← SECOM Trust Systems CO., LTD. cases
Bugzilla #1931515 Certificate Problem Report

SECOM: Issuance of TLS server certificates using keys previously compromised

RESOLVED FIXED SECOM Trust Systems CO., LTD.
AI Summary

SECOM Trust Systems faced a mis-issuance of TLS server certificates using previously compromised keys, violating Baseline Requirements. Upon notification on November 13, 2024, SECOM revoked nine valid certificates within 24 hours. The incident was attributed to a malfunction in their public key check mechanism, which allowed the same key to be reused with different subject DNs. SECOM has since updated their systems to prevent such occurrences and plans to enhance their mechanisms further by January 31, 2025.

Model: gpt-4o-mini Generated: 2026-06-13 21:09 UTC Confidence: 0.90
Chronology
  1. Informed about mis-issuance of TLS server certificates.
  2. Revoked nine valid TLS server certificates.
  3. Planned to enhance mechanisms to prevent key reuse.
  4. Completed updates to prevent reuse of previously used public keys.
Participants
SECOM Trust Systems - ONO Fumiaki
External References
Similar Local Cases
#1897346 RESOLVED Certificate Problem Report Opened 2024-05-17 · Closed 2024-07-24 · 60% similar
SECOM: Difference in upper and lower case between CN field and SAN
#2004654 RESOLVED Certificate Problem Report Opened 2025-12-08 · Closed 2026-02-12 · 59% similar
SECOM: Invalid stateOrProvinceName
#1950574 RESOLVED Certificate Problem Report Opened 2025-02-26 · Closed 2025-09-15 · 59% similar
SECOM: S/MIME CA Modified Opinion Report of Cybertrust Japan (CTJ)
#1986911 RESOLVED Certificate Problem Report Opened 2025-09-04 · Closed 2025-10-22 · 57% similar
SECOM: No updated CRLs published for Cybertrust Japan SureMail CA G4
#1524452 RESOLVED Certificate Problem Report Opened 2019-02-01 · Closed 2023-02-22 · 51% similar
SECOM: certificate for .test TLD
#1649962 RESOLVED Certificate Problem Report Opened 2020-07-02 · Closed 2023-02-22 · 51% similar
SECOM: Incorrect OCSP Delegated Responder Certificate
#1695993 RESOLVED Certificate Problem Report Opened 2021-03-02 · Closed 2024-06-30 · 51% similar
SECOM: Outdated audit statements for intermediate certificates
#1398259 RESOLVED Certificate Problem Report Opened 2017-09-08 · Closed 2023-02-22 · 50% similar
SECOM: Non-BR-Compliant OCSP Responders

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action