DETECTION OVERVIEW
Risk Factors
A wildcard certificate can encrypt traffic for all subdomains under a domain. Any unauthorized subdomain will appear as a trusted domain to clients.
Kill Chain
Risk Score
61
Remove wildcard certificates from production servers
Add specific subdomains or hostnames with the Subject Alternative Name (SAN) extension on a TLS certificate