INTEL_REPORT
Check Point Research · published 5/11/2026, 12:49:37 PM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
11th May – Threat Intelligence Report For the latest discoveries in cyber research for the week of 11th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Instructure, the US education technology company behind the Canvas learning platform, has confirmed a major data breach affecting its cloud-hosted environment. Exposed data reportedly includes student and staff records and private messages, while […] The post 11th May – Threat Intelligenc…
https://research.checkpoint.com/2026/11th-may-threat-intelligence-report
sha256:ef135db2cc7e3a21195e515c9b2d8308ed89038db62986c5ed3e9cf5e385463f
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.