Analysis reveals the most common causes behind mis-issued SSL/TLS certificates - Help Net Security

Analysis reveals the most common causes behind mis-issued SSL/TLS certificates - Help Net Security

We should be able to trust public key certificates, but this is the real world: mistakes and “mistakes” happen.


Researchers from Indiana University Bloomington have analyzed 379 reported instances of failures in certificate issuance to pinpoint the most common causes as well as systemic issues that contribute to these happening.


About public key certificates


A public key certificate (aka digital certificate) proves that an individual, entity or a device is the rightful owner and user of a public key. They are issued by certificate authorities (CAs), which function as a trusted party both for the owner of the certificate and those who rely on it being legitimate (e.g., visitors to HTTPS-based web sites).


CAs are obligated to follow certain guidelines for the issuance and management of public key certificates, but failures happen and can have serious consequences for all stakeholders and end ..

Support the originator by clicking the read the rest link below.