← PostSignum cases
Bugzilla #2016722 Certificate Misissuance

PostSignum: Mis-issued certificate

RESOLVED FIXED PostSignum
AI Summary

PostSignum reported a mis-issuance of a TLS certificate due to a human error during a service intervention. The CA operator mistakenly selected the operational certificate policy instead of the test policy, resulting in a certificate issued with fictitious data. The error was identified shortly after issuance, leading to the immediate revocation of the certificate. PostSignum has since implemented new internal procedures and training to prevent similar incidents in the future.

Model: gpt-4o-mini Generated: 2026-06-13 21:08 UTC Confidence: 0.90
Chronology
  1. Service intervention performed by CA operator.
  2. Mis-issued certificate identified and revoked.
  3. Full incident report published.
  4. Report closure summary provided.
Participants
vyvoj.postsignum@cpost.cz dzacharo@harica.gr martijn.katerbarg@sectigo.com agwa-bugs@mm.beanwood.com incident-reporting@ccadb.org
Similar Local Cases
#1895006 RESOLVED Certificate Misissuance Opened 2024-05-03 · Closed 2024-08-23 · 64% similar
IdenTrust: unintended creation of a Root CA certificate
#2012157 RESOLVED Certificate Misissuance Opened 2026-01-23 · Closed 2026-03-08 · 57% similar
Actalis: Issuance of certificate using keys previously reported as compromised
#1981680 RESOLVED Certificate Misissuance Opened 2025-08-07 · Closed 2025-09-26 · 49% similar
TunTrust: SSL OV mis-issuance against CP/CPS (Email attribute)
#1986968 RESOLVED Certificate Misissuance Opened 2025-09-04 · Closed 2026-04-06 · 48% similar
Financijska agencija (Fina): Mis-issued certificates
#1927384 RESOLVED Certificate Misissuance Opened 2024-10-28 · Closed 2025-01-29 · 48% similar
iTrusChina: Issuance of certificates using keys previously reported as compromised
#1860750 RESOLVED Certificate Misissuance Opened 2023-10-24 · Closed 2023-11-08 · 48% similar
SwissSign: EV code in JurisdiktionStateOrProvinceName
#1766255 RESOLVED Certificate Misissuance Opened 2022-04-25 · Closed 2023-02-22 · 47% similar
SwissSign: Mis-Issuance of S/MIME certificates
#2032482 ASSIGNED Certificate Misissuance Opened 2026-04-16 Still Open · 47% similar
OATI: Misissuance detected by PKIMetal

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action