← Back to the feed

~/article/attackers-hijack-gh-sl-and-as-registries-to-obtain-certificates-for-goog-166xbg
infoSource: The Hacker News

Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains

Attackers compromised three country-code top-level domains (ccTLDs) and obtained unauthorized HTTPS certificates for several Google domains, Google said on October 6. Google's own systems were not breached, but any domain ending in .gh (Ghana), .sl (Sierra Leone) or .as (American Samoa) was put at risk. With such a certificate, an attacker could pose as the real site over an encrypted

Read at the source

Summary written for cymesh.dev. The full article lives at The Hacker News.

~/cymesh.net

This is what cymesh.net is for

Certificate and hostname problems are the ones you find out about from your users. cymesh.net finds them first.

monitorsTLS/SSL expiry, chain and hostnamealertsemail, ahead of the expiry datescopenon-intrusive, read-only checks

Related

~/related/attackers-hijack-gh-sl-and-as-registries-to-obtain-certificates-for-goog-166xbg