Ukrainian hacktivists exploiting the bugs, but TrueConf reach stretches well beyond home turf CISA has ordered US federal agencies to patch two exploited flaws in TrueConf, a Russian built video conferencing platform, after compromised servers were caught handing malware to unsuspecting meeting participants. The US cybersecurity agency on Thursday added CVE 2026 72529 and CVE 2026 72530 to its Known Exploited Vulnerabilities catalog, saying both have been used in real world attacks. What CISA...

Read the full article at The Register