Auteur Sujet: [ThreatPost]Fraudulent Certificate for Google Domains Found After Mistake by Turkish CA  (Lu 4036 fois)

0 Membres et 1 Invité sur ce sujet

Hors ligne igor51

  • Admin
  • Mega Power Members
  • *****
  • Messages: 10419
Fraudulent Certificate for Google Domains Found After Mistake by Turkish CA

Google certificateGoogle has pushed out an update that blocks an intermediate digital certificate for *.google.com after discovering that a Turkish certificate authority had mistakenly issued intermediate certificates to two organizations that should only have gotten normal SSL certificates. That error gave those two organizations the power to issue certificates that carried the same authority as the CA itself and allowed one of the organizations to issue the fraudulent wild card certificate for Google. One of the groups that obtained the intermediate certificate is a Turkish government agency and at least one of the major browser vendors said there was evidence the ceritificates had been used in an active attack.

read more


Source: Fraudulent Certificate for Google Domains Found After Mistake by Turkish CA

Tags: