logo

CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day

ID: 5df576a7-f17c-55de-a03a-13ad78b62204

STIX ID: report--5df576a7-f17c-55de-a03a-13ad78b62204

Feed Name: DataBreaches.Net

Threat Score
85/100

Date Published: 2026-06-09

Date Updated: 2026-06-09

Author: Dissent

...
...

CISA has ordered U.S. government agencies to secure Check Point Remote Access VPN and Mobile Access deployments against a critical zero-day (CVE-2026-50751) actively exploited by Qilin ransomware affiliates; the flaw allows unauthenticated attackers to bypass authentication and establish VPN connections on systems using deprecated IKEv1, lacking machine-certificate enforcement, and accepting legacy clients.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.