π₯ ONE WEEK. FOUR DAYS. SO MUCH TO EXPERIENCE! π¬ππ»
Whatβs happening at National ICT Week 2026? π
From inspiring conversations and innovative ideas to practical sessions, networking, exhibitions and exciting activities, each day has something special in store! πβ¨ /1
βΌοΈ New Linux KVM escape flaw disclosed with public PoC.
Zapscape (CVE-2026-64561) could let an attacker with guest root break out of a nested VM and execute code as root on the host when nested virtualization is exposed to untrusted guests.
Learn which KVM setups are exposed: https://t.co/JnQcZ7oF42
- No login
- No write access
- Just crafted Org-mode markup
π CVE-2026-59774, a critical Gitea flaw, lets attackers use a public repository to read any file accessible to the Gitea service account. Gitea says it could also be chained into command execution.
How it works and what admins should check: https://t.co/uvhe6H0XVH
π¨ 321 n8n instances accepted leaked API tokens.
Found in public GitHub commits, the tokens could expose workflows and execution data, let attackers use stored credentials, and, in some configurations, extract their raw values.
No CVE required. See how the attacks work: https://t.co/I6Qgownzbw
π¨ One malicious GitHub issue could trigger a privileged Google ADK agent.
Google pulled 3 ADK AI workflows after researchers demonstrated that adk-botβs trusted identity could become a bridge to CI runner code execution and bot PAT exfiltration.
How the chain worked: https://t.co/AZokfZYzxx
Positivity instead of fear. Energy instead of compliance. Trust instead of avoidance. Twelve months instead of one. Join us at Convene with David Badanes of Hoxhunt to talk about what we can do to give security awareness the attention it deserves.
Get tickets today: https://t.co/yD8bAwxSKZ