Author Topic: Privacy issues on https connection to hxtps://ocsp.int-x3.letsencrypt.org/  (Read 2289 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33900
  • malware fighter
Akamai Insecure Connection over https -

Google Safebrowsing kicks a warning for this US based  (Akamai's HTTP Acceleration/Mirror service) from Bern.
http-server-header: AkamaiGHost -> Certificate is not installed correctly
ocsp.int-x3.letsencrypt.org

Please contact the Certificate Authority for further verification. Baltimore Cyber Trust Route - Verizon Akamai Sure Server.
You have 2 errors
RSA wrong certificate installed.
The domain name does not match the certificate common name or SAN.
ECC wrong certificate installed.
The domain name does not match the certificate common name or SAN.
WARNING: MX records duplicates (same IP address): Google related....

We would check here whether we trust the  Baltimore CyberTrust Root: https://baltimore-cybertrust-root.digicert.com/
or with their DigiCert® SSL Installation Diagnostics Tool

See: https://urlscan.io/result/68342149-2975-4521-97e7-5e2607313238#summary
api_key:AIzaSyBdXJ1E7CYD4bBscwtknKatx6NIeXX-svY'
Functions as a kind of insecure PonyDebugger/PDNetwork Domain...
24 AkamaiGlobalHost servers were in the past abused in malcoded seeding campaigns.
with Darkleech and Linux/Cdorked.A. exploits being used.

F-status and recommended changes: https://observatory.mozilla.org/analyze.html?host=ocsp.int-x3.letsencrypt.org

The Interwebs stays a dangerous place sometimes...

polonus (volunteer website security analyst and website error-hunter)
« Last Edit: April 26, 2017, 02:09:54 AM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!