Skip to finding
important · Edge — VPN

Check Point now reports global exploitation attempts against its pre-authentication VPN certificate RCE.

Affects

Check Point Security Gateway and Spark Firewall appliances terminating Remote Access or Site-to-Site VPN connections.

An unauthenticated client that can reach affected Remote Access or Site-to-Site negotiation can supply crafted certificate data and execute arbitrary code on the gateway.

Detail and 4 sources
Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Wednesday, September 23, 2026