CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day
ID: efb08ec0-a8f0-5a25-99d4-0aff97e20936
STIX ID: report--efb08ec0-a8f0-5a25-99d4-0aff97e20936
Feed Name: Bleeping Computer
CISA ordered federal agencies to secure Check Point Remote Access and Mobile Access devices against CVE-2026-50751 — a critical, unauthenticated authentication-bypass in instances using deprecated IKEv1 — after Check Point reported active exploitation beginning May 7 and linked at least one breach to Qilin ransomware affiliates; Check Point published patches and mitigations and CISA added the CVE to its Known Exploited Vulnerabilities catalog with a June 11 remediation deadline for federal agencies.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
