logo

Check Point VPN Flaw Exploited Since Early May

ID: 1f8bc099-56bd-5c37-bdfd-69771bf85486

STIX ID: report--1f8bc099-56bd-5c37-bdfd-69771bf85486

Feed Name: Dark Reading

Threat Score
78/100

Date Published: 2026-06-08

Date Updated: 2026-06-15

Author: Alexander Culafi

...
...

A critical authentication-bypass zero-day (CVE-2026-50751) affecting Check Point Remote Access VPN and Mobile Access configured with deprecated IKEv1 is being actively exploited in the wild; Check Point confirmed exploitation since May 7 and linked post-exploitation activity to a Qilin ransomware affiliate. Customers are urged to apply hotfixes or enforce IKEv2/other mitigations immediately to prevent unauthorized VPN session establishment and potential follow-on intrusion.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.