11th May – Threat Intelligence Report
2026-05-11T20:52:35Z•4366c1380b2f5322d118f7e2157204771b58585461a57a53fc8b0d06fb9805f5
AI-threatsCVE-2026-3502Context.aiOAuth-token-compromiseRaaSSystemBCTeamPCPThe-GentlemenTrivyTrueConfVECTVercelVoidLinkchatgpt-data-leakdata-breachhigh-profile-victimsmedical-device-impactransomwaresupply-chainzero-day
What happened
This Check Point Research roundup (Mar–May 2026) highlights a high-impact threat landscape: Q1 2026 ransomware consolidation (70+ active data-leak sites listing 2,122 new victims), multiple large data breaches (Instructure/Canvas, Medtronic, Booking.com, Vercel via Context.ai, European Commission via Trivy, Stryker, Navia, LAPD), and emergent RaaS actors (VECT, The Gentlemen) with supply‑chain and proxy tooling (SystemBC, TeamPCP). Notable technical findings include a TrueConf client zero-day (CVE-2026-3502, CVSS 7.8) exploited against Southeast Asian government targets, a ChatGPT code-exec “隐
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- checkpoint_research
- Record identifier
- 4366c1380b2f5322d118f7e2157204771b58585461a57a53fc8b0d06fb9805f5
- Enrichment time
- 2026-05-11T20:52:35Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.