Hackers breach TrueConf to trojanize client installers with backdoors

2026-08-09T07:23:20Z94c5cb08aca33b11954ffb3bfc450745b5a2277f7b3a432f4544f21c26df540f
ClickFixMetabaseSQL injectionSharePointSnowflakeTrueConfactive exploitationbackdoorbusiness email compromisecredential theftcritical infrastructurecybersecurity newsdata breachdata theftextortionfinancial sectorhealthcareinfostealermacOS malwareransomwareside-channel attacksocial engineeringsupply-chain compromisetrojanized installerszero-day

What happened

A BleepingComputer security-news feed covering active exploitation of enterprise software vulnerabilities, supply-chain compromise, data theft, ransomware, extortion, credential theft, and disruptive cyberattacks. Notable items include TrueConf installer trojanization, exploitation of a Metabase SQL injection zero-day, SharePoint compromise, macOS infostealer campaigns, attacks against financial organizations, and major breaches affecting healthcare and cloud data. The feed also includes vulnerability research, law-enforcement actions, and cybersecurity developments.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
94c5cb08aca33b11954ffb3bfc450745b5a2277f7b3a432f4544f21c26df540f
Enrichment time
2026-08-09T07:23:20Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.