• Platformchevron right
  • Solutionschevron right
  • Modern NDRchevron right
  • Resourceschevron right
  • Companychevron right

DETECTION OVERVIEW

Wildcard TLS Server Certificate

Risk Factors

A wildcard certificate can encrypt traffic for all subdomains under a domain. Any unauthorized subdomain will appear as a trusted domain to clients.

Kill Chain

Hardening

Risk Score

61

Next in Hardening: Anonymous FTP Login

Attack Background

Mitigation Options

Remove wildcard certificates from production servers
Add specific subdomains or hostnames with the Subject Alternative Name (SAN) extension on a TLS certificate

What else can RevealX do for you?