[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Firefox: Warning: Potential Security Risk Ahead for the USPS.com




On 4/1/22 6:36 am, Charles Curley wrote:
On Mon, 3 Jan 2022 23:01:34 +0100 (CET)
local10 <local10@tutanota.com> wrote:

Am I the only one who's getting this error?
I am not. Vivaldi (vivaldi-stable, 5.0.2497.32-1, amd64) on bullseye.
The cert looks like:

Common Name (CN)	*.usps.com
Organization (O)	United States Postal Service
Organizational Unit (OU)	<Not Part Of Certificate>
Common Name (CN)	DigiCert SHA2 Secure Server CA
Organization (O)	DigiCert Inc
Organizational Unit (OU)	<Not Part Of Certificate>
Issued On	Wednesday, May 13, 2020 at 6:00:00 PM
Expires On	Monday, May 16, 2022 at 6:00:00 AM
SHA-256 Fingerprint	AA 8B 94 FA D6 4D 4B 79 AE A3 23 03 78 B2 E4 97
65 8A C8 C2 CC B2 3A EC 09 C0 88 03 A9 36 26 E6
SHA-1 Fingerprint	7F 13 43 BD 73 38 23 15 81 A8 54 11 C3 13 F4 95
12 81 96 1F


I too have no problems.

My best guess is the OP DNS has been compromised. A simple check such as using the host command should produce

host usps.com
usps.com has address 56.0.134.100
usps.com mail is handled by 10 usps-com.mail.protection.outlook.com.

host tools.usps.com
tools.usps.com is an alias for cs1799.wpc.upsiloncdn.net.
cs1799.wpc.upsiloncdn.net has address 68.232.45.196
cs1799.wpc.upsiloncdn.net has IPv6 address 2606:2800:10c:b15a:cfbd:99c7:4c90:f5a0


--
Jeremy

Attachment: OpenPGP_signature
Description: OpenPGP digital signature


Reply to: