INTEL_REPORT
Check Point Research · published 4/20/2026, 2:24:24 PM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
20th April – Threat Intelligence Report For the latest discoveries in cyber research for the week of 20th April, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Booking.com, the Amsterdam-based travel platform, has confirmed a data breach after unauthorized parties accessed reservation data linked to some customers. Exposed information included names, email addresses, phone numbers, physical addresses, and booking […] The post 20th April – Th…
https://research.checkpoint.com/2026/20th-april-threat-intelligence-report
sha256:31ee1f941440d7d2745b010558a87c786954235342c49eb999cac0a7646bbca1
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.