Microsoft Defender wrongly flags DigiCert certs as Trojan:Win32/Cerdigent.A!dha

Microsoft Defender is detecting legitimate DigiCert root certificates as Trojan:Win32/Cerdigent.A!dha, resulting in widespread false-positive alerts, and in some cases, removing certificates from Windows.

BleepingComputer

What do Lenovo, Kingston, Shuttle Inc, and Palit Microsystems have in common?

EV Certificates from these companies were issued and used by a Chinese crime group, #GoldenEyeDog (#APT-Q-27)!

Thanks @malwrhunterteam and @g0njxa for your contributions
1/7