Skip to content

Incidents involving:

Republic of Estonia (national ID-card / e-residency)

Vulnerability exploitResolved

Estonian ID-card ROCA crypto crisis

A flaw in Infineon's RSA key-generation library (ROCA, CVE-2017-15361) made it theoretically possible to forge digital identities for some 750,000 Estonian ID-cards, forcing a nationwide certificate suspension and emergency remote re-keying.

Victim
Republic of Estonia (national ID-card / e-residency)