Skip to main content

Tagged “misissuance”

← All posts

incidents TLS Radar Team 6 min read

SSL.com Revoked 2,700 Certificates in 24 Hours After an Audit Found a Missing Check

An annual WebTrust audit found four sampled certificates with no evidence that multi-perspective domain validation was performed. The full investigation found 2,700, and SSL.com revoked them all within a day. What MPIC is, why you could not have seen this one coming, the second SSL.com incident you can check for yourself, and what TLS Radar's new revocation checking does about it.

strategy TLS Radar Team 4 min read

What Two Weeks of CA Compliance Incidents Say About Your Revocation Risk

In the two weeks ending August 27, 2026, more than 30 public CAs logged 69 compliance incidents in Mozilla's tracker - delayed revocations, country-field and clientAuth misissuance, and the process failures that precede distrust. Every incident sourced to its Bugzilla bug, grouped by what it means for the certificates your business depends on.

Subscribe via RSS.