# F5 Breach, Linux Malware, and Hacking Banks - BTS #63 Page: https://stenobird.com/podcast/below-the-surface-audio-the-supply-chain-security-podcast-5987778/f5-breach-linux-malware-and-hacking-banks-bts-63 Text version: https://stenobird.com/podcast/below-the-surface-audio-the-supply-chain-security-podcast-5987778/f5-breach-linux-malware-and-hacking-banks-bts-63.md Podcast: [Below the Surface (Audio) - The Supply Chain Security Podcast](https://stenobird.com/podcast/below-the-surface-audio-the-supply-chain-security-podcast-5987778) Published: 2025-10-30T19:40:00+00:00 Episode link: https://belowthesurfacesw.libsyn.com/f5-breach-linux-malware-and-hacking-banks-bts-63 Audio file: https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/belowthesurfacesw/bts63.mp3?dest-id=3822522 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/below-the-surface-audio-the-supply-chain-security-podcast-5987778/episodes/f5-breach-linux-malware-and-hacking-banks-bts-63 Duration seconds: 3606 ## Resource Summary In this episode of Below the Surface, Paul Asadoorian and Chase Snyder delve into various cybersecurity topics, including the use of Raspberry Pi in cyber attacks, the implications of the F5 breach, and the emergence of Polar Edge malware targeting QNAP devices. They also discuss the innovative Two-Face Rust binary technique, the critical nature of authentication bypass vulnerabilities, and the evolving landscape of air-gapped systems. The conversation highlights the increasing risk posed by old vulnerabilities and the need for improved security measures in the face of advancing cyber threats. Articles: https://reporter.deepspecter.com/f5-is-misleading-the-market-the-breach-is-nowhere-near-contained-a766d932c582 https://blog.sekoia.io/polaredge-backdoor-qnap-cve-2023-20118-analysis/ https://www.group-ib.com/blog/unc2891-bank-heist/ https://www.synacktiv.com/en/publications/creating-a-two-face-rust-binary-on-linux https://www.dell.com/support/kbdoc/en-us/000382899/dsa-2025-393-security-update-for-storage-center-dell-storage-manager-vulnerabilities https://www.trendmicro.com/en_us/research/25/j/operation-zero-disco-cisco-snmp-vulnerability-exploit.html ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/below-the-surface-audio-the-supply-chain-security-podcast-5987778/episodes/f5-breach-linux-malware-and-hacking-banks-bts-63/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/below-the-surface-audio-the-supply-chain-security-podcast-5987778/f5-breach-linux-malware-and-hacking-banks-bts-63.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.