Find notable cyber news and cases, enriched with sources, timelines, and signals.

Google hit by network compromise

Incident
First reported
Last updated
Happening score
H score 16
2 unique sources, 2 articles

Summary

Hide ▲

The .gh, .sl, and .as ccTLD compromise led to unauthorized HTTPS certificates for Google and YouTube names, creating a risk of encrypted impersonation and private-data interception. Chrome blocked the rogue certificates with CRLSets, and the issuing CAs later revoked them. Certificate Transparency logs place issuance between September 22 and 27, 2026, with disclosure on October 6-7, 2026. Google's own systems were not breached.

Related Happenings

Google Chrome 155 security update (247 vulnerabilities)

Security Patch Release
H score16 First: 07.10.2026 13:51 Last: 07.10.2026 13:51 Sources 1

About this happening: Google rolled out a Chrome 155 security update that patches 247 vulnerabilities, including four critical use-after-free flaws across Chromecast, Browser, Navigat...

Irish Data Protection Commission (DPC) Fined Google €403m and required compliance changes within six months. on The order addresses unlawful location-data processing transparency

Regulatory/Legal Action
H score28 First: 21.09.2026 18:00 Last: 21.09.2026 18:00 Sources 1

About this happening: The Irish Data Protection Commission fined Google €403m ($460m) for GDPR violations involving location data. The enforcement action covers Web & App Activity...

ClickFix browser-injection crypto-fraud campaign

Campaign
H score19 First: 09.09.2026 16:45 Last: 09.09.2026 16:45 Sources 1

About this happening: The ClickFix operation has shifted into browser-side JavaScript injection, expanding its fraud reach and raising the risk of cryptocurrency theft during live trading s...

Pass-ta-key attacks against Google Password Manager on Windows TPM devices

Technical Analysis
H score23 First: 04.08.2026 02:58 Last: 04.08.2026 02:58 Sources 1

About this happening: Pass-ta-key is a technical analysis of three attacks against Google Password Manager synced passkeys in Chrome on Windows devices with TPM. Palo Alto Networks Un...

Chrome Google Password Manager passkey post-compromise techniques on Windows

Technical Analysis
H score3 First: 03.08.2026 19:24 Last: 03.08.2026 19:24 Sources 1

About this happening: Unit 42 expanded the Chrome Google Password Manager passkey happening with Pass-ta-key research that shows how malware already on a Windows endpoint can manipulate...

Timeline

  1. 07.10.2026 21:48 3 articles · 2h ago

    Google hit by network compromise

    Initial Disclosure

    Certificate Transparency logs first showed unauthorized certificates for .gh names on September 22, 2026, then .sl and .as entries followed later that week. The event became public when the certificates were identified, blocked, and revoked on October 6-7, 2026.

    Show sources