RadioCSIRT - Your Cybersecurity update for Friday, November 7, 2025 (Ep. 10) episode artwork

EPISODE · Nov 7, 2025 · 8 MIN

RadioCSIRT - Your Cybersecurity update for Friday, November 7, 2025 (Ep. 10)

from RadioCSIRT - English Edition · host Marc Frédéric GOMEZ

Welcome to your daily cybersecurity update 🕵️‍♂️🔥🧩 Suricata — Multiple Vulnerabilities in the Open Source IDS/IPS EngineSeveral flaws have been discovered in Suricata affecting versions 8.0.x before 8.0.2 and 7.0.x before 7.0.13. These issues could allow attackers to trigger undefined behaviors or memory corruption. Updated releases include enhanced flow management and decoding security.💬 Mattermost — Security Flaws in the Collaboration ServerA vulnerability impacts multiple Mattermost Server branches, including versions 10.11.x before 10.11.5 and 11.0.x before 11.0.3. The issue can be exploited remotely, prompting administrators to update immediately and restart services to ensure patches take effect.🌐 Cisco — Remote Code Execution and Denial of ServiceTwo Cisco advisories fix critical vulnerabilities in Cisco ISE (up to 3.4 Patch 3) and Unified CCX (up to 12.5 SU3 ES07). Exploiting these flaws could enable arbitrary code execution or remote denial of service through crafted packets. Cisco has released updates via its security portal.⚙️ Google Chrome — Multiple Vulnerabilities Across All PlatformsGoogle has released Chrome version 142.0.7444.134/.135 to fix multiple use-after-free and out-of-bounds write bugs in the Blink and V8 engines. Some of these vulnerabilities have been exploited in the wild. Users are urged to update immediately on Windows, macOS, and Linux.🏗️ VMware — Massive Patch Wave Across Tanzu Platform and Related ProductsDozens of advisories address flaws in VMware Tanzu, Cloud Foundry, Stemcells, Spring Cloud, and various language buildpacks. Risks include data leaks, privilege escalation, and remote code execution. Administrators should upgrade to Tanzu Platform 10.3.0 and the latest Stemcells versions.🤖 Gemini AI Misused — AI Helps Create Self-Modifying MalwareGoogle Threat Intelligence Group reports malicious use of Gemini by nation-state actors. Iran-linked APT42 attempted to build a data-processing agent capable of analyzing PII through SQL queries. An experimental malware named PromptFlux uses Gemini’s API to rewrite its own code for evasion purposes.🎯 Ukraine — Fake ESET Installers Drop Kalambur BackdoorA campaign attributed to the Russian-aligned cluster InedibleOchotense distributes fake ESET installers embedding a C# backdoor named Kalambur (SUMBUR). It uses the Tor network for command and control and enables RDP access via port 3389. Targets include Ukrainian government and critical-sector entities.📰 Clop Ransomware — The Washington Post Added to Leak SiteThe Russian-speaking ransomware group Clop (Cl0p) claims to have breached The Washington Post. Known for double extortion, Clop has previously exploited vulnerabilities in MOVEit Transfer, GoAnywhere MFT, and Accellion FTA. The group says it will soon leak the stolen data.⚡️ Don’t think — just patch! 🚀📚 Sources:🔗 https://www.cert.ssi.gouv.fr/avis/CERTFR-2025-AVI-0972/🔗 https://www.cert.ssi.gouv.fr/avis/CERTFR-2025-AVI-0971/🔗 http://cert.ssi.gouv.fr/avis/CERTFR-2025-AVI-0968/🔗 https://www.cert.ssi.gouv.fr/avis/CERTFR-2025-AVI-0973/🔗 https://www.cert.ssi.gouv.fr/avis/CERTFR-2025-AVI-0969/🔗 https://www.theregister.com/2025/11/05/attackers_experiment_with_gemini_ai/🔗 https://thehackernews.com/2025/11/trojanized-eset-installers-drop.html🔗 https://securityaffairs.com/184304/cyber-crime/clop-ransomware-group-claims-the-breach-of-the-washington-post.html📞 Share your feedback:📧 [email protected]🌐 www.radiocsirt.com📰 radiocsirtintl.substack.com#CyberSécurité #Suricata #VMware #Cisco #Chrome #Mattermost #GeminiAI #ESET #Clop #Ukraine #CERT #SOC #CTI #RadioCSIRT 🎧🔥

Episode metadata supplied by the publisher feed · Published Nov 7, 2025

Embed this episode

NOW PLAYING

RadioCSIRT - Your Cybersecurity update for Friday, November 7, 2025 (Ep. 10)

0:00 8:07

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of RadioCSIRT - English Edition?

This episode is 8 minutes long.

When was this RadioCSIRT - English Edition episode published?

This episode was published on November 7, 2025.

Can I download this RadioCSIRT - English Edition episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!