Cybersecurity · 49 views
Check Point warns of ransomware-linked attacks exploiting outdated VPN protocol
Check Point has issued emergency hotfixes for a pair of vulnerabilities affecting VPN deployments that still use the deprecated Internet Key Exchange version 1 (IKEv1) protocol, warning that one of the flaws is already being exploited in…
AI Summary
Check Point released emergency hotfixes for two vulnerabilities in VPN deployments that still use the deprecated IKEv1 protocol, noting that one flaw is already being exploited in the wild. The more severe vulnerability lets attackers create VPN sessions without a valid password, potentially granting network access. Check Point says exploitation began by early May and has accelerated, affecting a few dozen targeted organizations globally, including a case linked to a Qilin ransomware affiliate. The issues impact Remote Access VPN, Mobile Access VPN and certain Spark Firewall products that are configured for IKEv1, which remains enabled in some environments for compatibility.
AI summaries can be wrong sometimes—always verify important details using the source article.
How AI & Automation are usedMore from Cybersecurity
Continue reading recent Cybersecurity coverage
Support HappeningNow
Independent AI-powered news analysis is reader-supported. Your contribution helps cover infrastructure, summaries, and continued platform development.
Support HappeningNow