It’s known that from the RFC 2606 that
.test and others should be used for development purposes. It would be cool to have valid (in the chain of trust) CA certificate for these reserved TLDs to generate any kind of a certificate (ie. wildcard, not necessary EV).
These TLD domains are not recognized by any public DNS server in the well-configured network, so there’s no possibility to come up with a collision that could possibly do damage. Also it’s pain in the butt to get self-signed CA with these TLDs into Google Chrome as well as it’s a potentially unsafe.