TrueConf and EvilTokens Zero-Day Exploits Emerge
Hackers are exploiting a zero-day vulnerability in TrueConf conference servers, allowing them to push malicious software updates. Concurrently, a new malicious kit named EvilTokens is enabling device code phishing attacks targeting Microsoft services. These developments underline the critical need for immediate patching and enhanced monitoring of network traffic to prevent unauthorized access. Organizations using TrueConf and Microsoft services should prioritize these updates to mitigate risks.