Skip to main content

Share story

Security Infrastructure

Registry breaches let attackers hijack domains and obtain HTTPS certificates

Registry breaches let attackers hijack domains and obtain HTTPS certificates Image: Primary
Attackers compromised third-party operators for Ghana's .GH, Sierra Leone's .SL and American Samoa's .AS domains, changed authoritative DNS records and obtained unauthorized HTTPS certificates, BleepingComputer reported. Google domains and other organizations were affected. Control of those records let attackers redirect visitors to their own infrastructure and impersonate legitimate brands. Google blocked unauthorized certificates in Chrome and worked with certificate authorities to revoke them. It also identified and blocked additional certificates through public Certificate Transparency logs. Google says its own systems were not compromised and it has no reason to believe certificate authorities acted improperly. Its analysis may have missed affected domains, and Chrome's blocking mechanism does not reliably protect users of other browsers.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from BleepingComputer and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Science Security
Science Security

Preprint finds sensitive-topic leakage in AI model routing logs

Researchers report in a preprint that logs recording which AI model handles a request can expose sensitive-topic patterns even when content logging is disabled. Their studies used 1.7 million real requests and tested systems that ...

Security Infrastructure
Security Infrastructure

IDCF Cloud ransomware attack disrupts companies and local governments

A ransomware attack disrupted IDCF Cloud's East Japan Region 1 on October 7, affecting websites and services used by companies and local governments. A note article citing ITmedia and Nikkei reports said unauthorized access began ...

Security Infrastructure
Security Infrastructure

Researchers identify more than 3400 servers hit by PoeLLM mining malware

Lumen Black Lotus Labs identified more than 3400 victim servers in a cryptocurrency-mining campaign targeting exposed AI services and other enterprise systems, The Hacker News reported. The campaign, active since April 2026, insta...

Infrastructure Products
Infrastructure Products

Google Cloud makes U4 trading infrastructure generally available

Google Cloud says its Ultra Low Latency Solution and U4 machine family are now generally available for exchange operators and trading firms. Dedicated bare metal machines provide direct access to host resources, while hardware mul...

AI Infrastructure
AI Infrastructure

Broadcom seeks more than $50B in financing for OpenAI chip

Broadcom has been working to arrange more than $50B in financing for OpenAI's custom AI chip, the Wall Street Journal reported, citing sources. Oracle is also discussing financing for a large chip purchase. Apollo, Blackstone and ...

Security AI
Security AI

AWS releases instructions for evidence-based AI vulnerability triage

AWS released a steering file that directs AI coding assistants to verify code paths before reporting vulnerabilities and to incorporate deployment controls into security priorities. The persistent instructions require confirmed fu...