← Chunghwa Telecom cases
Bugzilla #2008782 Audit Related

Chunghwa Telecom: Findings in 2025 WebTrust Audit - GTLSCA Audit Incident Report #1 - mass certificate revocation plan

RESOLVED FIXED Chunghwa Telecom
AI Summary

Chunghwa Telecom's GTLSCA faced issues during a 2025 WebTrust audit regarding its mass certificate revocation plan, which was not fully compliant with CAB requirements. The plan lacked necessary approvals and documentation, impacting its readiness for timely mass revocation in case of incidents. The non-compliance was not due to a security breach but rather procedural gaps. Chunghwa Telecom has since updated its procedures and completed necessary drills to ensure compliance, and all action items have been addressed.

Model: gpt-4o-mini Generated: 2026-06-13 21:35 UTC Confidence: 0.90
Chronology
  1. Non-compliance start date
  2. Non-compliance identified date
  3. Non-compliance end date
  4. Audit Readiness Alignment Checklist completed
  5. Document Governance Improvements completed
  6. Incident report closure
Participants
Tsung-Min Kuo
External References
Similar Local Cases
#2008799 RESOLVED Audit Related Opened 2026-01-06 · Closed 2026-02-19 · 60% similar
Chunghwa Telecom: Findings in 2025 WebTrust Audit - GTLSCA Audit Incident Report #3 - Missing vulnerability scan
#2008788 RESOLVED Audit Related Opened 2026-01-06 · Closed 2026-02-11 · 60% similar
Chunghwa Telecom: Findings in 2025 WebTrust Audit - GTLSCA Audit Incident Report #2 - Domain validation records without the TLS BR version
#2008803 RESOLVED Audit Related Opened 2026-01-06 · Closed 2026-02-12 · 59% similar
Chunghwa Telecom: Findings in 2025 WebTrust Audit - GTLSCA Audit Incident Report #4 - Missing evaluation for third parties
#1483068 RESOLVED Audit Related Opened 2018-08-13 · Closed 2022-12-08 · 47% similar
Chunghwa Telecom Audit Statements
#1983265 RESOLVED Audit Related Opened 2025-08-15 · Closed 2025-11-20 · 44% similar
PKIoverheid: TSP KPN Findings in 2025 ETSI Audit - Incident Report #5 – CMDB
#2005194 RESOLVED Audit Related Opened 2025-12-10 · Closed 2026-04-22 · 44% similar
Buypass: Findings in 2025 ETSI Audit - Audit Incident Report #1 - Compliance auditing on support processes
#1976860 RESOLVED Audit Related Opened 2025-07-11 · Closed 2025-08-21 · 42% similar
Telekom Security: Failure to file a bug for two findings from the 2024 Audit
#1965804 RESOLVED Audit Related Opened 2025-05-12 · Closed 2025-06-12 · 42% similar
certSIGN: Findings in 2025 ETSI Audit - Audit Incident Report #1 – Improve clarity in CPS

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action