<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-09-25-bitget-dprk-crypto-theft-351-million/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T12:00:00.000Z</news:publication_date>
      <news:title>Suspected DPRK Hackers Steal $351.6M from Bitget</news:title>
      <news:keywords>bitget, north-korea, dprk, crypto-exchange, wallet-theft, backend-compromise</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-25-bitget-dprk-crypto-theft-351-million/cover.jpg</image:loc>
      <image:title>Suspected DPRK Hackers Steal $351.6M from Bitget</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-25-salesbleed-salesforce-agentforce-zero-click-data-exfiltration/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T10:00:00.000Z</news:publication_date>
      <news:title>SalesBleed: Agentforce Flaws Enable Data Exfiltration</news:title>
      <news:keywords>salesforce, agentforce, prompt injection, data exfiltration, agentic ai, salesbleed, cloud security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-25-salesbleed-salesforce-agentforce-zero-click-data-exfiltration/cover.jpg</image:loc>
      <image:title>SalesBleed: Agentforce Flaws Enable Data Exfiltration</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-25-wso2-adobe-commerce-cisa-kev-cve-2026-5430-cve-2026-71362/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T08:00:00.000Z</news:publication_date>
      <news:title>CISA KEV: WSO2 and Adobe Commerce Flaws Exploited</news:title>
      <news:keywords>WSO2, Adobe Commerce, Magento, CISA KEV, CVE-2026-5430, CVE-2026-71362, patch deadline</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-25-wso2-adobe-commerce-cisa-kev-cve-2026-5430-cve-2026-71362/cover.jpg</image:loc>
      <image:title>CISA KEV: WSO2 and Adobe Commerce Flaws Exploited</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-25-macsync-macos-icloud-calendar-c2/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T06:00:00.000Z</news:publication_date>
      <news:title>MacSync macOS Malware Abuses Public iCloud Calendars</news:title>
      <news:keywords>macsync, macos, malware, icloud, infostealer, c2, clickfix, kaspersky</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-25-macsync-macos-icloud-calendar-c2/cover.jpg</image:loc>
      <image:title>MacSync macOS Malware Abuses Public iCloud Calendars</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-25-vardanyan-ryuk-ransomware-sentenced-two-years/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T06:00:00.000Z</news:publication_date>
      <news:title>Ryuk Member Gets 2 Years for $1.2M Ransomware Attacks</news:title>
      <news:keywords>Ryuk ransomware, Karen Vardanyan, sentencing, ransomware enforcement, cybercrime prosecution</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-25-vardanyan-ryuk-ransomware-sentenced-two-years/cover.jpg</image:loc>
      <image:title>Ryuk Member Gets 2 Years for $1.2M Ransomware Attacks</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-24-roundcube-cve-2026-48842-active-exploit-sql-injection/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T14:30:00.000Z</news:publication_date>
      <news:title>Roundcube SQL Injection Flaw Under Active Attack</news:title>
      <news:keywords>roundcube, sql-injection, CVE-2026-48842, webmail, active-exploitation, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-24-roundcube-cve-2026-48842-active-exploit-sql-injection/cover.jpg</image:loc>
      <image:title>Roundcube SQL Injection Flaw Under Active Attack</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-24-solarwinds-observability-cve-2026-28324-28325-rce/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T14:00:00.000Z</news:publication_date>
      <news:title>SolarWinds Fixes Two Unauth RCE Flaws in Observability</news:title>
      <news:keywords>SolarWinds, Observability, CVE-2026-28324, CVE-2026-28325, RCE, unauthenticated, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-24-solarwinds-observability-cve-2026-28324-28325-rce/cover.jpg</image:loc>
      <image:title>SolarWinds Fixes Two Unauth RCE Flaws in Observability</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-24-teamcity-cve-2026-63077-cisa-ransomware-kev/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T12:00:00.000Z</news:publication_date>
      <news:title>CISA: Ransomware Gangs Exploiting TeamCity RCE Flaw</news:title>
      <news:keywords>teamcity, jetbrains, CVE-2026-63077, ransomware, CISA, KEV, RCE</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-24-teamcity-cve-2026-63077-cisa-ransomware-kev/cover.jpg</image:loc>
      <image:title>CISA: Ransomware Gangs Exploiting TeamCity RCE Flaw</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-24-infratrust-nms-network-management-attacks-rising/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T10:00:00.000Z</news:publication_date>
      <news:title>InfraTrust: Network Management Systems Under Attack</news:title>
      <news:keywords>network management systems, InfraTrust, enterprise infrastructure, zero-day, patch prioritization, KEV</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-24-infratrust-nms-network-management-attacks-rising/cover.jpg</image:loc>
      <image:title>InfraTrust: Network Management Systems Under Attack</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-24-wordpress-core-cve-2026-87902-path-traversal-exploited/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:00:00.000Z</news:publication_date>
      <news:title>WordPress Core RCE Flaw CVE-2026-87902 Under Active Exploit</news:title>
      <news:keywords>CVE-2026-87902, WordPress, path traversal, RCE, exploitation, unauthenticated</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-24-wordpress-core-cve-2026-87902-path-traversal-exploited/cover.jpg</image:loc>
      <image:title>WordPress Core RCE Flaw CVE-2026-87902 Under Active Exploit</image:title>
    </image:image>
  </url>
</urlset>