Check Point says VPN attacks caused by Qilin ransomware group — who had a month's head start on them
- Check Point patches critical VPN auth‑bypass flaw (CVE‑2026‑50751) used in ransomware attacks
- Zero‑day exploited since early May, with Qilin deploying ransomware in at least one case
- Customers urged to apply fixes and mitigations immediately
Check Point has declared it fixed a vulnerability in its VPN products being used in ransomware attacks against dozens of organizations worldwide.
In a security advisory published, the company said it addressed an authentication bypass vulnerability that allowed remote threat actors to establish a remote access VPN connection without a valid user password.
The bug is tracked as CVE-2026-50751 and was given a severity score of 9.3/10 (critical).
Applying the fix
Check Point's VP of research, Lotem Finkelstein, noted the attacks leveraging this bug started on May 7, 2026, more than a month ago. In early June, the attacks picked up in such volume that it drew the attention of Check Point, which realized on June...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE