DigiCert Revokes Certificates After Support Portal Hack Compromises Internal Systems

DigiCert has revoked multiple digital certificates after a cyberattack on its internal support portal allowed threat actors to fraudulently obtain code-signing credentials. The incident highlights risks within trusted certificate infrastructure, which underpins secure communication and software authenticity across the internet.

The breach originated through a social engineering attack, where attackers delivered a malicious file via a customer support chat channel. This payload infected an employee’s system, enabling unauthorized access to DigiCert’s internal support tools and certificate issuance processes.

As a result, attackers were able to obtain Extended Validation (EV) code-signing certificates, some of which were later used to sign malware. In response, DigiCert revoked approximately 60 certificates, including those directly linked to malicious activity as well as additional ones revoked as a precaution.

The company confirmed that all compromised certificates were invalidated quickly after detection, and pending certificate requests were canceled to prevent further misuse.

This incident underscores the critical importance of securing internal workflows and support channels, especially for certificate authorities that serve as the backbone of global digital trust. Even limited access to such systems can have widespread implications, as compromised certificates can be used to distribute malware or impersonate legitimate software.

- Advertisement -

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles

error: Content is protected !!

Share your details to download the report 2026

Share your details to download the Cybersecurity Report 2025

Share your details to download the CISO Handbook 2025

Sign Up for CXO Digital Pulse Newsletters

Share your details to download the Research Report

Share your details to download the Coffee Table Book

Share your details to download the Vision 2023 Research Report

Download 8 Key Insights for Manufacturing for 2023 Report

Sign Up for CISO Handbook 2023

Download India’s Cybersecurity Outlook 2023 Report

Unlock Exclusive Insights: Access the article

Download CIO VISION 2024 Report

Share your details to download the report

Share your details to download the CISO Handbook 2024

Fill your details to Watch