Week in review: Exploited Check Point VPN zero-day, Oracle PeopleSoft servers under attack
2026-06-14T08:51:47Z•1c585c3cec76a8335cfb5682ac076a76e81bc81c004166f521994e83fba4595d
CVE-2026-50751active-exploitationai-abuseai-governanceai-sovereigntyaudiA6authentication-bypasscheck-pointcomcastcrypto-launderingdata-centerseuropolgeminigoogleisomalicious-domainsnistphishingpoCransomwareregistrar-abusesmall-business-securitytargeted-phishingvpnzerofox
What happened
This week’s roundup highlights multiple high-impact developments: WatchTowr researchers published technical details and a detection-generator for an actively exploited Check Point Remote Access/Mobile Access authentication‑bypass (CVE-2026-50751) — patched by Check Point on 2026-06-08 but now with public PoC, increasing opportunistic risk. Google sued a China‑based crime network for using Gemini and other AI to build large-scale phishing/fraud infrastructure (thousands of fake sites, millions of URLs). Phishing volumes have declined overall, but attackers are shifting to more targeted, high‑f‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- 1c585c3cec76a8335cfb5682ac076a76e81bc81c004166f521994e83fba4595d
- Enrichment time
- 2026-06-14T08:51:47Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.