Get the latest tech news

Mis-issued certificates for 1.1.1.1 DNS service pose a threat to the Internet


The three certificates were issued in May but only came to light Wednesday.

The holder of the 1.1.1.1 certificates could potentially use them in active adversary-in-the-middle attacks that intercept communications passing between end users and the Cloudflare DNS service, Ryan Hurst, CEO of Peculiar Ventures and a TLS and public key infrastructure expert, told Ars. By manipulating the system through false notices, attackers regularly take control of legitimate IP addresses, including those belonging to telecoms, banks, and Internet services. Dan Goodin is Senior Security Editor at Ars Technica, where he oversees coverage of malware, computer espionage, botnets, hardware hacking, encryption, and passwords.

Get the Android app

Or read this on ArsTechnica

Read more on:

Photo of DNS

DNS

Photo of internet

internet

Photo of threat

threat

Related news:

News photo

The censorship on Steam is coming for everyone on the internet

News photo

Internet mapping and research outfit Censys reveals state-based abuse, harassment

News photo

Why the Internet Is Worse Than Ever - Macleans.ca