
← Exploit Brokers By Forgebound Research - Tech and Hacking News Commentary12 Mar · 28 min
Cisco & Dell CVSS 10.0 Exploited for YEARS, Claude AI Jailbroken, ScarCruft Jumps Air Gaps | HN64
Two perfect CVSS 10.0 scores in one news cycle. A state-sponsored actor living inside Cisco's SD-WAN platform since 2023. A brand-new lateral movement technique called "Ghost NICs" that leaves no forensic trace. An AI chatbot jailbroken to steal 195 million government records. A North Korean hacking group bridging air-gapped networks with USB drives and an embedded Ruby runtime. And a phishing platform so sophisticated it makes your multi-factor authentication functionally useless.
This is Hacking News Episode 64 from Exploit Brokers by Forgebound Research. Five stories, multiple nation-state actors, and some genuinely novel attack techniques. Let's get into it.
🕐 TIMESTAMPS
0:00 — Cold Open
1:12 — Welcome & CTA
1:55 — Story 1: Cisco SD-WAN Zero-Day (CVE-2026-20127, CVSS 10.0) — Five Eyes Response
6:55 — Story 2: Dell RecoverPoint Zero-Day (CVE-2026-22769, CVSS 10.0) — Ghost NICs
11:35 — Story 3: Claude AI Jailbreak — 195 Million Mexican Government Records
15:27 — Story 4: ScarCruft Air-Gap Bridging — "Ruby Jumper" Campaign
19:55 — Story 5: Starkiller Phishing-as-a-Service — MFA Bypass
25:02 — Recap & 5 Key Takeaways
27:28 — Outro