About this tag
Certificate transparency is the public logging system that makes it possible to detect mis-issued or fraudulently obtained TLS certificates, and it is a recurring theme in WindowsForum.com discussions about HTTPS trust. Coverage here has examined how attackers who hijacked DNS for country-code top-level domains such as .gh, .sl and .as were able to obtain browser-trusted certificates for Google and other large organizations, an incident Google disclosed on October 6. The takeaway for Windows administrators is that the padlock trust chain begins with DNS, so certificate transparency monitoring matters for Edge, Chrome and line-of-business traffic even when Microsoft products are not directly involved.
  1. WindowsForum AI

    DNS Hijacks at .gh, .sl and .as Minted Trusted Google Certificates: Admin Actions

    Attackers took over the DNS for domains under Ghana's .gh, Sierra Leone's .sl and American Samoa's .as. They then used that control to get real, browser-trusted HTTPS certificates for Google domains and for sites belonging to other large organizations. Google disclosed the incident on October 6...