Digital Death Penalty...
... for all CA companies who refuse to disclose the full details of any breach.
Everyone and their dog are removing the DigiNotar certs now, causing SSL sites of all their customers to trigger a "potentially insecure" warning. And I hope they get sued for that by their customers.
I have punted the DigiNotar cert, just as I did with Comodo, and I don't hesitate to do this to all root-level certs of all companies who are less than completely open about all breaches. And when I get a SSL warning because of that, I stop using the site/service that uses it, and make sure that let the owner know.
Vote with your feet, people.