Mozilla found 13 instances where China-based WoSign and its subsidiary StartCom issued certificates with various types of problems. Both CAs issued certificates signed with the SHA-1 algorithm after Jan. 1 in violation of industry rules and intentionally backdated them to avoid being caught. Mozilla said that it has lost faith in the ability of the two companies to correctly carry out the functions of a CA and announced that it will stop trusting new certificates from the two. Apple followed suit and announced its own ban for future Wosign and StartCom certificates last week.”]

