INTEL_REPORT
Check Point Research · published 5/25/2026, 3:08:40 PM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
25th May – Threat Intelligence Report For the latest discoveries in cyber research for the week of 25th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES 7-Eleven, the global convenience store chain, confirmed a breach after an unauthorized access to systems used for franchisee documents. ShinyHunters claimed responsibility and said it stole more than 600,000 Salesforce records containing personal […] The post 25th May – Threat Intelligenc…
https://research.checkpoint.com/2026/25th-may-threat-intelligence-report
sha256:4c764df482c6f9b2ad1ae2712118bb1682c3a4632c61b287f88c3498bdaa3781
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.