Attackers Target Check Point VPNs to Access Corporate Networks
ID: 25f062e1-51f6-5e58-9f40-547d9990a507
STIX ID: report--25f062e1-51f6-5e58-9f40-547d9990a507
Feed Name: Dark Reading
Threat Score
Check Point disclosed an information-disclosure flaw (CVE-2024-24919) affecting security gateways with remote/mobile VPN enabled; a hotfix has been released and vendors observed a handful of exploitation attempts. The report warns that remote access VPNs are increasingly used as initial access vectors, recommends installing the patch, strengthening authentication (e.g., certificates or ZTNA), auditing default accounts, and removing unnecessary features.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
