Head Mare is a threat actor that has been observed exploiting vulnerabilities in TrueConf servers to deliver backdoors and remote access trojans. The group has targeted Russian companies across multiple sectors, using a chain of vulnerabilities to replace legitimate installers with malicious ones. Their activities have been documented by Kaspersky and Positive Technologies.