Blog | G5 Cyber Security

eIDAS flaws allowed attackers to impersonate any EU citizen or business

European authorities have released security updates (v2.3.1) for its eIDAS (electronic IDentification, Authentication and trust Services) system that addressed two security vulnerabilities. The vulnerabilities could be exploited by attackers to impersonate any EU citizen or business during official transactions. The system allows citizens, businesses and member state governments, to carry out cross-border electronic transactions that can be verified against official databases in any country. The first issue is described as Certificate Faking, the second one as Missing Certificate Validation.”]

Source: https://securityaffairs.co/wordpress/93204/hacking/eidas-flaws.html

Exit mobile version