Thousands of remote workers struggle to log in using Pulse Secure VPN due to expired code that is needed to digitally verify users

  • Pulse Secure is used to let employees sign in to company websites remotely
  • A report finds employees are unable to access internal software as of Monday
  • The code used to digitally sign and verify software components has expired 
  • It seems users will have to wait for an update from Pulse regarding the issue 

Users worldwide are unable to connect to Pulse Secure VPN, a service that provides secure access for employees working remotely.

Bleeping Computer found the issue stems from an expired code used to digitally sign and verify software components, which means employees are unable to access internal work.

A number of enterprises report their staff can no longer access the system from home as of Monday.

‘Normally, they log on to Pulse Secure via the web interface and then select their PC, which is then forwarded via the terminal server service,’ a customer reported on the Pulse Secure forums. 

Users worldwide are unable to connect to Pulse Secure VPN, a service that provides secure access for employees working remotely

Users worldwide are unable to connect to Pulse Secure VPN, a service that provides secure access for employees working remotely

Pulse is used by more than 24,000 companies who rely on to secure access for nearly 25 million endpoints, but Monday’s issue means many are unable to perform daily work operations.

Bleeping Computer found the expired code is blocking users from connecting to their company’s resources via their web browser.

READ  Antarctica breakthrough: How ‘new exotic lifeforms’ were discovered 4,000m below ice

Users have flocked to Pulse Secure support forums to seek advice, but it seems that ‘you have to wait for a update from Pulse,’ a forum contributor shared.

Pulse Secure has gain popularity following the coronavirus pandemic forcing companies out of the office and into their homes.

Pulse is used by more than 24,000 companies who rely on to secure access for nearly 25 million endpoints, but Monday's issue means many are unable to perform daily work operations

Pulse is used by more than 24,000 companies who rely on to secure access for nearly 25 million endpoints, but Monday’s issue means many are unable to perform daily work operations

The service always employees to access resources by typing in a passcode that verifies their software components and allows them to carry on operations as if they were using a company issued computer. 

In a new support bulletin released today, Pulse Secure explains that ‘multiple functionalities/features fail for End-Users with a Certificate error.’

‘The Code sign verification on the Client-Side components fails because the Certificate expiry time is checked as opposed to the timestamp of the Code signing,’ reads the support bulletin.  

The issue is not impacting users who access Pulse Desktop Client directly, not through a browser, along with those using macOS and Linux. And the firm suggests using Pulse Desktop Client as a workaround until the issue is fixed

The issue is not impacting users who access Pulse Desktop Client directly, not through a browser, along with those using macOS and Linux. And the firm suggests using Pulse Desktop Client as a workaround until the issue is fixed

The issue is not impacting users who access Pulse Desktop Client directly, not through a browser, along with those using macOS and Linux.

And the firm suggests using Pulse Desktop Client as a workaround until the issue is fixed. 

In August 2020, security researchers discovered a vulnerability in Pulse Secure VPN that could be used by hackers to take control of an enterprise’s entire network – but the flaw has since been fixed.

READ  Amazon wins approval to trial deliveries via drone - Sky News

Although services like Pulse have made the shift to remote working an easier one, such vulneraries can takedown an entire company in just minutes. 



READ SOURCE

LEAVE A REPLY

Please enter your comment!
Please enter your name here