logo

CISA Issues Urgent Directive to Patch Check Point VPN Vulnerability Exploited by Ransomware

ID: e1e354a9-a121-591d-94ea-142c456ccf10

STIX ID: report--e1e354a9-a121-591d-94ea-142c456ccf10

Feed Name: ThreatCluster

Threat Score
90/100

Date Published: 2026-06-09

Date Updated: 2026-06-10

...
...

CISA has ordered federal agencies to remediate or disconnect Check Point VPN systems to address CVE-2026-42271, a critical zero-day command-injection vulnerability actively exploited by the Qilin ransomware group since early May; dozens of organizations have reportedly been compromised and agencies have 72 hours to patch or isolate affected systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.