Sennheiser App Installs Root Certificates, Exposes Computers to Spoofing Attacks

Sennheiser App Installs Root Certificates, Exposes Computers to Spoofing Attacks

Microsoft removed user-mode trust for the certificates

Retefe Banking Trojan Uses Root Certificate to Target Customers of UK Banks

Retefe Banking Trojan Uses Root Certificate to Target Customers of UK Banks

Torjan also hijacks local proxy settings

Server Snafu Makes Microsoft Beg for CA Audit Data from Its Partners

Server Snafu Makes Microsoft Beg for CA Audit Data from Its Partners

Server errors lose data about 147 root cert CA audits

  • Security
  • By Catalin Cimpanu
  • December 17th, 2015
Microsoft Removes Some Root Certificates from the Trusted Root Certificate Program

Microsoft Removes Some Root Certificates from the Trusted Root Certificate Program

Microsoft removes trust in some certificates

  • Security
  • By Catalin Cimpanu
  • December 5th, 2015
Kazakhstan Will Require All Citizens to Install a Backdoor on Their Devices

Kazakhstan Will Require All Citizens to Install a Backdoor on Their Devices

The backdoor must be installed starting with January 1, 2016

  • Security
  • By Catalin Cimpanu
  • November 25th, 2015
Second Dell Root Certificate Discovered

Second Dell Root Certificate Discovered

Second root + private key combo discovered on Dell laptops, two days after the world had found out about eDellRoot

  • Security
  • By Catalin Cimpanu
  • November 24th, 2015
Dell Ships Laptops with Root Certificate, Big Security No-No <em>UPDATE</em>

Dell Ships Laptops with Root Certificate, Big Security No-No UPDATE

Dell makes the same mistake Lenovo made earlier this year

Net Nanny Parental Control Software Vulnerable to HTTPS Spoofing

Net Nanny Parental Control Software Vulnerable to HTTPS Spoofing

Installations use shared private key and root certificate

Comodo’s PrivDog Breaks HTTPS Security Possibly Worse than Superfish

Comodo’s PrivDog Breaks HTTPS Security Possibly Worse than Superfish

Non-valid certs signed by self-generated root certificate

Lenovo, Microsoft Move to Make Superfish Super Gone

Lenovo, Microsoft Move to Make Superfish Super Gone

Root certificate completely eliminated on Windows

44,000 Superfish MitM Certificates Found in Mozilla Firefox

44,000 Superfish MitM Certificates Found in Mozilla Firefox

A separate certificate store does not eliminate the risk

Some Antivirus Products Detect Superfish Browser Add-On

Some Antivirus Products Detect Superfish Browser Add-On

US CERT warns about the risk posed by the browser component