrProvinceName value
GlobalSign: misalignment of CRL URL in CCADB with issued certificates
GlobalSign: OCSP responder certificates with more than 64 characters in CN
GlobalSign: CRLs reported in CCADB unavailable
GlobalSign: OV TLS certificate with incorrect countryName value for organization
GlobalSign: Invalid countryName
GlobalSign: Invalid stateOrProvinceName and locality pair
GlobalSign: EV certificates with serialNumber Government Entity and businessCategory Private Organization