DigiNotar (2011)
loresecuritycryptography
The Dutch certificate authority compromised in 2011, whose fraudulently issued certificates for major services were used to intercept traffic in Iran - and which went bankrupt within weeks of the disclosure.
It is the reference case for three lessons. A fraudulent certificate produces a normal padlock, so victims see nothing wrong. Trust in this system is revocable but removal has collateral damage - taking DigiNotar out of root stores also broke Dutch government services that depended on it. And the victims were ordinary users of a country under surveillance, which is why this incident, more than any technical argument, drove the industry toward public logging of every certificate issued.
Also known as: fraudulent certificates iran, ca compromise, root store removal