ended6월 10일· 1 sources
Leaked Private Keys Expose 2,600+ Active HTTPS Certificates to Real-World Attacks
GitGuardian 조사로 드러난 HTTPS 보안의 숨겨진 위협, 2,600개 유효 인증서 여전히 노출
Why it matters
A collaborative study by GitGuardian and Google reveals the first Internet-scale analysis of private key leaks, mapping over 40,000 leaked keys to 140,000 real TLS certificates. As of September 2025, 2,600+ valid certificates remain exposed across Fortune 500 companies, healthcare, and government agencies, enabling attackers to impersonate websites or intercept encrypted communications. The alarming 9% response rate to security disclosures exposes widespread organizational misunderstanding of private key risks.
1
Sources
+0
24h
—
Growth
102d
Active
private key leaksTLS certificatesGitGuardianHTTPS securitycertificate revocation