11th May – Threat Intelligence Report

2026-05-11T20:52:35Z4366c1380b2f5322d118f7e2157204771b58585461a57a53fc8b0d06fb9805f5
AI-threatsCVE-2026-3502Context.aiOAuth-token-compromiseRaaSSystemBCTeamPCPThe-GentlemenTrivyTrueConfVECTVercelVoidLinkchatgpt-data-leakdata-breachhigh-profile-victimsmedical-device-impactransomwaresupply-chainzero-day

What happened

This Check Point Research roundup (Mar–May 2026) highlights a high-impact threat landscape: Q1 2026 ransomware consolidation (70+ active data-leak sites listing 2,122 new victims), multiple large data breaches (Instructure/Canvas, Medtronic, Booking.com, Vercel via Context.ai, European Commission via Trivy, Stryker, Navia, LAPD), and emergent RaaS actors (VECT, The Gentlemen) with supply‑chain and proxy tooling (SystemBC, TeamPCP). Notable technical findings include a TrueConf client zero-day (CVE-2026-3502, CVSS 7.8) exploited against Southeast Asian government targets, a ChatGPT code-exec “隐

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
checkpoint_research
Record identifier
4366c1380b2f5322d118f7e2157204771b58585461a57a53fc8b0d06fb9805f5
Enrichment time
2026-05-11T20:52:35Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · 11th May – Threat Intelligence Report · Baitaphish