← Asseco Data Systems S.A. cases
Bugzilla #2021685 Certificate Problem Report

Asseco DS / Certum: Finding in Routine WebTrust Audit – S/MIME certificates issued with mailbox validation older than 30 days

RESOLVED FIXED Asseco Data Systems S.A.
AI Summary

During a WebTrust audit on March 6, 2026, Certum identified that 181 S/MIME certificates were issued without proper email validation, exceeding the 30-day requirement. Initially, 101 certificates were revoked, but further analysis revealed an additional 61 affected certificates. All impacted certificates were revoked, and changes were made to the issuance system to ensure compliance. A full incident report was published, detailing the root cause and remediation steps taken.

Model: gpt-4o-mini Generated: 2026-06-13 21:37 UTC Confidence: 0.95
Chronology
  1. Auditors identified email validation issue during onsite audit.
  2. Initial revocation of 101 affected certificates completed.
  3. Full incident report published detailing all affected certificates.
  4. Closure report submitted after all action items completed.
Participants
Kateryna Aleksieieva
External References
Related Bugzilla IDs Mentioned
Similar Local Cases
#1958645 RESOLVED Certificate Problem Report Opened 2025-04-05 · Closed 2025-06-10 · 60% similar
Asseco DS / Certum: DNS service outage
#1904494 RESOLVED Certificate Problem Report Opened 2024-06-25 · Closed 2024-09-04 · 59% similar
Asseco DS / Certum: Cross-certificate not included in 2024 S/MIME Audit statement
#1917571 RESOLVED Certificate Problem Report Opened 2024-09-09 · Closed 2024-11-06 · 59% similar
Asseco DS / Certum: Organization Identifier and Country field discrepancies
#2002281 RESOLVED Certificate Problem Report Opened 2025-11-25 · Closed 2025-12-11 · 58% similar
Asseco DS / Certum: Irregularities in Xinchacha/Xcc Brand SSL Certificates
#2007105 RESOLVED Certificate Problem Report Opened 2025-12-19 · Closed 2026-03-30 · 58% similar
Asseco DS / Certum: CRL URLs disclosed in CCADB do not exactly match the CRL URLs in certificates
#1888689 RESOLVED Certificate Problem Report Opened 2024-03-29 · Closed 2024-10-02 · 57% similar
Asseco DS / Certum: CRL non-conformance with the TLS BRs
#1909203 RESOLVED Certificate Problem Report Opened 2024-07-22 · Closed 2025-05-13 · 56% similar
Asseco DS / Certum: CP/CPS, Revocation Requests Mechanism, Certificate Problem Report, CRL and OCSP disruption
#1865080 RESOLVED Certificate Problem Report Opened 2023-11-16 · Closed 2024-01-04 · 54% similar
Asseco DS / Certum: TLS EV certificates with incorrect Subject attribute order

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action