New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts
A newly disclosed Linux kernel vulnerability, dubbed Zapscape and tracked as CVE-2026-64561, could allow an attacker with kernel privileges inside an L1…
A newly disclosed Linux kernel vulnerability, dubbed Zapscape and tracked as CVE-2026-64561, could allow an attacker with kernel privileges inside an L1…
Januscape is a separate KVM/x86 shadow-MMU vulnerability disclosed by Hyunwoo Kim in July 2026, as covered by The Hacker News. It is…
KVM (Kernel-based Virtual Machine) is the virtualization module in the Linux kernel. The Zapscape vulnerability (CVE-2026-64561) affects KVM/x86's shadow MMU, allowing L1…
QEMU is an emulator that can be used with KVM. In the Zapscape proof-of-concept, QEMU is not the vulnerable component; the bug…
kvmCTF is a Google-run bug bounty program focused on KVM vulnerabilities, offering up to $250,000 for guest-to-host escapes. The Januscape exploit was…
ITScape is a KVM/arm64 escape vulnerability published in June 2026, also discovered by Hyunwoo Kim. It is part of his series of…
A critical use-after-free vulnerability in the Linux Kernel-based Virtual Machine (KVM) hypervisor, tracked as CVE-2026-53359 and named 'Januscape', allows a guest virtual…