DiscoverThree Buddy ProblemCisco firewall zero-days and bootkits in the wild
Cisco firewall zero-days and bootkits in the wild

Cisco firewall zero-days and bootkits in the wild

Update: 2025-09-27
Share

Description

Three Buddy Problem - Episode 65: We zero in on one of the biggest security stories of the year: the discovery of a persistent multi-stage bootkit implanting malware on Cisco ASA firewalls. Details on a new campaign, tied to the same threat actors behind ArcaneDoor, exploiting zero-days in Cisco’s 5500-X series appliances, devices that sit at the heart of government and enterprise networks worldwide.



Plus, Cisco’s controversial handling of these disclosures, CISA's emergency deadlines for patching, the absence of IOCs and samples, and China’s long-term positioning. Plus, thoughts on the Secret Service SIM farm discovery in New York and evidence of Russians APTs Turla and Gamaredon collaborating to hit Ukraine targets.



Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.

Links:

Comments 
loading
In Channel
loading
00:00
00:00
1.0x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Cisco firewall zero-days and bootkits in the wild

Cisco firewall zero-days and bootkits in the wild

Security Conversations