logo

Operation TrueChaos: 0-Day Exploitation Against Southeast Asian Government Targets

ID: 20fbb9d7-1600-5332-944e-3a34a3cbce43

STIX ID: report--20fbb9d7-1600-5332-944e-3a34a3cbce43

Feed Name: Check Point Research

Threat Score
85/100

Date Published: 2026-03-31

Date Updated: 2026-04-27

Author: stcpresearch

...
...

Check Point Research identified CVE-2026-3502, a zero-day in TrueConf's updater validation abused in a targeted campaign called 'TrueChaos' to push malicious updates and deploy Havoc implants to multiple government entities in Southeast Asia; the report includes technical root cause, the attack chain (malicious installer, DLL side-loading, UAC bypass), IOCs, hunting guidance, and a vendor patch in TrueConf 8.5.3.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.