<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-08-24-stackgres-cve-2026-78155-tenant-priv-escalation/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-24T06:30:00.000Z</news:publication_date>
      <news:title>StackGres CVSS 9.9 Bug Escalates DB Tenant to Admin</news:title>
      <news:keywords>StackGres, CVE-2026-78155, Kubernetes, PostgreSQL, privilege escalation, cloud, database security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-24-stackgres-cve-2026-78155-tenant-priv-escalation/cover.jpg</image:loc>
      <image:title>StackGres CVSS 9.9 Bug Escalates DB Tenant to Admin</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-24-gitlab-cve-2026-10053-rce-package-registry/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-24T06:00:00.000Z</news:publication_date>
      <news:title>GitLab Patches RCE in Package Registry (CVE-2026-10053)</news:title>
      <news:keywords>GitLab, CVE-2026-10053, remote code execution, path traversal, package registry, CI/CD security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-24-gitlab-cve-2026-10053-rce-package-registry/cover.jpg</image:loc>
      <image:title>GitLab Patches RCE in Package Registry (CVE-2026-10053)</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-24-velociraptor-cve-2026-19200-artifact-overwrite/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-24T06:00:00.000Z</news:publication_date>
      <news:title>Velociraptor Flaw Lets Analysts Overwrite Artifacts</news:title>
      <news:keywords>velociraptor, CVE-2026-19200, DFIR, privilege escalation, artifact repository, incident response, vulnerability</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-24-velociraptor-cve-2026-19200-artifact-overwrite/cover.jpg</image:loc>
      <image:title>Velociraptor Flaw Lets Analysts Overwrite Artifacts</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-23-toxicpanda-vpn-permission-google-play-block/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-23T23:30:00.000Z</news:publication_date>
      <news:title>ToxicPanda Blocks Play Store via Android VPN Trick</news:title>
      <news:keywords>ToxicPanda, Android malware, VPN permissions, mobile banking security, Google Play, Zimperium, banking trojan</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-23-toxicpanda-vpn-permission-google-play-block/cover.jpg</image:loc>
      <image:title>ToxicPanda Blocks Play Store via Android VPN Trick</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-23-strongswan-cve-2026-47895-double-free-eap/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-23T22:30:00.000Z</news:publication_date>
      <news:title>strongSwan 6.0.7 Patches Double-Free in IKE Auth</news:title>
      <news:keywords>strongSwan, CVE-2026-47895, double-free, IKE, VPN, IPsec, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-23-strongswan-cve-2026-47895-double-free-eap/cover.jpg</image:loc>
      <image:title>strongSwan 6.0.7 Patches Double-Free in IKE Auth</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-23-banking-trojans-manic-grandoreiro-toxicpanda/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-23T04:00:00.000Z</news:publication_date>
      <news:title>Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 Active</news:title>
      <news:keywords>banking trojan, Grandoreiro, ToxicPanda, Manic, mobile malware, Android, spyware</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-23-banking-trojans-manic-grandoreiro-toxicpanda/cover.jpg</image:loc>
      <image:title>Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 Active</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-22-weechat-relay-timing-attack-cve-2026-53525/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-23T02:05:00.000Z</news:publication_date>
      <news:title>WeeChat Relay Flaw Exposes Auth to Timing Attack</news:title>
      <news:keywords>weechat, timing-attack, relay, authentication, CVE-2026-53525, CVE-2026-53524</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-22-weechat-relay-timing-attack-cve-2026-53525/cover.jpg</image:loc>
      <image:title>WeeChat Relay Flaw Exposes Auth to Timing Attack</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-22-android-car-head-unit-proxy-botnet/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-23T00:05:00.000Z</news:publication_date>
      <news:title>Car Infotainment Units Hijacked via Supply-Chain Attack</news:title>
      <news:keywords>supply-chain, android, car head unit, proxy botnet, infotainment, malware, ad fraud</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-22-android-car-head-unit-proxy-botnet/cover.jpg</image:loc>
      <image:title>Car Infotainment Units Hijacked via Supply-Chain Attack</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-22-defender-btr-sys-boot-driver-security-bypass/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-22T07:30:00.000Z</news:publication_date>
      <news:title>Defender&apos;s Own Boot Driver Can Kill Security Software</news:title>
      <news:keywords>microsoft defender, BTR.sys, living off the land, endpoint security, EDR bypass, windows, lolbin</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-22-defender-btr-sys-boot-driver-security-bypass/cover.jpg</image:loc>
      <image:title>Defender&apos;s Own Boot Driver Can Kill Security Software</image:title>
    </image:image>
  </url>
</urlset>