trueconf News Articles
Recent news articles refferecing the vendors vulnerabilities.
CISA Orders Agencies to Patch Exploited TrueConf Flaws
CISA ordered civilian agencies to patch two exploited TrueConf Server flaws used to compromise systems and distribute trojanized client installers.
2 weeks ago
TrueConf flaws enabling attacks on meeting participants added to KEV catalog
The flaws have been used by the Head Mare APT hacktivist group to spread PhantomCore malware.
3 weeks ago
CISA orders feds to patch actively exploited TrueConf Server flaws
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered U.S. federal agencies to prioritize patching two actively exploited vulnerabilities in the TrueConf Server self-hosted communications platform.
3 weeks ago
CISA Adds TrueConf Vulnerability to KEV Catalog Following Active Exploitation - IT Security News
The Cybersecurity and Infrastructure Security Agency (CISA) has officially added a critical vulnerability affecting TrueConf software to its Known Exploited Vulnerabilities (KEV) catalog. Tracked as CVE-2026-3502, this security flaw is currently facing active exploitation in the wild. The discovery ...
CISA Adds TrueConf Vulnerability to KEV Catalog Following Active Exploitation
CISA added TrueConf flaw to KEV amid active exploitation the flaw allows unverified code downloads due to missing integrity checks.
U.S. CISA adds a flaw in TrueConf Client to its Known Exploited Vulnerabilities catalog - IT Security News
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in TrueConf Client to its Known Exploited Vulnerabilities catalog The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a flaw in TrueConf Client, tracked as CVE-2026-3502 (CVSS score of 7.8), to…Read more ...
TrueConf Zero-Day Exploited in Attacks on Southeast Asian Government Networks
CVE-2026-3502 (CVSS 7.8) exploited in early 2026 via TrueConf updates, enabling Havoc malware deployment across government networks