Cisco & Dell CVSS 10.0 Exploited for YEARS, Claude AI Jailbroken, ScarCruft Jumps Air Gaps | HN64

Cisco & Dell CVSS 10.0 Exploited for YEARS, Claude AI Jailbroken, ScarCruft Jumps Air Gaps | HN64

Author: Cipherceval March 12, 2026 Duration: 28:07

Two perfect CVSS 10.0 scores in one news cycle. A state-sponsored actor living inside Cisco's SD-WAN platform since 2023. A brand-new lateral movement technique called "Ghost NICs" that leaves no forensic trace. An AI chatbot jailbroken to steal 195 million government records. A North Korean hacking group bridging air-gapped networks with USB drives and an embedded Ruby runtime. And a phishing platform so sophisticated it makes your multi-factor authentication functionally useless.
This is Hacking News Episode 64 from Exploit Brokers by Forgebound Research. Five stories, multiple nation-state actors, and some genuinely novel attack techniques. Let's get into it.

🕐 TIMESTAMPS
0:00 — Cold Open
1:12 — Welcome & CTA
1:55 — Story 1: Cisco SD-WAN Zero-Day (CVE-2026-20127, CVSS 10.0) — Five Eyes Response
6:55 — Story 2: Dell RecoverPoint Zero-Day (CVE-2026-22769, CVSS 10.0) — Ghost NICs
11:35 — Story 3: Claude AI Jailbreak — 195 Million Mexican Government Records
15:27 — Story 4: ScarCruft Air-Gap Bridging — "Ruby Jumper" Campaign
19:55 — Story 5: Starkiller Phishing-as-a-Service — MFA Bypass
25:02 — Recap & 5 Key Takeaways
27:28 — Outro

📚 SOURCES
Story 1 — Cisco SD-WAN:

Cisco Advisory cisco-sa-sdwan-rpa-EHchtZk — https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk
CISA Emergency Directive 26-03 — https://www.cisa.gov/emergency-directive-26-03
ASD-ACSC Hunt Guide — https://www.cyber.gov.au/
BleepingComputer — https://www.bleepingcomputer.com/
The Hacker News — https://thehackernews.com/
Dark Reading — https://www.darkreading.com/
SecurityWeek — https://www.securityweek.com/

Story 2 — Dell RecoverPoint:

Google Cloud / Mandiant GTIG Report — https://cloud.google.com/blog/topics/threat-intelligence/
Dell Security Advisory DSA-2026-079 — https://www.dell.com/support/kbdoc/en-us/000426742/
CISA Known Exploited Vulnerabilities Catalog — https://www.cisa.gov/known-exploited-vulnerabilities-catalog
The Hacker News — https://thehackernews.com/
SecurityWeek — https://www.securityweek.com/
CyberScoop — https://cyberscoop.com/

Story 3 — Claude AI Jailbreak:

Bloomberg (Feb 25, 2026) — https://www.bloomberg.com/
VentureBeat — https://venturebeat.com/
Gambit Security Research — https://gambitsecurity.com/

Story 4 — ScarCruft Ruby Jumper:

Zscaler ThreatLabz Report (Feb 27) — https://www.zscaler.com/blogs/security-research/
The Hacker News — https://thehackernews.com/
BleepingComputer — https://www.bleepingcomputer.com/

Story 5 — Starkiller PhaaS:

Krebs on Security — https://krebsonsecurity.com/
Abnormal AI Technical Analysis — https://abnormalsecurity.com/blog/
Dark Reading — https://www.darkreading.com/
Infosecurity Magazine — https://www.infosecurity-magazine.com/


⚠️ DISCLAIMER
The content presented by Exploit Brokers by Forgebound Research is for educational and informational purposes only. Cipherceval is a cybersecurity educator and commentator — not your personal security consultant, legal counsel, or professional advisor. The information shared here reflects publicly available research, industry reporting, and the host's personal perspective. It does not constitute professional security consulting or individualized guidance for your specific environment. Always consult with qualified professionals for decisions affecting your systems and security posture.

🔔 Subscribe for weekly cybersecurity news and analysis.
👍 Like if this episode was helpful.
🔗 Share with your team — awareness is the first line of defense.

#cybersecurity #hackernews #exploitbrokers #cipherceval #infosec #cisco #sdwan #cve #zerodday #ghostnics #dell #recoverpoint #claudeai #jailbreak #scarcruft #northkorea #airgap #starkiller #phishing #mfa #fido2 #passkeys #fiveeyes #cisa #threatintelligence #apisecurity #cyberthreat #nationstatehacking #databreach


Ever wonder how a hacker actually thinks when they're picking a digital lock? That's the kind of curiosity that drives Exploit Brokers By Forgebound Research. Hosted by Cipherceval, this isn't just a rundown of the week's scary headlines. Instead, it's a deep, analytical dive into the mechanics behind major cyber events. Each episode takes apart real-world incidents-from sprawling data breaches and clever malware to massive botnet takedowns-and walks through the how and why. The goal is practical: by understanding the tools and tactics used in an attack, we can all build smarter defenses. You'll find a mix of sharp commentary on breaking tech news and clear, insightful tutorials that demystify complex security concepts. Tune in for a perspective that goes beyond surface-level reporting, offering a genuine look into the mindset of both attackers and defenders. This podcast serves as a valuable resource for anyone from IT professionals to simply tech-curious listeners who want to move past fear and into comprehension.
Author: Language: en-us Episodes: 62

Exploit Brokers By Forgebound Research - Tech and Hacking News Commentary
Podcast Episodes
HN24 -  Sandwich Data Breach Alert: Jason's Deli & Subway Under Attack [not-audio_url] [/not-audio_url]

Duration: 20:19
🔒 Dive into the world of cybersecurity as we uncover the latest threats facing businesses in today's digital landscape. In this video, we dissect the Jason's Deli data breach, shedding light on the dangers of credential…
HN23 - One Click Away: The Alarming Reality of Data Theft Exploits [not-audio_url] [/not-audio_url]

Duration: 14:58
In this eye-opening episode of Exploit Brokers, we delve deep into the world of cybercrime, dissecting the sinister Phemedrone Stealer malware and its ability to pilfer your precious data. Join us as we explore the chill…
HN22 - Crypto Chaos: How a Fake SEC Tweet Triggered a Bitcoin Spike [not-audio_url] [/not-audio_url]

Duration: 19:29
In this gripping episode of Exploit Brokers, we delve deep into the intricate world of cryptocurrency and cybersecurity. Our journey begins with the astonishing SEC Twitter hack, where hackers manipulated the SEC's accou…
HN18 - AI's Silent Takeover in the CIA & IRS [not-audio_url] [/not-audio_url]

Duration: 19:45
🔍 In this episode of Exploit Brokers, we dive deep into the growing use of AI by government agencies like the CIA and IRS. Are we heading towards a world where AI is used in ways that could infringe upon our rights and p…