What was the Role of Rogue Certificates in the Kaseya VSA Attack?

Опубликовано: 11 Сентябрь 2026
на канале: Cryptosense
384
18

A recent ransomware attack could have been avoided by better certificate hygiene.
Our inventory software for cryptography can help you clean up your certificate stores. Find out more here: https://cryptosense.com/analyzer/mach...

References:
David Maimon talk at RSA 2020: The Modus Operandi of EV Certificates Fraudsters: Findings from the Field https://published-prd.lanyonevents.co...[…]v-certificates-fraudsters-findings-from-the-field.pdf

Sophos Description of the Kaseya VSA Attack https://news.sophos.com/en-us/2021/07...

VSA Exploit agent on Virus Total https://www.virustotal.com/gui/file/d...

Avoiding Rogue Certificates: https://cryptosense.com/blog/when-cer...

/////
Find out more about Cryptosense: https://cryptosense.com/
Follow us on Twitter:   / cryptosense  
/////

Cryptosense CEO Dr. Graham Steel was formerly an academic researcher before founding Cryptosense in 2013. His cryptography expertise is the basis for the company's 'Analyzer' technology which allows customers to protect themselves against losing sensitive data.