<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-jadepuffer-azure-service-principals-resource-deletion/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T14:30:00.000Z</news:publication_date>
      <news:title>JADEPUFFER Uses Stolen Service Principals to Destroy Azure</news:title>
      <news:keywords>JADEPUFFER, Azure, service principals, Microsoft Entra, cloud security, destructive attack</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-jadepuffer-azure-service-principals-resource-deletion/cover.jpg</image:loc>
      <image:title>JADEPUFFER Uses Stolen Service Principals to Destroy Azure</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-shinyhunters-fresh-peoplesoft-campaign-google/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T13:00:00.000Z</news:publication_date>
      <news:title>ShinyHunters Retooled PeopleSoft Exploit, Google Warns</news:title>
      <news:keywords>CVE-2026-35273, Oracle PeopleSoft, ShinyHunters, threat intelligence, exploitation, KEV, Google</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-shinyhunters-fresh-peoplesoft-campaign-google/cover.jpg</image:loc>
      <image:title>ShinyHunters Retooled PeopleSoft Exploit, Google Warns</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-bitget-withdrawals-resume-387-million-crypto-heist/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T10:00:00.000Z</news:publication_date>
      <news:title>Bitget Resumes Withdrawals After $387.5M DPRK Heist</news:title>
      <news:keywords>bitget, north-korea, dprk, cryptocurrency, crypto-exchange, wallet-theft</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-bitget-withdrawals-resume-387-million-crypto-heist/cover.jpg</image:loc>
      <image:title>Bitget Resumes Withdrawals After $387.5M DPRK Heist</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-citrix-netscaler-patches-cve-2026-88771-cve-2026-88772/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T08:00:00.000Z</news:publication_date>
      <news:title>Citrix Patches NetScaler Zero-Days CVE-2026-88771, -88772</news:title>
      <news:keywords>citrix, netscaler, zero-day, cve-2026-88771, cve-2026-88772, kev, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-citrix-netscaler-patches-cve-2026-88771-cve-2026-88772/cover.jpg</image:loc>
      <image:title>Citrix Patches NetScaler Zero-Days CVE-2026-88771, -88772</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-obot-three-cves-mcp-docker-access-control/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T06:00:00.000Z</news:publication_date>
      <news:title>Obot AI Platform Patches Three CVEs, Two Critical</news:title>
      <news:keywords>obot, mcp, docker, access-control, cve, ai-agent, critical</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-obot-three-cves-mcp-docker-access-control/cover.jpg</image:loc>
      <image:title>Obot AI Platform Patches Three CVEs, Two Critical</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-27-budibase-3-45-0-six-cve-patch/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-27T12:00:00.000Z</news:publication_date>
      <news:title>Budibase 3.45.0 Fixes Six Security Flaws</news:title>
      <news:keywords>budibase, cve, authentication-bypass, sql-injection, arbitrary-file-write, ssrf, low-code</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-27-budibase-3-45-0-six-cve-patch/cover.jpg</image:loc>
      <image:title>Budibase 3.45.0 Fixes Six Security Flaws</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-27-citrix-netscaler-two-unpatched-rce-zero-days/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-27T10:30:00.000Z</news:publication_date>
      <news:title>Citrix NetScaler: Two Unpatched RCEs Actively Exploited</news:title>
      <news:keywords>citrix, netscaler, rce, zero-day, adc, gateway, exploitation</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-27-citrix-netscaler-two-unpatched-rce-zero-days/cover.jpg</image:loc>
      <image:title>Citrix NetScaler: Two Unpatched RCEs Actively Exploited</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-27-woocommerce-request-quote-cve-2026-18143-file-upload/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-27T08:00:00.000Z</news:publication_date>
      <news:title>Critical File Upload Bug in WooCommerce Quote Plugin</news:title>
      <news:keywords>woocommerce, cve-2026-18143, arbitrary-file-upload, wordpress, request-a-quote</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-27-woocommerce-request-quote-cve-2026-18143-file-upload/cover.jpg</image:loc>
      <image:title>Critical File Upload Bug in WooCommerce Quote Plugin</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-27-sharepoint-code-injection-cve-2026-65660-kev/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-27T06:00:00.000Z</news:publication_date>
      <news:title>SharePoint Code Injection CVE-2026-65660 Added to KEV</news:title>
      <news:keywords>sharepoint, cisa-kev, cve-2026-65660, code-injection, microsoft</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-27-sharepoint-code-injection-cve-2026-65660-kev/cover.jpg</image:loc>
      <image:title>SharePoint Code Injection CVE-2026-65660 Added to KEV</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-27-shinyhunters-waf-bypass-oracle-peoplesoft-cve-2026-35273/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-27T06:00:00.000Z</news:publication_date>
      <news:title>ShinyHunters WAF Bypass Keeps PeopleSoft Attacks Alive</news:title>
      <news:keywords>CVE-2026-35273, Oracle PeopleSoft, WAF bypass, ShinyHunters, web shells, KEV, URL encoding</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-27-shinyhunters-waf-bypass-oracle-peoplesoft-cve-2026-35273/cover.jpg</image:loc>
      <image:title>ShinyHunters WAF Bypass Keeps PeopleSoft Attacks Alive</image:title>
    </image:image>
  </url>
</urlset>