#3
SecurityWeek
general
June 09, 2026 at 09:47 UTC
Check Point VPN Zero-Day Exploited in Qilin Ransomware Attacks
By Ionut Arghire
AI Summary
A critical authentication bypass zero-day in Check Point Remote Access VPN and Mobile Access has been actively exploited since early May 2026 by a Qilin ransomware affiliate, allowing VPN connections without valid credentials. CISA issued a binding directive giving U.S. federal agencies just three days to patch the flaw, reflecting the severity and active exploitation in the wild.
Relevance score: 92.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →