Webinar

March 2025 TRU Intelligence Briefing On-Demand

Join eSentire’s Threat Response Unit (TRU) as they share new research-driven observations of malware, notable vulnerabilities, threat actor groups, and cyber activity affecting the threat landscape.

During the March Threat Intelligence Briefing, TRU reviewed:

  • Black Basta Leak: Insights on the recent Black Basta chat leaks including top players, hierarchy and their TTPs.
  • Email Bombing Observations and Mitigation Recommendation: An overview of what email bombing is, incident insights, as well as detections and mitigation recommendations organizations can follow.
  • Threat Landscape: Malware recently observed by eSentire’s SOC including Xred Backdoor, Grandoreiro, and Netsupport RAT, as well as notable recently disclosed vulnerabilities (CVE-2025-0108 - Palo Alto, CVE-2024-53704 – SonicWall, and VMware zero-day vulnerabilities CVE-2025-22224, CVE-2025-22225, CVE-2025-22226).
  • A brief geopolitical update on recent activity attributed to Russian state-sponsored threat actors.

This webinar also included a live Q&A.

Watch the Webinar

Join eSentire’s Threat Response Unit (TRU) as they share new research-driven observations of malware, notable vulnerabilities, threat actor groups, and cyber activity affecting the threat landscape.

During the March Threat Intelligence Briefing, TRU reviewed:

  • Black Basta Leak: Insights on the recent Black Basta chat leaks including top players, hierarchy and their TTPs.
  • Email Bombing Observations and Mitigation Recommendation: An overview of what email bombing is, incident insights, as well as detections and mitigation recommendations organizations can follow.
  • Threat Landscape: Malware recently observed by eSentire’s SOC including Xred Backdoor, Grandoreiro, and Netsupport RAT, as well as notable recently disclosed vulnerabilities (CVE-2025-0108 - Palo Alto, CVE-2024-53704 – SonicWall, and VMware zero-day vulnerabilities CVE-2025-22224, CVE-2025-22225, CVE-2025-22226).
  • A brief geopolitical update on recent activity attributed to Russian state-sponsored threat actors.

This webinar also included a live Q&A.

Get The Webinar