TrueConf 서버의 취약점을 이용한 공격 사건이 발생했다.
해커 'Head Mare'는 패치를 적용하지 않은 TrueConf 서버의 보안 취약점을 악용하여 러시아 기업을 타겟으로 공격을 감행하고 있다. 이 공격은 기계, 전자 기기, 운송, 에너지, IT 및 소프트웨어 개발 산업의 다양한 기업들이 피해를 입고 있다. 러시아의 사이버 보안 기업인 카스퍼스키는 이러한 공격을 2026년 7월에 발견했다.
TrueConf server vulnerabilities have been exploited in attacks.
The threat actor 'Head Mare' has been observed exploiting unpatched security flaws in TrueConf servers to target various Russian companies across sectors like instrumentation, electronics, transport, energy, IT, and software development. Kaspersky, a Russian cybersecurity vendor, detected these attacks in July 2026. The activity involves leveraging a vulnerability chain.