Cloudflare's 1.1.1.1 certificates mis-issued

arstechnica.com

Twelve mis-issued TLS certificates for Cloudflare's 1.1.1.1 service were discovered, raising security concerns. Nine additional certificates were issued since February 2024 by Fina CA, a Microsoft-trusted authority. All have been revoked, and no malicious use is confirmed. Fina CA stated the certificates were for internal testing and private keys were destroyed. Microsoft is adding the certificates to a disallow list.


With a significance score of 1.6, this news ranks in the top 36% of today's 33388 analyzed articles.

Get summaries of news with significance over 5.5 (usually ~10 stories per week). Read by 10,000+ subscribers: