CYBERSECURITYTRACKER
TRACKING3,841 stories704 vuln stories
Permanent story citation

Mozilla Issues New Firefox GPG Key Following Exposure

The story is preserved as cited. Later corrections remain visibly typed and adjacent to the original snapshot.

← newsStory 4187

As cited

Citation snapshot as of 2026-08-11T07:09:51.762Z (Coordinated Universal Time).

breaches incidents

Mozilla Issues New Firefox GPG Key Following Exposure

Mozilla revoked a Firefox GPG signing subkey after it was inadvertently exposed in a GitHub repository and issued a replacement key for future code signing operations.

Why it matters: Software distributors and system administrators who verify Firefox signatures must update their GPG key configuration to use the new key and ensure ongoing code authenticity verification.

Source published
2026-08-11
First seen by Cybersecurity Tracker
2026-08-11

Source attribution