ended6월 10일· 1 sources

Leaked Private Keys Expose 2,600+ Active HTTPS Certificates to Real-World Attacks

GitGuardian 조사로 드러난 HTTPS 보안의 숨겨진 위협, 2,600개 유효 인증서 여전히 노출

Why it matters

A collaborative study by GitGuardian and Google reveals the first Internet-scale analysis of private key leaks, mapping over 40,000 leaked keys to 140,000 real TLS certificates. As of September 2025, 2,600+ valid certificates remain exposed across Fortune 500 companies, healthcare, and government agencies, enabling attackers to impersonate websites or intercept encrypted communications. The alarming 9% response rate to security disclosures exposes widespread organizational misunderstanding of private key risks.

1
Sources
+0
24h
Growth
102d
Active
private key leaksTLS certificatesGitGuardianHTTPS securitycertificate revocation

Sources

Related Issues