N-able N-central exploited through an incomplete patch, signed ScreenConnect agents abused with no CVE, and six KEV additions on three-day clocks.