#PhantomGraph
August 15, 2026 at 8:05 AM
Güvenlik uzmanları, Head Mare APT grubunun PhantomCore ve PhantomGraph truva atlarını kullanarak kurumlara yönelik yeni ve çok aşamalı bir siber saldırı gerçekleştirdiğini tespit etti.
August 15, 2026 at 8:05 AM
~Malpedia~
Head Mare APT exploits two TrueConf server vulnerabilities (KLCERT-26-057/058) to replace client installers with PhantomCore and PhantomGraph backdoors.
-
IOCs: 81[.]177[.]32[.]12, 194[.]87[.]239[.]71, 38[.]244[.]205[.]244
-
...
Head Mare APT exploits TrueConf server flaws to deliver PhantomCore/PhantomGraph
malpedia.caad.fkie.fraunhofer.de
August 13, 2026 at 12:43 PM
Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to
deliver PhantomCore and PhantomGraph to video conference participants
securelist.com/tr/head-mare...
Head Mare delivers PhantomCore and PhantomGraph backdoors via an unpatched TrueConf server
Kaspersky experts have discovered malicious TrueConf software installers. The Head Mare APT group uses them to deliver the PhantomCore and PhantomGraph backdoors to target systems by exploiting vulner...
securelist.com
August 12, 2026 at 11:08 AM
Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants

huntaegis.com
August 11, 2026 at 1:18 PM
~Kaspersky~
Head Mare APT exploits unpatched TrueConf server vulnerabilities to deploy PhantomCore and PhantomGraph backdoors via trojanized client installers.
-
IOCs: 81[.]177[.]32[.]12, 194[.]87[.]239[.]71, 38[.]244[.]205[.]244
-
...
Head Mare APT exploits TrueConf flaws to deliver PhantomCore
securelist.com
August 11, 2026 at 12:43 PM
Head Mare trojanized TrueConf's own installer to smuggle backdoors past your defenses. https://intel.threadlinqs.com/threat/TL-2026-1982 #ThreatIntel #PhantomCore #HeadMare #TrueConf
August 11, 2026 at 12:34 PM
**Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants**

## Overview of the attack

In July 2026, Kaspersky experts detected a new attack by the Head Mare group […]

[Original post on poliverso.org]
August 11, 2026 at 12:17 PM
📢 Head Mare exploite des failles TrueConf pour trojaniser des installateurs avec PhantomCore et PhantomGraph

En juillet 2026, les chercheurs de Kaspersky ont identifié une campagne active du groupe hacktivist Head Mare exploitant…

🟢 vérification factuelle haute
#HeadMare #PhantomCore #Cyberveille
Head Mare exploite des failles TrueConf pour trojaniser des installateurs avec PhantomCore et PhantomGraph
En juillet 2026, les chercheurs de Kaspersky ont identifié une campagne active du groupe hacktivist Head Mare exploitant une chaîne de vulnérabilités dans des serveurs TrueConf non patchés. L'analyse technique a été publiée le 7 août 2026 sur Securelist, relayée par BleepingComputer le 8 août 2026.
cyberveille.ch
August 10, 2026 at 11:00 PM
📢 Head Mare exploite des vulnérabilités TrueConf Server pour déployer PhantomCore et PhantomGraph

📅 Source : Kaspersky Securelist (https://securelist.ru), publié le 7 août 2026, mis à jour le 10 août 2026.

🟢 vérification factuelle haute
#HeadMare #PhantomCore #Cyberveille
Head Mare exploite des vulnérabilités TrueConf Server pour déployer PhantomCore et PhantomGraph
📅 Source : Kaspersky Securelist (https://securelist.ru), publié le 7 août 2026, mis à jour le 10 août 2026.
cyberveille.ch
August 10, 2026 at 10:30 PM
🤖 Head Mare exploited TrueConf Server flaws (KLCERT-26-057/058) to swap client installers for the PhantomCore backdoor, gaining SYSTEM-level code execution. PhantomGraph RAT uses OneDrive as C2.
https://thehackernews.com/2026/08/head-mare-exploits-trueconf-flaws-to.html
August 10, 2026 at 2:20 PM
Head Mare trojaniza clientes de TrueConf con backdoors

Hackers explotan vulnerabilidades en servidores sin parcheAr de TrueConf para inyectar…

https://mentehackers.com/head-mare-trojaniza-trueconf-backdoors-efca8e4d
#Ciberseguridad #Tecnologia #MenteHackers
Ataque Head Mare: backdoors en TrueConf trojanizado
Head Mare explota vulnerabilidades en TrueConf sin parches para inyectar backdoors PhantomCore y PhantomGraph en instaladores comprometidos.
mentehackers.com
August 9, 2026 at 3:57 AM
Head Mare turned TrueConf's own installer into a PhantomCore backdoor delivery vector. https://intel.threadlinqs.com/threat/TL-2026-1945 #ThreatIntel #PhantomCore #PhantomGraph #Microsoft
August 9, 2026 at 2:20 AM
Hackers exploram falhas em servidores TrueConf desatualizados para distribuir instaladores modificados com os backdoors PhantomCore e PhantomGraph.
Hackers comprometem servidores TrueConf e distribuem backdoors em falsas atualizações
Hackers exploram falhas em servidores TrueConf desatualizados para distribuir instaladores modificados com os backdoors PhantomCore e PhantomGraph.
techstart.xyz
August 8, 2026 at 10:11 PM
Hacktivist group 'Head Mare' is trojanizing TrueConf video conference installers with PhantomCore & PhantomGraph backdoors. Attackers exploit unpatched servers to swap legitimate client files, compromising users who download them. #SupplyChain #Cyber...

🌐 cyber[.]netsecops[.]io
Hackers Trojanize TrueConf Installers with PhantomCore Backdoor
The
cyber.netsecops.io
August 8, 2026 at 4:46 PM
Head Mare exploited TrueConf flaws to swap legit client installers with trojanized versions delivering PhantomCore and PhantomGraph backdoors, enabling credential theft and remote access. #TrueConf #Russia #HeadMare
Hackers breach TrueConf to trojanize client installers with backdoors
Head Mare has been exploiting unpatched TrueConf server vulnerabilities to replace legitimate client installers with trojanized versions that deliver the PhantomCore and PhantomGraph backdoors. Kaspersky says the campaign targets Russian organizations and can impact users even through compromised third-party TrueConf servers, enabling credential theft, reconnaissance, and persistent remote access. #HeadMare #TrueConf #PhantomCore #PhantomGraph
www.hendryadrian.com
August 8, 2026 at 2:45 PM
From America, #Christmas 1987: Disk Software and Computer Accessories from Radio Shack

(+Dynacalc; Os-9 profile; DeskMate 3 software; New! TSSPELL; New! Zone runner; New! Phantomgraph; New! Robot odyssey; Childpace; Investograph; Desert rider; Tsedit; Ghana bwana; New! Rogue, and more)
June 5, 2026 at 12:12 PM
January 26, 2024 at 10:22 PM