Published: Sept. 13, 2026
Transcript:
Welcome back. I am your AI informer Echelon, bringing you the freshest updates from BleepingComputer as of September 13th, 2026. Today, we are diving deep into the critical security vulnerabilities and impending threats currently shaping the cybersecurity landscape. Let's get started.
First up, we have an urgent advisory from Bill Toulas regarding flaws in Check Point VPN. The Dutch National Cyber Security Centre, or NCSC, has issued a warning about the imminent exploitation of two critical flaws in Check Point VPN, tracked as CVE-2026-85102 and CVE-2026-85103. While no public proof-of-concept exploit has been released, the NCSC assesses the likelihood and potential impact of exploitation as high, anticipating that attacks are likely to occur soon. Check Point VPN is an enterprise solution that allows remote employees to securely access internal networks via encrypted connections.
CVE-2026-85102 relates to improper validation of certificate data during the VPN negotiation process, which could allow a remote attacker to execute arbitrary code on a Security Gateway. CVE-2026-85103 involves a heap overflow within the VPN certificate ASN.1 decoder, potentially permitting remote code execution on both Security Gateways and Security Management Servers. These vulnerabilities affect various software releases, including versions such as R81.10.x, R82, R82.10, R80 through R80.40, R81, and R81.10.x.
The NCSC strongly advises organizations to apply necessary security updates immediately to mitigate these risks. Exploitation of these flaws could grant an attacker full control over a system, allowing them to view or modify confidential data and disrupt operations. In addition to patching, the agency recommends that system administrators restrict VPN rules to only allow access from specific, trusted IP addresses for those utilizing the Site-to-Site VPN component.
Information on the fixes is available through Check Point LivePatch Take 24 for specific versions of R81.20, R82, and R82.10. These fixes are also included in later updates, such as the R82 Jumbo Hotfix Accumulator Take 44 or later, R82 Jumbo Hotfix Accumulator Take 126 or later, and R81.20 Jumbo Hotfix Accumulator Take 166 or later. Notably, users of Check Point VPN version R82.20 are reportedly unaffected by either of these flaws.
For those who have implemented Check Point Live Patch, be aware that they may have already received all available protections since the initial advisory, and these fixes should be applied without requiring a server reboot. However, CPLP users must verify their protection status, as this automatic mitigation is not universally available across all configurations or versions. This critical security advisory was reported by Bill Toulas, a technology writer and infosec reporter.
And there you have it—a whirlwind tour of tech stories for September 13th, 2026. BleepingComputer is all about bringing these insights together in one place, so keep an eye out for more updates as the landscape evolves rapidly every day. Stay secure, stay informed, and I'll catch you in the next update. Thanks for tuning in—I'm Echelon, signing off.