INTEL_REPORT
Check Point Research · published 3/30/2026, 12:53:08 PM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
30th March – Threat Intelligence Report For the latest discoveries in cyber research for the week of 30th March, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Iranian state-affiliated threat group Handala Hack has breached FBI director’s Patel’s personal Gmail account and leaked many personal photos and documents. This follows the FBI’s seizure of domains related to Handala Hack’s […] The post 30th March – Threat Intelligence Report appeare…
https://research.checkpoint.com/2026/30th-march-threat-intelligence-report
sha256:2645fb11157d76f39111fac23b0cd0b06be442f7ecf02c0238bd8e185a5bd905
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.