Ransomware crims got a month-long head start on Check Point VPN 0-day that now has a fix
2026-06-08T19:23:57Z•73c8427c1d858b42ea24abe3fb4563f3c931c23a6b1ab9a0555021753e145938
AI-assisted-attacksCheck PointCisco SD-WANDoSGitHubGogsHTTP/2Palo Alto NetworksQilinRCEWFPactive-exploitationcredential-theftdata-breachexploit-modulemalwarenpmphishingransomwaresupply-chainsurveillanceunpatched-vulnerabilitieswormzero-day
What happened
Multiple active incidents and unpatched zero-days dominate the news: attackers (including a Qilin ransomware affiliate) exploited a Check Point VPN 0-day for about a month before a fix; Palo Alto VPN authentication-bypass is being exploited in the wild; Cisco SD‑WAN has an actively attacked 0-day with no patch yet; and a critical RCE in Gogs has an exploit module but no vendor fix. Concurrently there are high-impact breaches and supply-chain/malware events — World Food Programme data exposure (600k families), npm packages and Red Hat npm repository infections, ShinyHunters’ Charter leak, Git/G
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- theregister_security
- Record identifier
- 73c8427c1d858b42ea24abe3fb4563f3c931c23a6b1ab9a0555021753e145938
- Enrichment time
- 2026-06-08T19:23:57Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.