"Emsisoft Tells Users to Update Products, Reboot Systems Due to Certificate Mishap"

Endpoint security firm Emsisoft urges its users to update their anti-malware and other security products and reboot their systems after using an improperly issued digital certificate to sign them.  The company stated that the problem affects its Extended Validation (EV) code signing certificate, which was renewed on August 23 and used to sign all program files compiled after that date, including the latest software version, released on September 4.  GlobalSign, the certificate authority (CA) that issued the certificate, informed Emsisoft on September 4 that it introduced the wrong business number at issuance, meaning the certificate would need to be revoked and reissued.  The CA has issued a new certificate and is revoking the improperly issued one today, September 8.  Emsisoft noted that it has re-signed all files using the correct certificate and has made updates available for its products.  Emsisoft stated that the new files are available through the online update of their products, and they expect that the vast majority of their customers will automatically receive the new version before the old certificate gets revoked.  The main issue with this mishap is the fact that the security firm also used the improperly issued certificate to sign a new driver component, and updating it requires a system reboot.  Emsisoft noted that when a certificate authority revokes a certificate, all software files that have been signed with it will produce a security warning, and drivers may not load at all.  This essentially breaks the protection, including the ability to run online updates.  According to Emsisoft, should it come to this, users would need to reinstall the affected software to restore the protection.  The company is urging its customers to ensure automatic updates are enabled in Emsisoft Anti-Malware, Emsisoft Business Security, and Emsisoft Enterprise Security and reboot their computers before September 22, 2023.  

 

SecurityWeek reports: "Emsisoft Tells Users to Update Products, Reboot Systems Due to Certificate Mishap"

Submitted by Anonymous on