Check Point Warning: Actively Exploited VPN Zero-Day Linked to Qilin Ransomware

2026-06-10T08:51:52Z4f1b7665d71a6452bd86fb2b7dde2b52a40f1a078908bc2b07185ef01b0a4d15
AI supply chainCISA warningCVE-2026-50751DentaQuestHugging FaceMeta InstagramMicrosoft 365 AndroidNSOOAuth token theftQilinVPN vulnerabilityWhatsAppaccount recoverycritical infrastructuredata breachfuel ATGgithub.devransomwareremote code executionzero-day

What happened

TechRepublic roundup of multiple high-impact security incidents: Check Point disclosed an actively exploited VPN zero-day (CVE-2026-50751) linked to a Qilin ransomware actor, prompting emergency hotfixes and a CISA remediation deadline. Other notable issues include a Meta Instagram account-recovery bug affecting ~20,000 accounts, a github.dev zero-day exposing OAuth developer tokens, a Hugging Face Transformers vector for malicious-model RCE, a Microsoft 365 Android token debug flaw, CISA warnings about attacks on Automatic Tank Gauge (fuel) systems, and a DentaQuest data incident exposing ~2.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
techrepublic_security
Record identifier
4f1b7665d71a6452bd86fb2b7dde2b52a40f1a078908bc2b07185ef01b0a4d15
Enrichment time
2026-06-10T08:51:52Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.