Your Cybersecurity Update for Saturday, 29 November 2025 (Ep.35)

RadioCSIRT English Edition
RadioCSIRT English Edition
Your Cybersecurity Update for Saturday, 29 November 2025 (Ep.35)
Loading
/

Welcome to your daily cybersecurity briefing.

CVSS v4.0 – Understanding the New Vulnerability Scoring Model

A new analysis from Malwarebytes provides a clear breakdown of CVSS v4.0, detailing how the updated framework shifts focus toward exploitability, environmental modifiers, and attacker utility. The article highlights changes in severity interpretation, granularity in attack requirements, and the impact of supplemental metrics—key for vulnerability prioritization across CERT, SOC, and risk teams.

Tomiris Deploys New Malware Tools

Kaspersky researchers have identified new components in the Tomiris malware ecosystem, including updated loaders and covert communications modules. These additions reinforce Tomiris’ operational overlap with Turla-linked activity while demonstrating improvements in stealth, modularity, and long-term persistence tactics used across Central Asian and Middle Eastern networks.

CISA Adds New KEV Entry

CISA has added one vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog. The advisory stresses active exploitation in the wild and mandates federal agencies to apply mitigation measures before the deadline. The alert underscores CISA’s continued emphasis on exploitation-based risk scoring and operational directives for rapid patching.

Legacy Python Bootstrap Scripts Create Supply Chain Exposure

A report from The Hacker News warns that outdated Python bootstrap scripts used in legacy automation pipelines can introduce severe supply chain weaknesses. The issue stems from insecure dependency retrieval mechanisms, outdated hashing practices, and implicit trust in remote package sources—raising the risk of tampering and malicious code injection in CI/CD environments.

Don’t Think – Patch Now.

Sources:

Malwarebytes – CVSS v4.0
https://www.malwarebytes.com/blog/news/2025/11/how-cvss-v4-0-works-characterizing-and-scoring-vulnerabilities
Securelist – Tomiris
https://securelist.com/tomiris-new-tools/118143/
CISA – KEV Catalog Update
https://www.cisa.gov/news-events/alerts/2025/11/28/cisa-adds-one-known-exploited-vulnerability-catalog
The Hacker News – Python Bootstrap Risk
https://thehackernews.com/2025/11/legacy-python-bootstrap-scripts-create.html

Your feedback is welcome.
Email: radiocsirt@gmail.com
Website: https://www.radiocsirt.org
Weekly Newsletter: https://radiocsirtintl.substack.com