MikeTrendsTrends right now

search

TLS certificates

Trends

  1. 1
    Hackers obtain counterfeit TLS certificates for Google and other services●Hackers obtain counterfeit TLS certificates for Google and other large services https://arstechnica.com/security/2026/10MmastodonTechnologyCybersecurity321 h ago

    Hackers have managed to obtain counterfeit TLS certificates for Google and other major online services, according to a security report. Fraudulent certificates could allow attackers to impersonate trusted websites and intercept traffic. The incident raises fresh questions about how certificate authorities verify requests and whether users need to take protective steps.

  2. 2
    Hackers obtain counterfeit TLS certificates for Google and major services▼Hackers obtain counterfeit TLS certificates for Google and other large servicesMmastodon11912 h ago

    Hackers have obtained counterfeit TLS certificates for Google and other large services after compromising three domain registries, security reporting by Ars Technica says. The registry compromise allowed the attackers to walk away with unauthorized certificates, which could be used to impersonate trusted websites and intercept traffic. The incident raises fresh concerns about the security of the certificate issuance system that underpins web encryption.

  3. 3
    Hackers obtain counterfeit TLS certificates for Google and other major services●Hackers obtain counterfeit TLS certificates for Google and other large servicesYhn11216 h ago

    Hackers have obtained counterfeit TLS certificates impersonating Google and other large internet services, potentially allowing them to intercept traffic or mount convincing phishing attacks. Security researchers are examining how the fraudulent certificates were issued, and the incident is raising fresh questions about weaknesses in the certificate authority system that underpins trust on the web.

  4. 4
    Hackers obtain unauthorized TLS certificates for Google domains▼Hackers Obtain Unauthorized TLS Certificates for Google via Hijacked Domains✉newsTechnologyGadgets46 min ago

    Hackers have obtained unauthorized TLS certificates for Google by hijacking domains, allowing them to potentially impersonate Google websites and intercept encrypted traffic. The incident raises fresh questions about certificate authority validation practices and domain security, as attackers exploited lapsed or misconfigured domain registrations to pass issuance checks. Security experts are warning organizations to lock down domain renewals and monitor certificate transparency logs for fraudulent certificates issued in their name.

  5. 5

    Caddy, the open-source web server written in Go, is trending among developers. The project bills itself as a fast, extensible HTTP/1, HTTP/2 and HTTP/3 server with automatic HTTPS, meaning it provisions and renews TLS certificates by default. It runs across platforms and is widely used as a reverse proxy and lightweight alternative to Nginx. Developers are discussing it for its simplicity and secure-by-default configuration.

  6. 6
    Attackers compromise .gh, .sl and .as domain registries●Attackers compromised .gh, .sl, and .as ccTLD registries. Modified authoritative DNS. Passed automated domain control vaMmastodonTechnologyCybersecurity42 h ago

    Attackers gained access to the country-code top-level domain registries for Ghana (.gh), Sierra Leone (.sl) and American Samoa (.as) and altered their authoritative DNS records. The changes let them pass automated domain control validation and obtain valid TLS certificates for Google domains and other major brands. Google itself was not hacked, and certificate authorities followed their normal procedures, raising concern about weaknesses in the domain validation trust chain.

  7. 7
    Hackers obtain counterfeit TLS certificates for Google and major services●Hackers obtain counterfeit TLS certificates for Google and other large services https:// lemmy.world/post/52855851MmastodonTechnology24 h ago

    Hackers have obtained counterfeit TLS certificates for Google and other major online services, raising concerns that attackers could impersonate trusted websites, intercept encrypted traffic, or bypass browser security warnings. The incident highlights weaknesses in the certificate authority system that underpins web encryption, and users are discussing which services were affected and how authorities and browsers will respond.

  8. 8
    Cloudflare details plans for an Internet-scale certificate authority●Building a certificate authority for the whole InternetYhnCultureBooks741 d ago

    Cloudflare has published a post explaining how it is building a certificate authority capable of issuing TLS certificates for websites across the entire Internet. The company, which already provides security and performance services to millions of sites, outlines the technical and operational challenges of running certificate issuance at massive scale, including automation, security controls and trust requirements. Readers in the developer community are weighing in on the engineering involved.

  9. 9
    Hackers Forge TLS Certificates Impersonating Google and Major Services●Hackers Impersonate Google and Other Large Services With Counterfeit TLS Certificates https://www. privacyguides.org/newMmastodonWorld12 h ago

    Attackers have issued counterfeit TLS certificates impersonating Google and other major online services, raising concerns about web security and certificate authority oversight. The report has drawn attention in privacy and security communities, where users are being urged to verify certificates and stay alert to potential phishing risks posed by fraudulent HTTPS credentials.

  10. 10
    Hackers obtain counterfeit TLS certificates for Google domains●Hackers obtain counterfeit TLS certificates for Google and other large services Compromise of 3 domain registries allowsMmastodonBusinessStartups314 h ago

    Attackers compromised three domain registries and used the access to obtain fraudulent TLS certificates for Google and other major services. The unauthorized certificates could let the attackers impersonate trusted websites and intercept traffic. Security researchers are highlighting how registry-level compromise undermines the certificate authority system, and questions are being raised about revocation procedures and how widely the fake certificates were actually used.

  11. 11
    Hackers Forge Real Google TLS Certificates via Hijacked Country Domains▼Hackers Used Hijacked Country Domains to Forge Real Google TLS Certificates✉newsBusinessStartups18 h ago

    Hackers hijacked top-level domains belonging to small countries and used that control to obtain legitimate TLS certificates bearing Google's name, according to a Fortune report. By compromising country-code domain infrastructure, the attackers were able to pass certificate authority validation checks, potentially enabling convincing phishing or man-in-the-middle attacks that browsers would treat as trusted.

  12. 12
    wolfSSL introduces wolfCert for embedded device certificate enrollment●Introduction to wolfCert: Certificate Enrollment for Embedded Devices https://www. wolfssl.com/introduction-to-wo lfcertMmastodonBusinessCrypto02 d ago

    wolfSSL has introduced wolfCert, a new tool for certificate enrollment on embedded devices. The announcement outlines how the component supports enrolling and managing certificates in constrained, resource-limited environments, complementing the company's existing TLS and cryptography offerings. The release is being circulated among security and embedded systems developers tracking certificate management options for IoT and embedded deployments.

Repos