Check Point links VPN zero-day attacks to Qilin ransomware gang
ID: 7cf3a481-730d-5f6d-9250-cfa2b33a32f5
STIX ID: report--7cf3a481-730d-5f6d-9250-cfa2b33a32f5
Feed Name: Bleeping Computer
Threat Score
Check Point disclosed a critical authentication-bypass zero-day (CVE-2026-50751) affecting Remote Access VPN and Mobile Access configured with deprecated IKEv1, actively exploited since May and observed against a few dozen organizations with at least one incident tied to the Qilin ransomware affiliate; a second related IKEv1 certificate-validation issue (CVE-2026-50752) was also identified and patched, with mitigations recommended for unpatchable systems.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
