Hackers breach TrueConf to trojanize client installers with backdoors
2026-08-09T19:23:20Z•7124bf3fad622576635bcc0871b60f8440d00f40db506e9fb7a817383b4fd8d9
MetabaseSQL injectionSharePointSpectre v2TrueConfactive exploitationcloud securitycredential theftcryptocurrency theftcyberattackdata theftextortioninfostealermacOSransomwareside-channel attacksocial engineeringsupply-chain compromisetrojanized installerszero-day
What happened
A BleepingComputer security-news feed contains reports on active exploitation, supply-chain compromise, data theft, ransomware, social engineering, infostealers, cloud breaches, and speculative-execution research. The most immediately urgent items include trojanized TrueConf installers delivered after server compromise and a critical Metabase SQL injection reportedly exploited as a zero-day. No specific CVE identifiers are provided in the supplied document.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 7124bf3fad622576635bcc0871b60f8440d00f40db506e9fb7a817383b4fd8d9
- Enrichment time
- 2026-08-09T19:23:20Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.