← DigiCert cases
Bugzilla #2033170 Certificate Misissuance

DigiCert: Misissued code signing certificates

ASSIGNED DigiCert
AI Summary

DigiCert reported a security incident involving the misissuance of code signing certificates due to a malware attack on their support team. A threat actor gained access to initialization codes for several certificates, which were subsequently used to sign malware. DigiCert acted swiftly, revoking the affected certificates within 24 hours of discovery and implementing additional security measures to prevent future incidents.

Model: gpt-4o-mini Generated: 2026-06-13 11:49 UTC Confidence: 0.90
Chronology
  1. Threat actor compromised support endpoint.
  2. First endpoint detected and contained.
  3. Second endpoint identified as compromised.
  4. 60 certificates revoked.
Participants
DigiCert
External References
Similar Local Cases
#2017185 RESOLVED Certificate Misissuance Opened 2026-02-16 · Closed 2026-04-15 · 57% similar
DigiCert: CAA processing during network disruption
#2032485 RESOLVED Certificate Misissuance Opened 2026-04-16 · Closed 2026-05-04 · 56% similar
DigiCert: Misissuance detected by PKIMetal
#1595921 RESOLVED Certificate Misissuance Opened 2019-11-12 · Closed 2023-02-22 · 52% similar
DigiCert: Domain validation skipped
#1551363 RESOLVED Certificate Misissuance Opened 2019-05-14 · Closed 2023-02-22 · 52% similar
DigiCert: "Some-State" in stateOrProvinceName
#1827772 RESOLVED Certificate Misissuance Opened 2023-04-13 · Closed 2023-05-04 · 51% similar
DigiCert: Org-JOI type mismatch
#1531817 RESOLVED Certificate Misissuance Opened 2019-03-01 · Closed 2023-02-22 · 51% similar
DigiCert: in-addr.arpa Misissuance
#1914911 RESOLVED Certificate Misissuance Opened 2024-08-26 · Closed 2025-01-08 · 50% similar
DigiCert: Unclear Disclosure of CAA Issuer Domain Names
#1445857 RESOLVED Certificate Misissuance Opened 2018-03-15 · Closed 2023-02-22 · 50% similar
DigiCert: Mis-issuance of certificate with https in CN/SAN

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action