Ethical Hacking News
TrueConf, a video conferencing platform used by organizations worldwide, has been identified as a potential target for cyberattacks. Two exploited bugs, CVE-2026-72529 and CVE-2026-72530, have been used in real-world attacks, and federal agencies have been warned to patch the flaws by September 10. The global nature of the threat highlights the need for organizations to prioritize cybersecurity and keep software up to date.
TrueConf, a video conferencing platform, has been identified as a potential target for cyberattacks. The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning to US federal agencies to patch two exploited flaws in TrueConf. The two bugs, CVE-2026-72529 and CVE-2026-72530, have been used in real-world attacks and can be exploited to gain control of the underlying server. TrueConf users have until September 10 to patch the flaws, or risk having their conferencing systems exposed to attacks.
TrueConf, a video conferencing platform developed by the Moscow-based company of the same name, has been identified as a potential target for cyberattacks. In a recent development, the US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning to US federal agencies to patch two exploited flaws in TrueConf, a Russian-built video conferencing platform, after compromised servers were caught handing malware to unsuspecting meeting participants.
The two bugs, CVE-2026-72529 and CVE-2026-72530, have been used in real-world attacks, according to CISA. The agency has added the flaws to its Known Exploited Vulnerabilities catalog, indicating that they have been exploited in attacks. However, it is unclear whether the agency has added the flaws to the catalog because of the attacks or due to other evidence of exploitation.
TrueConf is a popular video conferencing platform used by organizations worldwide. While the company's roots are Russian, it has users in many countries, including Switzerland, Turkey, and the United States. The platform offers an on-premises alternative to cloud services such as Zoom and Microsoft Teams, allowing organizations to control where their calls and data are stored.
According to Kaspersky, a cybersecurity researcher, the two bugs can be exploited to gain control of the underlying server. An unauthenticated attacker with network access to TCP port 4307 can exploit the first bug to run a malicious script. The second bug allows the attacker to break out of the isolated environment where the script runs and execute arbitrary code on the underlying server.
Kaspersky warns that the flaws can be exploited by Head Mare, a pro-Ukrainian hacktivist group, to plant malware on compromised servers. The group has repeatedly targeted Russian organizations, and its latest campaign targeted Russian companies across various industries. The researchers also warn that the flaws can be exploited by attackers to download a compromised client from someone else's hacked infrastructure, potentially infecting employees who join conferences hosted by suppliers or other third parties.
The researcher notes that the flaws affect TrueConf Server releases going back to 2022. TrueConf shipped fixes in versions 5.3.9, 5.4.9, and 5.5.5 on June 18, warning customers that skipping the update could leave their conferencing systems exposed to attacks over the public internet.
Federal agencies have until September 10 to patch the flaws. While some TrueConf administrators can take their time, they should be aware that a conferencing server can potentially moonlight as a malware distribution point.
The recent warning from CISA highlights the global nature of the threat posed by TrueConf. As organizations around the world rely on the platform for video conferencing, it is essential to prioritize cybersecurity and keep software up to date.
In recent years, there have been numerous cyberattacks targeting video conferencing platforms, highlighting the need for organizations to be vigilant and proactive in protecting their systems. The warning from CISA serves as a reminder that even the most seemingly secure platforms can be vulnerable to exploitation.
As the world continues to evolve, it is essential to stay informed about emerging threats and take proactive steps to protect ourselves. The recent warning from CISA is a stark reminder that cybersecurity is an ongoing battle, and organizations must remain vigilant to stay ahead of the threats.
Related Information:
https://www.ethicalhackingnews.com/articles/Exploiting-the-Weaknesses-of-TrueConf-A-Global-Cybersecurity-Threat-ehn.shtml
https://www.theregister.com/patches/2026/08/21/homeland-security-cybercops-say-patch-trueconf-russias-zoom-if-youre-using-it/5291156
https://nvd.nist.gov/vuln/detail/CVE-2026-72529
https://www.cvedetails.com/cve/CVE-2026-72529/
https://nvd.nist.gov/vuln/detail/CVE-2026-72530
https://www.cvedetails.com/cve/CVE-2026-72530/
Published: Fri Aug 21 12:26:48 2026 by llama3.2 3B Q4_K_M