Close Menu
Daily Guardian
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
What's On

Atlanta Technology Leaders to Gather Tomorrow for HMG Strategy’s 17th Annual C-Level Technology Leadership Summit on AI Governance, Agentic AI and Cybersecurity Resilience

August 19, 2026

Alberta to hold first AI data centre town halls this week

August 19, 2026

Trump’s tariff pause doesn’t bring trade certainty, industry groups say

August 19, 2026

The women’s soccer league trying to fix fantasy sports

August 19, 2026

Heritage Toronto’s Plaque Friday videos showcase city’s history with viral moments

August 19, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian
Subscribe
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
Daily Guardian
Home » Token Security Researcher to Present “Zapocalypse” Exploit Chain Targeting Zapier Users at fwd:cloudsec North America
Press Release

Token Security Researcher to Present “Zapocalypse” Exploit Chain Targeting Zapier Users at fwd:cloudsec North America

By News RoomMay 28, 20263 Mins Read
Token Security Researcher to Present “Zapocalypse” Exploit Chain Targeting Zapier Users at fwd:cloudsec North America
Share
Facebook Twitter LinkedIn Pinterest Email

TEL AVIV, Israel and NEW YORK, May 28, 2026 (GLOBE NEWSWIRE) — Token Security, the leader in identity-first AI agent security, today announced that Yair Balilti, Security Research Team Leader, will present new vulnerability research at fwd:cloudsec North America on June 1, 2026, demonstrating how a chained exploit targeting automation platforms and serverless environments can escalate to a full Zapier AI platform account takeover.

For complete details on the research findings, visit: https://www.token.security/zapocalypse.

WHO:
Yair Balilti, Security Research Team Leader, Token Security, is an expert in vulnerability research and offensive security. He leads research focused on uncovering vulnerabilities in cloud-native and AI-driven systems, with a particular emphasis on how automation platforms and AI agents introduce new attack vectors.

WHAT:
Automation platforms and AI agents are increasingly acting as the high-privilege control layer of modern enterprises. As these systems gain access to APIs, credentials, and workflows, they also create new and poorly understood security risks. The research reveals how AI automation platforms are generating highly-privileged identities that are not being monitored or governed.

In this session, Balilti will deconstruct a multi-stage exploit chain targeting Zapier users that begins in a sandboxed Python environment and escalates into full AI platform account takeover. The research challenges common assumptions about serverless isolation and secret handling, demonstrating how attackers can recover sensitive credentials directly from memory and move laterally across integrated systems.

The session will cover:

  • How hardcoded Model Context Protocol (MCP) keys and high-privilege tokens are exposed
  • Why Python’s del keyword does not reliably sanitize sensitive environment variables
  • How orphaned AWS STS tokens can be extracted from Lambda memory via /proc/self/mem
  • A technique for API-only ECR image extraction
  • A dependency poisoning attack leading to Stored XSS across thousands of integrations

Attendees will leave with:

  • A technical checklist for auditing AI “code block” and automation features
  • Strategies for identifying and eliminating orphaned secrets in serverless environments
  • Best practices for securing automation platforms and AI agent-driven workflows

WHERE:
fwd:cloudsec North America. Room 1. Meydenbauer Center, Bellevue, Washington.

WHEN:
Monday, June 1, 2026 at 10:50 AM PDT

HOW:
To speak with Yair Balilti, contact Marc Gendron at [email protected], +1 617 877 7480.

About Token Security
Token Security accelerates the secure adoption of agentic AI by discovering AI agents across the enterprise, understanding their context and risk, and enforcing policies that govern their access and behavior. The platform provides continuous visibility, lifecycle management, and least-privilege enforcement to help organizations control autonomous AI agents operating across cloud, SaaS, and enterprise environments, eliminating blind spots, reducing risk, and ensuring compliance at scale.

Token Security is backed by Notable Capital, Crosspoint Capital, and TLV Partners. To learn more: token.security.

Media Contact:
Marc Gendron
Marc Gendron PR for Token Security
+1 617 877 7480
[email protected]

A photo accompanying this announcement is available at https://www.globenewswire.com/NewsRoom/AttachmentNg/6f098d3a-925b-4600-8587-da4c724c0ea1

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

Atlanta Technology Leaders to Gather Tomorrow for HMG Strategy’s 17th Annual C-Level Technology Leadership Summit on AI Governance, Agentic AI and Cybersecurity Resilience

North Texas Food Bank Launches 13th Annual Peanut Butter Drive as Child Hunger Reaches New High

SpringGreen Franchise Leaders Help Shape the Future of Lawn, Pest and Tree Care

MEXC Launches Win: Infinity Arena With 0-Fee Stock Trading and Up to 10M USDT Prize Pool

Take 5 Oil Change Opens First Location in Salem, OR

Vaynhanh AI Report Identifies Five Distinct Fast Loan Products in Vietnam’s Consumer Credit Market

DOGE Price Prediction Drops to $0.07 While Moonberg's Crypto Presale Aims for Stage 3

Unified Communications Platform Helps Businesses Simplify Communications Across Sparklight Service Areas

Registration Opens on 20 August for Sun Hung Kai Properties Hong Kong Cyclothon

Editors Picks

Alberta to hold first AI data centre town halls this week

August 19, 2026

Trump’s tariff pause doesn’t bring trade certainty, industry groups say

August 19, 2026

The women’s soccer league trying to fix fantasy sports

August 19, 2026

Heritage Toronto’s Plaque Friday videos showcase city’s history with viral moments

August 19, 2026

Latest News

Amazon seemingly leaked Jason Statham’s entire Mutiny movie

August 19, 2026

North Texas Food Bank Launches 13th Annual Peanut Butter Drive as Child Hunger Reaches New High

August 19, 2026

SpringGreen Franchise Leaders Help Shape the Future of Lawn, Pest and Tree Care

August 19, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian Canada. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.

Go to mobile version