
Check Point patched a critical VPN zero-day (CVE-2026-50751, CVSS 9.3) exploited since May 7 by a Qilin ransomware affiliate. The flaw bypasses password authentication via a certificate validation logic error in IKEv1. Attacks targeted a few dozen organizations globally, with the actor also exploiting VPN flaws from Palo Alto, Fortinet, and F5.
Tap to vote and see what everyone thinks.
Check Point VPN Flaw Lets Attackers Bypass Passwords
Summary by ByteBrief