Russian cybersecurity vendor Kaspersky has uncovered a new attack campaign by the threat actor known as Head Mare, targeting unpatched TrueConf videoconferencing…
Positive Technologies is a cybersecurity company that disclosed three vulnerabilities in TrueConf software (BDU:2025-10114, BDU:2025-10115, BDU-2025-10116) that were exploited by Head Mare.…
Head MarePositive TechnologiesTrueConfvulnerability disclosure
Havoc C2 is a command-and-control framework that was deployed in campaigns exploiting CVE-2026-3502, a zero-day in the TrueConf client. The attacks targeted…
Check Point is a cybersecurity company that reported the zero-day exploitation of CVE-2026-3502 in the TrueConf client, used in campaigns targeting Southeast…