
← Exploit Brokers By Forgebound Research - Tech and Hacking News Commentary19 feb · 22 min
State Hackers Hit 37 Countries, BeyondTrust CVSS 9.9 RCE, Signal Hijacked & More | HN Ep. 61
A newly uncovered state-backed espionage group has compromised 70 organizations across 37 countries in a single year — and they were scanning infrastructure in 155 more. In this episode of Hacking News, we break down Palo Alto Unit 42's Shadow Campaigns investigation, a CVSS 9.9 pre-authentication RCE in BeyondTrust's remote access tools, a state-sponsored Signal phishing campaign targeting European politicians and military officials without using a single line of malware, CISA's aggressive new directive ordering federal agencies to rip out end-of-life edge devices, and an Everest ransomware claim against Iron Mountain that turned out to be far less than advertised.
Whether you're a cybersecurity professional, IT admin, or just someone who wants to stay informed about the threats facing our digital world — this episode has critical takeaways you can act on today.
🔒 Key Topics Covered:
• TGR-STA-1030 "Shadow Campaigns" — state-backed espionage across 37 countries
• BeyondTrust CVE-2026-1731 — CVSS 9.9 pre-auth RCE in remote access tools
• Signal Phishing Campaign — German BfV/BSI advisory on account hijacking
• CISA BOD 26-02 — Binding directive to eliminate end-of-support edge devices
• Iron Mountain / Everest Ransomware — 1.4TB breach claims vs. reality
⏱️ Timestamps:
0:00 — Cold Open: One group, 37 countries breached
1:10 — Forge OS Intro
1:14 — Welcome & CTA