Operation TrueChaos: 0-Day Exploitation Against Southeast Asian Government Targets

2026-03-31T20:52:29Z4c4b1be977b87f45a587b8da8e96e1b759da7c240c853c0b790970bf50c1f8f7
AI-securityClaude CodeHandala HackSilver DragonSoutheast AsiaTrueConfdata-leakagegovernment targetsremote code executionstate‑linked actorstargeted-attackthreat-intelligencezero-day

What happened

Collection of Check Point Research items (March 2026) describing multiple high-impact findings: Operation TrueChaos — targeted zero‑day exploitation of Southeast Asian government entities via legitimate TrueConf client (CVE-2026-3502, CVSS 7.8); critical RCE and API-token exfiltration vulnerabilities in Anthropic’s Claude Code (CVE-2025-59536, CVE-2026-21852); a ChatGPT/CE runtime data‑leakage vector via a hidden outbound channel; and a set of weekly threat intelligence reports covering actors such as Silver Dragon and Handala Hack. Overall this corpus highlights active exploitation of zero‑/n

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
checkpoint_research
Record identifier
4c4b1be977b87f45a587b8da8e96e1b759da7c240c853c0b790970bf50c1f8f7
Enrichment time
2026-03-31T20:52:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Operation TrueChaos: 0-Day Exploitation Against Southeast Asian Government Targets · Baitaphish