← OneCRL Browser

Leaked private key for Cisco cert

bb8ba6ba-4e19-407d-ab9d-9f8aafd2c312

Revocation Entry

Status
disabled
Serial
66170CE2EC8B7D88B4E2EB732E738FE3A67CF672
Last Modified
2017-06-21 12:43:47 UTC
Schema
1552493014308

Issuer

DN
C=US, O=HydrantID (Avalanche Cloud Corporation), CN=HydrantID SSL ICA G2
DN SHA-256
22af5608fad92fb10fdc9811c879e13065d072d99ddcf3d7014df309acd62c64
Issuer DER
MF4xCzAJBgNVBAYTAlVTMTAwLgYDVQQKEydIeWRyYW50SUQgKEF2YWxhbmNoZSBDbG91ZCBDb3Jwb3JhdGlvbikxHTAbBgNVBAMTFEh5ZHJhbnRJRCBTU0wgSUNBIEcy

Context

Bugzilla
1374809
Action
Added the certificate with serial 66170CE2EC8B7D88B4E2EB732E738FE3A67CF672 to OneCRL on 2017-06-21; the action was requested by Kathleen Wilson and later confirmed by her on 2017-06-28.
Confidence
Explicit in OneCRL thread · 0.98

CCADB Link

Issuer CA
HydrantID SSL ICA G2
CA Owner
DigiCert

AI Summary

Generated 2026-06-30 11:42 UTC · Model: gpt-5.4-mini

A certificate associated with Cisco was added to OneCRL after its private key was reported leaked. Kathleen Wilson initiated the Bugzilla case and requested the OneCRL addition on 2017-06-20. QuoVadis/DigiCert staff later confirmed the certificate serial had already been revoked on 2017-06-18 at 11:57 AM UTC for Key Compromise. The OneCRL entry was created on 2017-06-21 and later confirmed as added by Kathleen Wilson on 2017-06-28. The thread explicitly ties the action to the leaked private key and the existing revocation status; it does not state any separate CA closure. The external compliance context referenced in the thread is a Mozilla dev security policy report about the incident.

OneCRL action

Added the certificate with serial 66170CE2EC8B7D88B4E2EB732E738FE3A67CF672 to OneCRL on 2017-06-21; the action was requested by Kathleen Wilson and later confirmed by her on 2017-06-28.

CCADB trigger

Explicitly stated revocation status: certificate was revoked on 2017-06-18 11:57:00 AM for Key Compromise; OneCRL entry was added after that revocation. No CCADB candidate-report state is stated.

External cause

Leaked private key for a Cisco certificate; the thread cites a Mozilla dev security policy report at https://groups.google.com/d/msg/mozilla.dev.security.policy/T6emeoE-lCU/-k-A2dEdAQAJ. No CA closure is stated.

Confidence

Explicit in OneCRL thread · 0.98

Chronology
  • 2017-06-18Certificate serial 66170CE2EC8B7D88B4E2EB732E738FE3A67CF672 was revoked for Key Compromise.
  • 2017-06-20Kathleen Wilson opened Bugzilla 1374809 and requested OneCRL addition for the leaked-key Cisco certificate.
  • 2017-06-20QuoVadis/DigiCert staff confirmed the revocation and provided the CRL and certificate.
  • 2017-06-21OneCRL entry was created for the certificate.
  • 2017-06-28Kathleen Wilson confirmed the certificate had been added to OneCRL.

AI-generated from the OneCRL record and linked Bugzilla thread. Mozilla and CCADB records remain authoritative.

Raw Remote Settings Record

{
    "schema": 1552493014308,
    "details": {
        "bug": "https://bugzilla.mozilla.org/show_bug.cgi?id=1374809",
        "who": ".",
        "why": "Private key leaked",
        "name": "Leaked private key for Cisco cert",
        "created": "2017-06-21T12:45:09Z"
    },
    "enabled": false,
    "issuerName": "MF4xCzAJBgNVBAYTAlVTMTAwLgYDVQQKEydIeWRyYW50SUQgKEF2YWxhbmNoZSBDbG91ZCBDb3Jwb3JhdGlvbikxHTAbBgNVBAMTFEh5ZHJhbnRJRCBTU0wgSUNBIEcy",
    "serialNumber": "ZhcM4uyLfYi04utzLnOP46Z89nI=",
    "id": "bb8ba6ba-4e19-407d-ab9d-9f8aafd2c312",
    "last_modified": 1498049027284
}

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action