Webinar

November 2025 TRU Intelligence Briefing On-Demand

Join eSentire’s Threat Response Unit (TRU) as they share new research-driven observations of malware, notable vulnerabilities, threat actor groups, and cyber activity affecting the threat landscape.

During the November Threat Intelligence Briefing, TRU reviewed:

  • The Blurring Line - When Adware Becomes a Threat: How modern adware (e.g., TamperedChef, deceptive PDF editors) now functions as a gateway for more malwares. The briefing provides actionable intelligence on their TTPs, the adware-to-malware pipeline, and key strategies for detection and defense.
  • CVE-2025-59287 - Windows Server Update Services and a case of Remote Code Execution: A discussion around CVE-2025-59287, a recent vulnerability within Windows Server Update Services (WSUS) that is being exploited in the wild. The team will also discuss how the vulnerability is exploited, some examples of exploitation, and highlight detection and mitigation opportunities.
  • Threat Landscape: The TRU team will discuss the F5 breach, recently disclosed vulnerabilities (CVE-2025-59287 – Microsoft, CVE-2025-61882 – Oracle, CVE-2025-54236 – Adobe), and notable malware observed by the eSentire SOC (NetSupport RAT, Rhadamanthys, SORVEPOTEL).

This webinar also included a live Q&A.

Watch the Webinar

Join eSentire’s Threat Response Unit (TRU) as they share new research-driven observations of malware, notable vulnerabilities, threat actor groups, and cyber activity affecting the threat landscape.

During the November Threat Intelligence Briefing, TRU reviewed:

  • The Blurring Line - When Adware Becomes a Threat: How modern adware (e.g., TamperedChef, deceptive PDF editors) now functions as a gateway for more malwares. The briefing provides actionable intelligence on their TTPs, the adware-to-malware pipeline, and key strategies for detection and defense.
  • CVE-2025-59287 - Windows Server Update Services and a case of Remote Code Execution: A discussion around CVE-2025-59287, a recent vulnerability within Windows Server Update Services (WSUS) that is being exploited in the wild. The team will also discuss how the vulnerability is exploited, some examples of exploitation, and highlight detection and mitigation opportunities.
  • Threat Landscape: The TRU team will discuss the F5 breach, recently disclosed vulnerabilities (CVE-2025-59287 – Microsoft, CVE-2025-61882 – Oracle, CVE-2025-54236 – Adobe), and notable malware observed by the eSentire SOC (NetSupport RAT, Rhadamanthys, SORVEPOTEL).

This webinar also included a live Q&A.

Get The Webinar