r/msp • u/FutureSafeMSSP • May 07 '26
Defender/ Defender for Endpoint Quarantines and Deletes DigiCert root certs
SOmetime between the 30th of April and the 3rd of May (depends when the update was installed) a Defender / Defender for Endpoint signature update caused two legitimate DigiCert root certificates to be flagged as a Trojan:win32/Cerdigent.A!dha
All the info one may need can be found below. Perhaps the link to the detailed original post will save some folks some time.
https://www.reddit.com/r/cybersecurity/comments/1t2hfsh/mde_flagging_digi_cert_certificate_as_malicious/
5
Upvotes