MOZILLA has revoked the signing key for Firefox and Thunderbird on Linux after it was discovered in a private repository, raising concerns about software supply chain security. This action is part of a broader effort to enhance cryptography protocols and prevent unauthorized alterations to software versions.
Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
Mozilla Rotates Firefox GPG Key After Accidental GitHub Commit
securityonline.info
-
Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo
thehackernews.com
-
Mozilla replaces Firefox GPG key after accidental GitHub leak
securityweek.com