logo

Check Point links VPN zero-day attacks to Qilin ransomware gang

ID: 7cf3a481-730d-5f6d-9250-cfa2b33a32f5

STIX ID: report--7cf3a481-730d-5f6d-9250-cfa2b33a32f5

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2026-06-08

Date Updated: 2026-06-08

Author: Sergiu Gatlan

...
...

Check Point disclosed a critical authentication-bypass zero-day (CVE-2026-50751) affecting Remote Access VPN and Mobile Access configured with deprecated IKEv1, actively exploited since May and observed against a few dozen organizations with at least one incident tied to the Qilin ransomware affiliate; a second related IKEv1 certificate-validation issue (CVE-2026-50752) was also identified and patched, with mitigations recommended for unpatchable systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.