As cited
Citation snapshot as of 2026-08-11T07:09:51.762Z (Coordinated Universal Time).
breaches incidents
Mozilla Issues New Firefox GPG Key Following Exposure
Mozilla revoked a Firefox GPG signing subkey after it was inadvertently exposed in a GitHub repository and issued a replacement key for future code signing operations.
Why it matters: Software distributors and system administrators who verify Firefox signatures must update their GPG key configuration to use the new key and ensure ongoing code authenticity verification.
- Source published
- 2026-08-11
- First seen by Cybersecurity Tracker
- 2026-08-11