The mechanism used to distribute information about invalid certificates is called certificate revocation. This is typically done through certificate revocation lists (CRLs) or online certificate status protocol (OCSP) servers. These mechanisms allow clients to check the status of a certificate and determine if it has been revoked by the certificate authority.