On Monday, February 1, 2016 at 10:34:18 AM UTC-8, Rick Andrews wrote: > On Sunday, January 31, 2016 at 9:47:53 AM UTC-8, Peter Bowen wrote: > > These are all in the last week > > > > Sub-CA under SHECA (which has applied to be in the Mozilla program) > > https://crt.sh/?id=12367776&opt=cablint > > > > Sub-CA under DigiCert > > https://crt.sh/?id=12460684&opt=cablint > > > > Sub-CA under Symantec > > https://crt.sh/?id=12456194&opt=cablint > > https://crt.sh/?id=12434313&opt=cablint > > The Sub-CA under Symantec is managed by one of our customers. We've reached > out to them and we're investigating. More detail to follow.
We verified that the customer who managed that SubCA has revoked both certificates. _______________________________________________ dev-security-policy mailing list [email protected] https://lists.mozilla.org/listinfo/dev-security-policy

