After what is being called “a serious breach” of security involving digital certificates, Google Inc GOOG 0.34% GOOGL 0.55% announced that it is blacklisting China’s main Internet agency until further notice. Mozilla is joining Google in discontinuing Chrome’s acceptance of certificates from China Internet Network Information Center (CNNIC).
What Happened?
About two weeks ago, Google discovered that unauthorized certificates for several Google domains, including Gmail, had been issued through Egyptian IT company MCS Holdings. According to Google, MCS obtained its intermediate certificates from CNNIC and used the certificates for a man-in-middle proxy. According to Google, this was a major breach because all major browsers and operating systems recognized CNNIC certificates.
Google Acts
Google responded to the breach by issuing a statement explaining that they will no longer be accepting certificates issued by many .cn domains. “As a result of a joint investigation of the events surrounding this incident by Google and CNNIC, we have decided that the CNNIC Root and EV CAs will no longer be recognized in Google products,” the statement read. As a result of the decision, Google users will see warning pages pop up when they attempt to access affected domains in the future notifying them of a security risk. Users can then continue on to the site if they choose.
CNNIC Responds
CNNIC issued its own harsh statement in response to the ban. “The decision that Google has made is unacceptable and unintelligible to CNNIC, and meanwhile CNNIC sincerely urge that Google would take users’ rights and interests into full consideration,” the CNNIC wrote in the statement.
Google has said that it will allow a “grace period” during which it will continue to recognize existing CNNIC certificates. It will also allow certain exceptions to the ban for websites that are on its “whitelist.”
Google further indicated its willingness to reinstate acceptance of CNNIC certificates at some point in the future.
Read this article and all my other articles for free on Benzinga by clicking here
Want to learn more about the stock market? Or maybe you just want to be able to look sophisticated in front of your coworkers when they ask you what you are reading on your Kindle, and you’d prefer to tell them “Oh, I’m just reading a book about stock market analysis,” rather than the usual “Oh, I’m just looking at pics of my ex-girlfriend on Facebook.” For these reasons and more, check out my book, Beating Wall Street with Common Sense. I don’t have a degree in finance; I have a degree in neuroscience. You don’t have to predict what stocks will do if you can predict what traders will do and be one step ahead of them. I made a 400% return in the stock market over five years using only basic principles of psychology and common sense. Beating Wall Street with Common Sense is now available on Amazon, and tradingcommonsense.com is always available on your local internet!