Kazakhstan Asks Internet Users To Install Controversial Security Certificate

Internet users in the Asian state of Kazakhstan are being prompted to download a security certificate that gives the government greater monitoring powers.

Privacy advocates have warned that a new security certificate for internet browsers being promoted by the Kazakhstan government amounts to a countrywide man-in-the-middle (MITM) attack and “aims to spy on its citizens’ web traffic”.

According to Privacy News Online, an order was issued by the government on 17 July notifying ISPs that they must force customers to install a government root certificate on all of their online devices. Once installed, the government would be able to intercept, decrypt, analyse and reanalyse all encrypted HTTPS traffic.

Internet users in the country reported being redirected to pages asking them to install this new certificate and, in some cases, were prompted via text messages.

Downloading this certificate, Privacy News Online warned, would be a major threat to both internet privacy and security for Kazakhstani internet users. If this certificate is compromised by outside hackers, significant quantities of personal information could be obtained.

In a statement, the government said the new certificate is “aimed at enhancing the protection of citizens, government bodies and private companies from hacker attacks, internet fraudsters and other types of cyberthreats”.

Such cyberthreats, according to Kcell – one of the country’s biggest telecoms providers – include viewing illegal content. Kazakhstan’s government maintains a tight grip on the country’s media, especially with the recent passing of a new media law that limits freedom of expression, according to OpenDemocracy.

On 19 July, the government issued a clarification to say that downloading the certificate was completely voluntary and was not needed to access the internet. As of yet, none of the major browsers have officially said they will ban the certificate, but they are investigating.

Privacy advocate Caleb Chen said that if a ban is enforced, the Kazakh government could either back down and pull back the certificate, or it could encourage internet users to use a state-run browser.

RECENT NEWS

Reassessing AI Investments: What The Correction In US Megacap Tech Stocks Signals

The recent correction in US megacap tech stocks, including giants like Nvidia, Tesla, Meta, and Alphabet, has sent rippl... Read more

AI Hype Meets Reality: Assessing The Impact Of Stock Declines On Future Tech Investments

Recent declines in the stock prices of major tech companies such as Nvidia, Tesla, Meta, and Alphabet have highlighted a... Read more

Technology Sector Fuels U.S. Economic Growth In Q2

The technology sector played a pivotal role in accelerating America's economic growth in the second quarter of 2024.The ... Read more

Tech Start-Ups Advised To Guard Against Foreign Investment Risks

The US National Counterintelligence and Security Center (NCSC) has advised American tech start-ups to be wary of foreign... Read more

Global IT Outage Threatens To Cost Insurers Billions

Largest disruption since 2017’s NotPetya malware attack highlights vulnerabilities.A recent global IT outage has cause... Read more

Global IT Outage Disrupts Airlines, Financial Services, And Media Groups

On Friday morning, a major IT outage caused widespread disruption across various sectors, including airlines, financial ... Read more