logo

CISA Gives Feds 3 Days to Patch Check Point VPN Bug Exploited as Zero-Day

ID: a979173e-769f-5d5a-8593-5e792519c3e1

STIX ID: report--a979173e-769f-5d5a-8593-5e792519c3e1

Feed Name: CosmicBytez Labs

Threat Score
90/100

Date Published: 2026-06-09

Date Updated: 2026-06-11

...
...

A critical zero-day in Check Point Remote Access VPN and Mobile Access is being actively exploited by Qilin ransomware affiliates, prompting CISA to issue a 3-day emergency directive for federal agencies; the vulnerability allows unauthenticated remote access and may enable broader network compromise if unpatched. The report outlines affected products, risk factors, immediate remediation and monitoring actions (patching, restricting internet access, log review, enforcing MFA), and frames this incident within a wider trend of attackers prioritizing VPN gateways.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.