Ransomware crims got a month-long head start on Check Point VPN 0-day that now has a fix

2026-06-08T19:23:57Z73c8427c1d858b42ea24abe3fb4563f3c931c23a6b1ab9a0555021753e145938
AI-assisted-attacksCheck PointCisco SD-WANDoSGitHubGogsHTTP/2Palo Alto NetworksQilinRCEWFPactive-exploitationcredential-theftdata-breachexploit-modulemalwarenpmphishingransomwaresupply-chainsurveillanceunpatched-vulnerabilitieswormzero-day

What happened

Multiple active incidents and unpatched zero-days dominate the news: attackers (including a Qilin ransomware affiliate) exploited a Check Point VPN 0-day for about a month before a fix; Palo Alto VPN authentication-bypass is being exploited in the wild; Cisco SD‑WAN has an actively attacked 0-day with no patch yet; and a critical RCE in Gogs has an exploit module but no vendor fix. Concurrently there are high-impact breaches and supply-chain/malware events — World Food Programme data exposure (600k families), npm packages and Red Hat npm repository infections, ShinyHunters’ Charter leak, Git/G

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
73c8427c1d858b42ea24abe3fb4563f3c931c23a6b1ab9a0555021753e145938
Enrichment time
2026-06-08T19:23:57Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Ransomware crims got a month-long head start on Check Point VPN 0-day that now has a fix · Baitaphish