chiprook
← Security
SecurityOctober 7, 2026, 02:21

Hackers obtain counterfeit TLS certificates for Google and other large services

Attackers hijacked three country code top-level domains — .gh, .sl and .as — and used DNS record changes to mint counterfeit TLS certificates for Google domains and other major brands. Google updated Chrome to block all identified counterfeit certificates and warned it cannot guarantee it found every affected domain.

Hackers obtain counterfeit TLS certificates for Google and other large services
#Google#Chrome
Read next
Security

Cloudflare Plans Public Certificate Authority for Quantum-Safe TLS Certificates

Security

CVE-2026-103921: TLS certificate validation bypass in @graphql-tools/executor-legacy-ws

Security

CERT Polska links 17 Android apps via a reused TLS certificate

Software

Android 17 adds Certificate Transparency checks for TLS certificates