<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-twinloot-sharepoint-teams-c2-python-implant/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T14:00:00.000Z</news:publication_date>
      <news:title>TWINLOOT Hides C2 Inside Microsoft SharePoint</news:title>
      <news:keywords>TWINLOOT, Python malware, SharePoint C2, living-off-the-cloud, credential theft, LOLBin, Microsoft 365</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-twinloot-sharepoint-teams-c2-python-implant/cover.jpg</image:loc>
      <image:title>TWINLOOT Hides C2 Inside Microsoft SharePoint</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-anthropic-claude-agents-self-replicating-malware/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T12:00:00.000Z</news:publication_date>
      <news:title>Anthropic: Claude Agents Deployed Self-Replicating Malware</news:title>
      <news:keywords>AI agents, multi-agent systems, self-replicating malware, Anthropic, Claude, AI security, agentic AI</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-anthropic-claude-agents-self-replicating-malware/cover.jpg</image:loc>
      <image:title>Anthropic: Claude Agents Deployed Self-Replicating Malware</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-windows-task-host-ransomware-cisa-kev/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T12:00:00.000Z</news:publication_date>
      <news:title>CISA: Ransomware Gangs Now Exploit Windows Task Host Flaw</news:title>
      <news:keywords>Windows, Task Host, CISA, KEV, ransomware, Microsoft, vulnerability</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-windows-task-host-ransomware-cisa-kev/cover.jpg</image:loc>
      <image:title>CISA: Ransomware Gangs Now Exploit Windows Task Host Flaw</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-microsoft-wmic-removed-windows11-lolbin/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T08:12:00.000Z</news:publication_date>
      <news:title>Microsoft Removes WMIC LOLBin From Windows 11</news:title>
      <news:keywords>WMIC, LOLBin, Windows 11, Windows Management Instrumentation, detection engineering, threat hunting, living off the land</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-microsoft-wmic-removed-windows11-lolbin/cover.jpg</image:loc>
      <image:title>Microsoft Removes WMIC LOLBin From Windows 11</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-18-forminator-wordpress-cve-2026-15748-rce/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T08:00:00.000Z</news:publication_date>
      <news:title>Forminator WordPress Plugin RCE Flaw Hits 600K Sites</news:title>
      <news:keywords>wordpress, forminator, CVE-2026-15748, RCE, file upload, critical, plugin</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-18-forminator-wordpress-cve-2026-15748-rce/cover.jpg</image:loc>
      <image:title>Forminator WordPress Plugin RCE Flaw Hits 600K Sites</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-snowflake-github-actions-workflow-injection/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T22:15:00.000Z</news:publication_date>
      <news:title>GitHub Actions Injection Found in Snowflake .NET Repo</news:title>
      <news:keywords>github-actions, workflow-injection, supply-chain, snowflake, ci-cd, credential-exposure, wiz</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-snowflake-github-actions-workflow-injection/cover.jpg</image:loc>
      <image:title>GitHub Actions Injection Found in Snowflake .NET Repo</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-gitlab-cve-2026-19478-graphql-unauth/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T22:00:00.000Z</news:publication_date>
      <news:title>Critical GitLab Flaw Lets Attackers Delete Projects</news:title>
      <news:keywords>gitlab, CVE-2026-19478, graphql, unauthenticated, critical, patch, community-edition, enterprise-edition</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-gitlab-cve-2026-19478-graphql-unauth/cover.jpg</image:loc>
      <image:title>Critical GitLab Flaw Lets Attackers Delete Projects</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-apple-ios-macos-108-vulnerabilities-patched/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T21:30:00.000Z</news:publication_date>
      <news:title>Apple Patches 108 Flaws in iOS, iPadOS and macOS 26</news:title>
      <news:keywords>apple, ios, ipad, macos, security update, patch, vulnerabilities</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-apple-ios-macos-108-vulnerabilities-patched/cover.jpg</image:loc>
      <image:title>Apple Patches 108 Flaws in iOS, iPadOS and macOS 26</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-discourse-cve-2026-55674-csp-bypass/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T20:00:00.000Z</news:publication_date>
      <news:title>Discourse: Critical CSP Bypass Fixed, Three More CVEs</news:title>
      <news:keywords>discourse, cve-2026-55674, html-injection, csp-bypass, content-security-policy, information-disclosure, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-discourse-cve-2026-55674-csp-bypass/cover.jpg</image:loc>
      <image:title>Discourse: Critical CSP Bypass Fixed, Three More CVEs</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-how-cvss-scoring-works/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T19:00:00.000Z</news:publication_date>
      <news:title>How CVSS Scoring Works</news:title>
      <news:keywords>cvss, cvss-3-1, vulnerability-scoring, cvss-base-score, epss, patch-prioritization, nvd</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-how-cvss-scoring-works/cover.jpg</image:loc>
      <image:title>How CVSS Scoring Works</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-what-is-cisa-kev-catalog/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T18:30:00.000Z</news:publication_date>
      <news:title>What Is the CISA KEV Catalog?</news:title>
      <news:keywords>cisa-kev, known-exploited-vulnerabilities, vulnerability-management, bod-22-01, patch-prioritization, cisa, epss</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-what-is-cisa-kev-catalog/cover.jpg</image:loc>
      <image:title>What Is the CISA KEV Catalog?</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-ray-framework-cve-2025-62593-cisa-kev/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T16:00:00.000Z</news:publication_date>
      <news:title>Ray AI Framework Added to CISA KEV — Patch by Aug 21</news:title>
      <news:keywords>ray-project, cve-2025-62593, cisa-kev, remote-code-execution, machine-learning, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-ray-framework-cve-2025-62593-cisa-kev/cover.jpg</image:loc>
      <image:title>Ray AI Framework Added to CISA KEV — Patch by Aug 21</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-clop-ransomware-ge-philips-data-theft/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T14:00:00.000Z</news:publication_date>
      <news:title>Clop Claims GE and Philips; Both Investigating</news:title>
      <news:keywords>clop, ransomware, general electric, philips, data theft, breach investigation, extortion</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-clop-ransomware-ge-philips-data-theft/cover.jpg</image:loc>
      <image:title>Clop Claims GE and Philips; Both Investigating</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-shieldbreak-defender-patch-update/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T10:00:00.000Z</news:publication_date>
      <news:title>Microsoft Patch Underway for Defender ShieldBreak Zero-Day</news:title>
      <news:keywords>shieldbreak, CVE-2026-69414, microsoft defender, zero-day, elevation of privilege, windows, malware protection engine</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-shieldbreak-defender-patch-update/cover.jpg</image:loc>
      <image:title>Microsoft Patch Underway for Defender ShieldBreak Zero-Day</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-fortune-500-azure-data-theft-campaign/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T07:30:00.000Z</news:publication_date>
      <news:title>Fortune 500 Firms Named in Azure Data Theft Claim</news:title>
      <news:keywords>azure, data breach, fortune 500, cloud security, threat actor, data theft, exfiltration</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-fortune-500-azure-data-theft-campaign/cover.jpg</image:loc>
      <image:title>Fortune 500 Firms Named in Azure Data Theft Claim</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-gl-inet-490-rce-flaws-routers/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T06:00:00.000Z</news:publication_date>
      <news:title>GL.iNet 4.9.0 Fixes Five RCE Flaws in Wi-Fi Routers</news:title>
      <news:keywords>GL.iNet, router, remote-code-execution, firmware, CVE-2026-19979, CVE-2026-19983, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-gl-inet-490-rce-flaws-routers/cover.jpg</image:loc>
      <image:title>GL.iNet 4.9.0 Fixes Five RCE Flaws in Wi-Fi Routers</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-wireshark-468-28-vulnerabilities-patched/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T05:00:00.000Z</news:publication_date>
      <news:title>Wireshark 4.6.8 Patches 28 Vulnerabilities</news:title>
      <news:keywords>wireshark, packet-capture, protocol-analyzer, vulnerability, patch, security-update</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-wireshark-468-28-vulnerabilities-patched/cover.jpg</image:loc>
      <image:title>Wireshark 4.6.8 Patches 28 Vulnerabilities</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-17-safepal-breach-40k-customers-data-for-sale/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T02:00:00.000Z</news:publication_date>
      <news:title>SafePal Breach: 39,798 Customers&apos; Order Data for Sale</news:title>
      <news:keywords>SafePal, data breach, cryptocurrency, hardware wallet, customer data, threat actor</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-17-safepal-breach-40k-customers-data-for-sale/cover.jpg</image:loc>
      <image:title>SafePal Breach: 39,798 Customers&apos; Order Data for Sale</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-16-amnesiastealer-macos-browser-hijack/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-16T23:45:00.000Z</news:publication_date>
      <news:title>AmnesiaStealer Hijacks macOS Browser Sessions</news:title>
      <news:keywords>AmnesiaStealer, macOS malware, ClickFix, infostealer, browser hijacking, Jamf, keychain</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-16-amnesiastealer-macos-browser-hijack/cover.jpg</image:loc>
      <image:title>AmnesiaStealer Hijacks macOS Browser Sessions</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-16-wordpress-pods-link-library-critical-vulns/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-16T22:00:00.000Z</news:publication_date>
      <news:title>Critical Flaws in Pods, Link Library Hit WordPress Sites</news:title>
      <news:keywords>wordpress, CVE-2026-19598, CVE-2026-18855, privilege-escalation, arbitrary-file-deletion, pods, link-library</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-16-wordpress-pods-link-library-critical-vulns/cover.jpg</image:loc>
      <image:title>Critical Flaws in Pods, Link Library Hit WordPress Sites</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-16-siyuan-v374-eleven-cves-critical-rce/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-16T20:00:00.000Z</news:publication_date>
      <news:title>SiYuan v3.7.4 Patches 11 CVEs, Critical RCE Confirmed</news:title>
      <news:keywords>siyuan, rce, electron, xss, auth-bypass, cve, note-taking</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-16-siyuan-v374-eleven-cves-critical-rce/cover.jpg</image:loc>
      <image:title>SiYuan v3.7.4 Patches 11 CVEs, Critical RCE Confirmed</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-16-threema-ddos-service-disruption/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-16T17:30:00.000Z</news:publication_date>
      <news:title>Threema Hit by Large-Scale DDoS, Service Disrupted</news:title>
      <news:keywords>DDoS, Threema, secure messaging, availability, disruption</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-16-threema-ddos-service-disruption/cover.jpg</image:loc>
      <image:title>Threema Hit by Large-Scale DDoS, Service Disrupted</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-16-august-kernel-drop-enterprise-cves/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-16T16:00:00.000Z</news:publication_date>
      <news:title>August Kernel Drop: The Enterprise CVEs Nobody Wrote About</news:title>
      <news:keywords>linux kernel, thunderbolt, nvme-of, tpm, heap overflow, enterprise security, stable kernel</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-16-august-kernel-drop-enterprise-cves/cover.jpg</image:loc>
      <image:title>August Kernel Drop: The Enterprise CVEs Nobody Wrote About</image:title>
    </image:image>
  </url>
</urlset>