← iTrusChina Co., Ltd. cases
Bugzilla #1927384 Certificate Misissuance

iTrusChina: Issuance of certificates using keys previously reported as compromised

RESOLVED FIXED iTrusChina Co., Ltd.
AI Summary

iTrusChina issued 41 certificates using private keys that had previously been reported as compromised, violating TLS BRs. The incident was triggered by a system bug that incorrectly set the revocation reason to 'keyCompromise' for non-compromised keys, compounded by staff misunderstanding of relevant requirements. Following the discovery, iTrusChina has revoked all affected certificates and implemented training and system updates to prevent future occurrences. The company has completed all action items related to this incident and is requesting closure.

Model: gpt-4o-mini Generated: 2026-06-13 21:13 UTC Confidence: 1.00
Chronology
  1. iTrusChina notified by Google about potential mis-issued certificates.
  2. Investigation started and preliminary incident report filed.
  3. Incident report detailing root causes and remediation published.
  4. Incident report closure summary completed.
  5. All action items completed; request for incident closure submitted.
Participants
vTrus_contact@itrus.cn dzacharo@harica.gr bwilson@mozilla.com rob@sectigo.com
External References
Similar Local Cases
#1895006 RESOLVED Certificate Misissuance Opened 2024-05-03 · Closed 2024-08-23 · 62% similar
IdenTrust: unintended creation of a Root CA certificate
#1838371 RESOLVED Certificate Misissuance Opened 2023-06-14 · Closed 2024-01-19 · 55% similar
CFCA: certificate with an incorrect OrganizationName
#1836694 RESOLVED Certificate Misissuance Opened 2023-06-05 · Closed 2023-09-29 · 54% similar
Hongkong Post: Invalid EV cert businessCategory
#1860750 RESOLVED Certificate Misissuance Opened 2023-10-24 · Closed 2023-11-08 · 54% similar
SwissSign: EV code in JurisdiktionStateOrProvinceName
#2012157 RESOLVED Certificate Misissuance Opened 2026-01-23 · Closed 2026-03-08 · 52% similar
Actalis: Issuance of certificate using keys previously reported as compromised
#1986968 RESOLVED Certificate Misissuance Opened 2025-09-04 · Closed 2026-04-06 · 51% similar
Financijska agencija (Fina): Mis-issued certificates
#1943596 RESOLVED Certificate Misissuance Opened 2025-01-24 · Closed 2025-05-01 · 50% similar
HARICA: S/MIME certificate issuance with incorrect commonName
#1909948 RESOLVED Certificate Misissuance Opened 2024-07-25 · Closed 2024-10-31 · 49% similar
GoDaddy: Edge Case for Data Reuse Outside of Timeframes

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action