Tag
high
threat
TrueConf Zero-Day Exploitation Leading to Arbitrary Code Execution
2 rules 3 TTPs 1 CVE 4 IOCsHackers exploited a zero-day vulnerability (CVE-2026-3502) in TrueConf conference servers to execute arbitrary files on connected endpoints, potentially deploying the Havoc C2 framework.
exploited
TrueChaos
trueconf
zero-day
cve-2026-3502
supply-chain attack
2r
3t
1c
4i
high
advisory
TrueConf Client Arbitrary Code Execution via Unverified Updates (CVE-2026-3502)
2 rules 1 TTPTrueConf Client downloads application updates without verifying integrity, allowing a network attacker to substitute a tampered payload, leading to arbitrary code execution.
TrueConf Client
cve-2026-3502
trueconf
rce
update
2r
1t