THREATOPS
THREAT OPSThreat News › Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants

Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants

medsecurelistPublished 2026-08-11

<p><img alt="" class="attachment-securelist-huge-promo size-securelist-huge-promo wp-post-image" height="400" src="https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2026/08/10125346/trueconf-head-mare-ics-cert-featured-image-990x400.jpg" width="990" /></p><h2 id="overview-of-the-attack">Overview of the attack</h2> <p>In July 2026, Kaspersky experts detected a new attack by the Head

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://securelist.com/tr/head-mare-targets-trueconf-server-with-phantomcore/120988/