Check Point VPN Flaw Exploited Since Early May
ID: 1f8bc099-56bd-5c37-bdfd-69771bf85486
STIX ID: report--1f8bc099-56bd-5c37-bdfd-69771bf85486
Feed Name: Dark Reading
Threat Score
A critical authentication-bypass zero-day (CVE-2026-50751) affecting Check Point Remote Access VPN and Mobile Access configured with deprecated IKEv1 is being actively exploited in the wild; Check Point confirmed exploitation since May 7 and linked post-exploitation activity to a Qilin ransomware affiliate. Customers are urged to apply hotfixes or enforce IKEv2/other mitigations immediately to prevent unauthorized VPN session establishment and potential follow-on intrusion.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
