RaqibCTI
Search the threat graph — actor, CVE, technique, victim…
⌘K
◇ SIGN IN
Knowledge
/
KEV Catalog
/
CVE-2026-1731
Corpus
+ Request intel
workspace
CVE
CVE-2026-1731
P1
⬤ KNOWN RANSOMWARE USE
BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) OS Command Injection Vulnerability
BeyondTrust · Remote Support (RS) and Privileged Remote Access (PRA)
Date added (CISA)
2026-02-13
Remediation due
2026-02-16
Known ransomware use
Yes
Remediation priority
P1 — known ransomware use · past CISA due date
Associated with
Related to
←
Lazarus Group (TraderTraitor cluster) / APT38 / BlueNoroff · SPECTRE
campaign
Correlated cluster
2026-09-16
←
Lazarus Group (TraderTraitor cluster) / APT38 / BlueNoroff · ZshBucket
campaign
Correlated cluster
2026-08-26
←
BadIIS
campaign
Correlated cluster
2026-08-26
Overview
ATT&CK
Related
Related
Nothing linked yet
No threat actor or pipeline report has been cross-referenced against this CVE yet. The associated-with rail above shows any asserted relationships.
Source:
NVD ↗
·
CISA KEV Catalog ↗