Anomaly Detection in Certificate Transparency Logs
This addresses security and compliance challenges for organizations managing digital certificates, but it is incremental as it applies an existing method to a specific domain.
The paper tackles the problem of detecting anomalies in X.509 certificates from Certificate Transparency logs, using Isolation Forest to identify issues beyond standard compliance, with validation on a sample dataset.
We propose an anomaly detection technique for X.509 certificates utilizing Isolation Forest. This method can be beneficial when compliance testing with X.509 linters proves unsatisfactory, and we seek to identify anomalies beyond standards compliance. The technique is validated on a sample of certificates from Certificate Transparency logs.