logo

Attackers Target Check Point VPNs to Access Corporate Networks

ID: 25f062e1-51f6-5e58-9f40-547d9990a507

STIX ID: report--25f062e1-51f6-5e58-9f40-547d9990a507

Feed Name: Dark Reading

Threat Score
60/100

Date Published: 2024-05-28

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

Check Point disclosed an information-disclosure flaw (CVE-2024-24919) affecting security gateways with remote/mobile VPN enabled; a hotfix has been released and vendors observed a handful of exploitation attempts. The report warns that remote access VPNs are increasingly used as initial access vectors, recommends installing the patch, strengthening authentication (e.g., certificates or ZTNA), auditing default accounts, and removing unnecessary features.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.