Three Buddy Problem

Oracle cl0p ransomware crisis, EU drone sightings, Cisco bootkit fallout

Three Buddy Problem - Episode 66: We discuss drone sightings that shut down airports across Europe and what they reveal about hybrid warfare and the changing nature of conflict; Oracle ransomware/extortion campaign tied to unpatched E-Business Suite vulnerabilities and the company’s muted response.

Plus, the TikTok–Oracle deal and the strange role Oracle now plays in U.S. national security; OpenAI’s Sora 2 launch and its implications for social media and human expression; Palo Alto’s “Phantom Taurus” APT report, a follow-up on Cisco’s ArcaneDoor disclosures, and the impact of the U.S. government shutdown on CISA.

Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.

Links:

  • Transcript (unedited, AI-generated)
  • Drone sightings prompt call for German police to gain shoot-down powers
  • UK arrest following aerospace cyber incident
  • Oracle Probes Hacks of Customers’ E-Business Suite After Extortion Campaign
  • Oracle Critical Patch Update Advisory - July 2025
  • Here is the email Clop attackers sent to Oracle customers
  • Oracle statement from Chief Security Officer
  • TikTok’s Algorithm to Be Secured by Oracle in Trump-Backed Deal
  • Phantom Taurus: A New Chinese Nexus APT
  • China Hackers Breached Foreign Ministers’ Emails
  • Cisco Statement on Attacks Against Cisco Firewalls
  • GreyNoise: 25,000 IPs Scanned Cisco ASA Devices in Early Sept
  • KeyDrop.io