Mmastodon first seen 10 h ago, last 10 min ago, peak #9
Hackers obtain counterfeit TLS certificates for Google and others
Original: Hackers obtain counterfeit TLS certificates for Google and other large services
Hackers have issued unauthorized TLS certificates for Google and other major services after compromising three domain registries, according to Ars Technica. The forged certificates could let attackers impersonate trusted websites, intercept traffic, or run convincing phishing sites, since browsers normally rely on certificates to verify a site's identity. The incident raises fresh concerns over the security of the certificate issuance chain and how quickly affected certificates can be revoked.
Why now: A breach of the certificate issuance chain undermines trust in core web security, affecting widely used services like Google.
GoogleArs Technicadomain registries
Rank over time, top of the chart is #1. 42 snapshots from 10 h ago to 10 min ago.
Evidence
- Hackers obtain counterfeit TLS certificates for Google and other large services · Ars Technica
Compromise of 3 domain registries allows hackers to walk off with unauthorized certs.
Elsewhere
API: https://socialmediatrends-api.osmike.com/v1/trends/1286836