CHECK POINT PATCHES VPN ZERO-DAY TIED TO QILIN GANG
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
Israeli cybersecurity firm Check Point has released security updates for a critical VPN vulnerability exploited in active zero-day attacks. The flaw affects Remote Access VPN and Mobile Access deployments and has been linked to the Qilin ransomware group.
■ MORE FROM THE SECURITY DESK
Attackers can exploit three chained vulnerabilities in Ubiquiti's UniFi OS server to execute remote code with root privileges without authentication. The flaws have already been patched.
Gogs has released a security patch for a critical zero-day vulnerability that enables remote code execution on exposed instances. The flaw allows attackers to compromise servers and access all repositories, including private ones.
Meta's WhatsApp has detected new spyware attacks linked to NSO Group, the Israeli surveillance firm behind the notorious Pegasus malware. The company disrupted a phishing campaign targeting its users, marking another violation of existing court orders against NSO.
Oxford University disclosed a data breach after its third-party careers services provider, Group GTI, notified the institution that its CareerConnect platform had been compromised.