#4
BleepingComputer
general
October 07, 2026 at 20:50 UTC
Hackers hijack Google domains after breaching ccTLD registries
By Bill Toulas
AI Summary
Attackers compromised third-party operators of the .gh (Ghana), .sl (Sierra Leone), and .as (American Samoa) ccTLD registries to modify authoritative DNS records and obtain unauthorized HTTPS certificates for several Google domains. Google confirmed its own systems were not breached, but the attack demonstrates that certificate issuance security is only as strong as the weakest ccTLD registry operator. This supply-chain-style DNS attack puts any domain under those three TLDs at risk of impersonation via valid TLS certificates.
Relevance score: 82.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →