CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day
ID: 5df576a7-f17c-55de-a03a-13ad78b62204
STIX ID: report--5df576a7-f17c-55de-a03a-13ad78b62204
Feed Name: DataBreaches.Net
Threat Score
CISA has ordered U.S. government agencies to secure Check Point Remote Access VPN and Mobile Access deployments against a critical zero-day (CVE-2026-50751) actively exploited by Qilin ransomware affiliates; the flaw allows unauthenticated attackers to bypass authentication and establish VPN connections on systems using deprecated IKEv1, lacking machine-certificate enforcement, and accepting legacy clients.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
