<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-08-19-ransom-busters-ransomware-recovery-scam/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T02:30:00.000Z</news:publication_date>
      <news:title>Ransomware Affiliate Poses as Data Recovery Service</news:title>
      <news:keywords>ransomware, Ransom Busters, extortion, data theft, social engineering, incident response, GuidePoint</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-19-ransom-busters-ransomware-recovery-scam/cover.jpg</image:loc>
      <image:title>Ransomware Affiliate Poses as Data Recovery Service</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-19-apple-ios-ipados-macos-tahoe-27-vulns-patch/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T02:15:00.000Z</news:publication_date>
      <news:title>Apple Patches 27 Flaws in iOS, iPadOS, and macOS Tahoe</news:title>
      <news:keywords>Apple, iOS, iPadOS, macOS Tahoe, patch, image processing, code execution, vulnerabilities</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-19-apple-ios-ipados-macos-tahoe-27-vulns-patch/cover.jpg</image:loc>
      <image:title>Apple Patches 27 Flaws in iOS, iPadOS, and macOS Tahoe</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-19-china-ai-apac-nation-state-attack/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T02:00:00.000Z</news:publication_date>
      <news:title>China-Linked AI Framework Hits APAC Government Targets</news:title>
      <news:keywords>AI attack, China, APAC, threat-intel, nation-state, near-autonomous, APT</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-19-china-ai-apac-nation-state-attack/cover.jpg</image:loc>
      <image:title>China-Linked AI Framework Hits APAC Government Targets</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-medusa-ransomware-500-victims-cisa-fbi/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T22:00:00.000Z</news:publication_date>
      <news:title>CISA, FBI: Medusa Ransomware Has 500+ Victims</news:title>
      <news:keywords>medusa, ransomware, cisa, fbi, critical infrastructure, advisory, raas</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-medusa-ransomware-500-victims-cisa-fbi/cover.jpg</image:loc>
      <image:title>CISA, FBI: Medusa Ransomware Has 500+ Victims</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-cosnitch-copilot-personal-data-exfiltration/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:30:00.000Z</news:publication_date>
      <news:title>CoSnitch: Three Copilot Flaws Enable One-Click Data Theft</news:title>
      <news:keywords>microsoft copilot, CoSnitch, Varonis, data exfiltration, AI security, prompt injection</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-cosnitch-copilot-personal-data-exfiltration/cover.jpg</image:loc>
      <image:title>CoSnitch: Three Copilot Flaws Enable One-Click Data Theft</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-mlflow-fuxa-cve-exploitation-cloud-scada/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:00:00.000Z</news:publication_date>
      <news:title>MLflow SSRF, FUXA Auth Flaws Actively Exploited</news:title>
      <news:keywords>MLflow, FUXA, SSRF, SCADA, CVE-2026-64849, CVE-2026-25895, active exploitation</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-mlflow-fuxa-cve-exploitation-cloud-scada/cover.jpg</image:loc>
      <image:title>MLflow SSRF, FUXA Auth Flaws Actively Exploited</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-clop-windchill-webshell-credential-theft/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T18:00:00.000Z</news:publication_date>
      <news:title>Clop&apos;s Windchill Implant Decrypts Passwords, Steals Files</news:title>
      <news:keywords>clop, windchill, flexplm, web-shell, ransomware, ptc, credential-theft</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-clop-windchill-webshell-credential-theft/cover.jpg</image:loc>
      <image:title>Clop&apos;s Windchill Implant Decrypts Passwords, Steals Files</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-stubmaker-rubygems-typosquat-supply-chain/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T16:00:00.000Z</news:publication_date>
      <news:title>16 Fake RubyGems Steal Browser Creds, Crypto Wallets</news:title>
      <news:keywords>rubygems, typosquatting, supply-chain, stubmaker, info-stealer, browser-credentials, crypto-wallets</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-stubmaker-rubygems-typosquat-supply-chain/cover.jpg</image:loc>
      <image:title>16 Fake RubyGems Steal Browser Creds, Crypto Wallets</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-twinloot-sharepoint-teams-c2-python-implant/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T14:00:00.000Z</news:publication_date>
      <news:title>TWINLOOT Hides C2 Inside Microsoft SharePoint</news:title>
      <news:keywords>TWINLOOT, Python malware, SharePoint C2, living-off-the-cloud, credential theft, LOLBin, Microsoft 365</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-twinloot-sharepoint-teams-c2-python-implant/cover.jpg</image:loc>
      <image:title>TWINLOOT Hides C2 Inside Microsoft SharePoint</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-anthropic-claude-agents-self-replicating-malware/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T12:00:00.000Z</news:publication_date>
      <news:title>Anthropic: Claude Agents Deployed Self-Replicating Malware</news:title>
      <news:keywords>AI agents, multi-agent systems, self-replicating malware, Anthropic, Claude, AI security, agentic AI</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-anthropic-claude-agents-self-replicating-malware/cover.jpg</image:loc>
      <image:title>Anthropic: Claude Agents Deployed Self-Replicating Malware</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-windows-task-host-ransomware-cisa-kev/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T12:00:00.000Z</news:publication_date>
      <news:title>CISA: Ransomware Gangs Now Exploit Windows Task Host Flaw</news:title>
      <news:keywords>Windows, Task Host, CISA, KEV, ransomware, Microsoft, vulnerability</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-windows-task-host-ransomware-cisa-kev/cover.jpg</image:loc>
      <image:title>CISA: Ransomware Gangs Now Exploit Windows Task Host Flaw</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-microsoft-wmic-removed-windows11-lolbin/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T08:12:00.000Z</news:publication_date>
      <news:title>Microsoft Removes WMIC LOLBin From Windows 11</news:title>
      <news:keywords>WMIC, LOLBin, Windows 11, Windows Management Instrumentation, detection engineering, threat hunting, living off the land</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-microsoft-wmic-removed-windows11-lolbin/cover.jpg</image:loc>
      <image:title>Microsoft Removes WMIC LOLBin From Windows 11</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-forminator-wordpress-cve-2026-15748-rce/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T08:00:00.000Z</news:publication_date>
      <news:title>Forminator WordPress Plugin RCE Flaw Hits 600K Sites</news:title>
      <news:keywords>wordpress, forminator, CVE-2026-15748, RCE, file upload, critical, plugin</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-forminator-wordpress-cve-2026-15748-rce/cover.jpg</image:loc>
      <image:title>Forminator WordPress Plugin RCE Flaw Hits 600K Sites</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-snowflake-github-actions-workflow-injection/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T22:15:00.000Z</news:publication_date>
      <news:title>GitHub Actions Injection Found in Snowflake .NET Repo</news:title>
      <news:keywords>github-actions, workflow-injection, supply-chain, snowflake, ci-cd, credential-exposure, wiz</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-snowflake-github-actions-workflow-injection/cover.jpg</image:loc>
      <image:title>GitHub Actions Injection Found in Snowflake .NET Repo</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-gitlab-cve-2026-19478-graphql-unauth/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T22:00:00.000Z</news:publication_date>
      <news:title>Critical GitLab Flaw Lets Attackers Delete Projects</news:title>
      <news:keywords>gitlab, CVE-2026-19478, graphql, unauthenticated, critical, patch, community-edition, enterprise-edition</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-gitlab-cve-2026-19478-graphql-unauth/cover.jpg</image:loc>
      <image:title>Critical GitLab Flaw Lets Attackers Delete Projects</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-apple-ios-macos-108-vulnerabilities-patched/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T21:30:00.000Z</news:publication_date>
      <news:title>Apple Patches 108 Flaws in iOS, iPadOS and macOS 26</news:title>
      <news:keywords>apple, ios, ipad, macos, security update, patch, vulnerabilities</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-apple-ios-macos-108-vulnerabilities-patched/cover.jpg</image:loc>
      <image:title>Apple Patches 108 Flaws in iOS, iPadOS and macOS 26</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-discourse-cve-2026-55674-csp-bypass/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T20:00:00.000Z</news:publication_date>
      <news:title>Discourse: Critical CSP Bypass Fixed, Three More CVEs</news:title>
      <news:keywords>discourse, cve-2026-55674, html-injection, csp-bypass, content-security-policy, information-disclosure, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-discourse-cve-2026-55674-csp-bypass/cover.jpg</image:loc>
      <image:title>Discourse: Critical CSP Bypass Fixed, Three More CVEs</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-how-cvss-scoring-works/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T19:00:00.000Z</news:publication_date>
      <news:title>How CVSS Scoring Works</news:title>
      <news:keywords>cvss, cvss-3-1, vulnerability-scoring, cvss-base-score, epss, patch-prioritization, nvd</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-how-cvss-scoring-works/cover.jpg</image:loc>
      <image:title>How CVSS Scoring Works</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-what-is-cisa-kev-catalog/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T18:30:00.000Z</news:publication_date>
      <news:title>What Is the CISA KEV Catalog?</news:title>
      <news:keywords>cisa-kev, known-exploited-vulnerabilities, vulnerability-management, bod-22-01, patch-prioritization, cisa, epss</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-what-is-cisa-kev-catalog/cover.jpg</image:loc>
      <image:title>What Is the CISA KEV Catalog?</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-ray-framework-cve-2025-62593-cisa-kev/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T16:00:00.000Z</news:publication_date>
      <news:title>Ray AI Framework Added to CISA KEV — Patch by Aug 21</news:title>
      <news:keywords>ray-project, cve-2025-62593, cisa-kev, remote-code-execution, machine-learning, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-ray-framework-cve-2025-62593-cisa-kev/cover.jpg</image:loc>
      <image:title>Ray AI Framework Added to CISA KEV — Patch by Aug 21</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-clop-ransomware-ge-philips-data-theft/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T14:00:00.000Z</news:publication_date>
      <news:title>Clop Claims GE and Philips; Both Investigating</news:title>
      <news:keywords>clop, ransomware, general electric, philips, data theft, breach investigation, extortion</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-clop-ransomware-ge-philips-data-theft/cover.jpg</image:loc>
      <image:title>Clop Claims GE and Philips; Both Investigating</image:title>
    </image:image>
  </url>
</urlset>