20th April – Threat Intelligence Report

2026-04-20T20:52:32Z061a505535175e20d9c609a3af39ff3ec03551bf954a455b5344ae1b8d1d847c
ai-assisted-malwareapt41-likechatgpt-data-leakagecve-2026-3502data-breachhandala-hackiranian-actorsraasransomwaresilver-dragonsupply-chainsystembcthe-gentlementhreat-inteltrivytrueconfvoidlinkzero-day

What happened

Check Point Research weekly feed (20 Apr 2026) summarizing multiple investigations and incident reports. Key items: discovery of a TrueConf client zero‑day (CVE‑2026‑3502, CVSS 7.8) exploited against Southeast Asian government targets (Operation TrueChaos); a DFIR analysis of The Gentlemen RaaS and SystemBC proxy activity; multiple high‑impact breaches and incidents (Booking.com, LA Police, European Commission via Trivy supply‑chain compromise, Stryker, Navia, AkzoNobel); research on Iranian actor “Handala Hack” (aka Void Manticore) and its destructive/hack‑and‑leak methods; tracking of a Sino

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
checkpoint_research
Record identifier
061a505535175e20d9c609a3af39ff3ec03551bf954a455b5344ae1b8d1d847c
Enrichment time
2026-04-20T20:52:32Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · 20th April – Threat Intelligence Report · Baitaphish