These domains belong to someone. Someone who likely hasn't agreed. It's deeply troubling when a CA says: "We'll just issue some test certs for domains that sound like we could use them for testing - no matter whom they belong to and if they agree to that."
It's quite simple: Don't issue certs unless the owner of that domain has asked you for it.
But if you look closer at Andrew's mail: There were a bunch of other certs for all kinds of domains.
But if you look closer at Andrew's mail: There were a bunch of other certs for all kinds of domains.