GlobalSign stops secure certificates after hack claim Skip to main content

GlobalSign stops secure certificates after hack claim

Gmail screen Google security certificates were among those to be faked following a recent hack

Related Stories

Belgian security firm GlobalSign has temporarily stopped issuing authentication certificates for secure websites.
It comes after an anonymous hacker claimed to have gained access to the company's servers.
If confirmed, it would be the second security breach at a European certificate authority in two months.
Hundreds of bogus DigiNotar authentications were issued following an intrusion into its systems.
Certificate authorities (CAs) are companies or public bodies whose job is to confirm that secure websites are genuine.
When computers connect to a site with TLS or SSL authentication, a certificate is issued which verifies the site's identity to the web browser.
Fake certificates could allow someone to spy on a user's activity.
Multiple targets GlobalSign took action as the result of a posting which appeared on the online notice board Pastebin.
The author, who identified themselves only as "ComodoHacker", claimed to have gained access to four certificate authorities, in addition to DigiNotar.
Only GlobalSign is named, although the message points out that an attack on StartCom was foiled by its boss Eddy Nigg.
DigiNotar certificate use Web analysis suggested that Iranians may have been targeted using bogus DigiNotar certificates
ComodoHacker also refers to an attack on US certificate authority Comodo, which was targeted in March.
As a precaution, GlobalSign said it was temporarily ceasing the issuance of all certificates while it investigated the claims.
The hacker also played down suggestions that the attacks were the work of Iranian authorities.
"I'm single person, do not AGAIN try to make an ARMY out of me in Iran. If someone in Iran used certs I have generated, I'm not one who should explain," said the posting.
It had been suggested that, because many of the bogus DigiNotar certificates were issued to users in Iran, that authorities in there may have initiated the CA hack as a tool for spying on dissidents.
A report on the DigiNotar attack said that up to 300,000 Iranians may have had their Gmail accounts monitored as a result of a fake Google certificate being created.
Hacktivist While the anonymous posting contains no information about the identity of the CA hacker, it does detail a political agenda.
The message states: "Dutch government is paying what they did 16 years ago about Srebrenica, you don't have any more e-Government huh?"
It appears to reference the apparent non-intervention of Dutch peacekeeping forces during the notorious 1995 Srebrenica massacre, where Serbian forces killed more than 8,000 Bosnian Muslims.
DigiNotar certificates are used to authenticate many online services offered by the Dutch government, although the company has said that these use a separate system which was not compromised during the attack.
State prosecutors in the Netherlands are investigating the incident.

http://www.bbc.co.uk/news/technology-14819257

Comments

Popular posts from this blog

Sri Bhaddanta Chandramani Mahathera

The Life Story of A Distinguished And Outstanding Bhikkhu The Most Venerable Saradawpharagree Sri Bhaddanta Chandramani Mahathera The Buddhist missionary Saradaw Ashin U Chandramani was endowed with great gifts and led a famous and long life. He was a very well known, distinguished and outstanding Bhikkhu Mahathera. While living in the Kushinagar Monastery, a place close to where the Lord Buddha had passed away to Nirvana, the Government of India had offered, and he had accepted, the highest, most honourable and respected title "Guru Guru MahaGuru". He became the first ever President of all Buddhists in India.A World Buddhist Conference took place in Kathmandu during the reign of King Mahindra of Nepal. The Conference was very well attended by over one hundred thousand Buddhists from various parts of the world and it was opened by King Mahindra himself. As requested by the King, Saradawpharagree blessed all the participants with the power of Triple Gems...

Thai penis whitening trend raises eyebrows

Image copyright LELUXHOSPITAL Image caption Authorities warn the procedure could be quite painful A supposed trend of penis whitening has captivated Thailand in recent days and left it asking if the country's beauty industry is taking things too far. Skin whitening is nothing new in many Asian countries, where darker skin is often associated with outdoor labour, therefore, being poorer. But even so, when a clip of a clinic's latest intriguing procedure was posted online, it quickly went viral. Thailand's health ministry has since issued a warning over the procedure. The BBC Thai service spoke to one patient who had undergone the treatment, who told them: "I wanted to feel more confident in my swimming briefs". The 30-year-old said his first session of several was two months ago, and he had since seen a definite change in the shade. 'What for?' The original Facebook post from the clinic offering the treatment, which uses lasers to break do...

Three Dead, Seven Injured by Artillery Shells in Two Incidents in Myanmar’s Mrauk-U

By MIN AUNG KHINE 2 December 2019 Sittwe, Rakhine State –Three Mrauk-U township residents died and four others were injured when an artillery shell struck their community in the Ale Zay quarter of Mrauk-U town on Monday afternoon after 4 p.m. A month-old girl, a 4-year-old boy and a 30-year-old woman died, according to Dr. Khin Maung Yin, the head of Mrauk-U hospital. He said, “A man and three other women were injured. One of the women sustained severe injures to her left leg and her right knee was dislocated. The injured will be operated on.” Details of what occurred were not yet known. A few hours earlier, three civilians were injured when an artillery shell fell on the village of Na Leik in Mrauk-U Township, Rakhine State, western Myanmar, on Monday at around 1 p.m., according to Yan Aung Pyin village-tract administrator U Sein Hla Aung. Two females, aged 13 and 27, and an 18-year-old male were injured in the incident, he said. Three people were hit by shrapnel and we have...