On Monday, February 1, 2016 at 10:34:18 AM UTC-8, Rick Andrews wrote:
> On Sunday, January 31, 2016 at 9:47:53 AM UTC-8, Peter Bowen wrote:
> > These are all in the last week
> > 
> > Sub-CA under SHECA (which has applied to be in the Mozilla program)
> > https://crt.sh/?id=12367776&opt=cablint
> > 
> > Sub-CA under DigiCert
> > https://crt.sh/?id=12460684&opt=cablint
> > 
> > Sub-CA under Symantec
> > https://crt.sh/?id=12456194&opt=cablint
> > https://crt.sh/?id=12434313&opt=cablint
> 
> The Sub-CA under Symantec is managed by one of our customers. We've reached 
> out to them and we're investigating. More detail to follow.

We verified that the customer who managed that SubCA has revoked both 
certificates.
_______________________________________________
dev-security-policy mailing list
[email protected]
https://lists.mozilla.org/listinfo/dev-security-policy

Reply via email to