Operation TrueChaos: 0-Day Exploitation Against Southeast Asian Government Targets
ID: 20fbb9d7-1600-5332-944e-3a34a3cbce43
STIX ID: report--20fbb9d7-1600-5332-944e-3a34a3cbce43
Feed Name: Check Point Research
Threat Score
Check Point Research identified CVE-2026-3502, a zero-day in TrueConf's updater validation abused in a targeted campaign called 'TrueChaos' to push malicious updates and deploy Havoc implants to multiple government entities in Southeast Asia; the report includes technical root cause, the attack chain (malicious installer, DLL side-loading, UAC bypass), IOCs, hunting guidance, and a vendor patch in TrueConf 8.5.3.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
