<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-09-29-apple-cve-2026-86950-coregraphics-targeted-attacks/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T10:30:00.000Z</news:publication_date>
      <news:title>Apple Patches CVE-2026-86950: CoreGraphics, Targeted Attacks</news:title>
      <news:keywords>CVE-2026-86950, Apple, CoreGraphics, iOS, macOS, zero-day, targeted attacks</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-29-apple-cve-2026-86950-coregraphics-targeted-attacks/cover.jpg</image:loc>
      <image:title>Apple Patches CVE-2026-86950: CoreGraphics, Targeted Attacks</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-29-keio-railway-ransomware-japan/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T08:00:00.000Z</news:publication_date>
      <news:title>Keio Railway Confirms Ransomware Attack</news:title>
      <news:keywords>ransomware, Keio, Japan, railway, critical infrastructure, Tokyo</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-29-keio-railway-ransomware-japan/cover.jpg</image:loc>
      <image:title>Keio Railway Confirms Ransomware Attack</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-29-apache-roller-four-cves-patched/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T06:00:00.000Z</news:publication_date>
      <news:title>Apache Roller Patches Critical XML-RPC Deserialization Bug</news:title>
      <news:keywords>apache-roller, deserialization, xml-rpc, cve-2026-82384, rce, patch, java</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-29-apache-roller-four-cves-patched/cover.jpg</image:loc>
      <image:title>Apache Roller Patches Critical XML-RPC Deserialization Bug</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-jadepuffer-azure-service-principals-resource-deletion/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T14:30:00.000Z</news:publication_date>
      <news:title>JADEPUFFER Uses Stolen Service Principals to Destroy Azure</news:title>
      <news:keywords>JADEPUFFER, Azure, service principals, Microsoft Entra, cloud security, destructive attack</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-jadepuffer-azure-service-principals-resource-deletion/cover.jpg</image:loc>
      <image:title>JADEPUFFER Uses Stolen Service Principals to Destroy Azure</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-shinyhunters-fresh-peoplesoft-campaign-google/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T13:00:00.000Z</news:publication_date>
      <news:title>ShinyHunters Retooled PeopleSoft Exploit, Google Warns</news:title>
      <news:keywords>CVE-2026-35273, Oracle PeopleSoft, ShinyHunters, threat intelligence, exploitation, KEV, Google</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-shinyhunters-fresh-peoplesoft-campaign-google/cover.jpg</image:loc>
      <image:title>ShinyHunters Retooled PeopleSoft Exploit, Google Warns</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-bitget-withdrawals-resume-387-million-crypto-heist/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T10:00:00.000Z</news:publication_date>
      <news:title>Bitget Resumes Withdrawals After $387.5M DPRK Heist</news:title>
      <news:keywords>bitget, north-korea, dprk, cryptocurrency, crypto-exchange, wallet-theft</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-bitget-withdrawals-resume-387-million-crypto-heist/cover.jpg</image:loc>
      <image:title>Bitget Resumes Withdrawals After $387.5M DPRK Heist</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-citrix-netscaler-patches-cve-2026-88771-cve-2026-88772/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T08:00:00.000Z</news:publication_date>
      <news:title>Citrix Patches NetScaler Zero-Days CVE-2026-88771, -88772</news:title>
      <news:keywords>citrix, netscaler, zero-day, cve-2026-88771, cve-2026-88772, kev, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-citrix-netscaler-patches-cve-2026-88771-cve-2026-88772/cover.jpg</image:loc>
      <image:title>Citrix Patches NetScaler Zero-Days CVE-2026-88771, -88772</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-28-obot-three-cves-mcp-docker-access-control/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-28T06:00:00.000Z</news:publication_date>
      <news:title>Obot AI Platform Patches Three CVEs, Two Critical</news:title>
      <news:keywords>obot, mcp, docker, access-control, cve, ai-agent, critical</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-28-obot-three-cves-mcp-docker-access-control/cover.jpg</image:loc>
      <image:title>Obot AI Platform Patches Three CVEs, Two Critical</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-27-budibase-3-45-0-six-cve-patch/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-27T12:00:00.000Z</news:publication_date>
      <news:title>Budibase 3.45.0 Fixes Six Security Flaws</news:title>
      <news:keywords>budibase, cve, authentication-bypass, sql-injection, arbitrary-file-write, ssrf, low-code</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-27-budibase-3-45-0-six-cve-patch/cover.jpg</image:loc>
      <image:title>Budibase 3.45.0 Fixes Six Security Flaws</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-09-27-citrix-netscaler-two-unpatched-rce-zero-days/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-27T10:30:00.000Z</news:publication_date>
      <news:title>Citrix NetScaler: Two Unpatched RCEs Actively Exploited</news:title>
      <news:keywords>citrix, netscaler, rce, zero-day, adc, gateway, exploitation</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-09-27-citrix-netscaler-two-unpatched-rce-zero-days/cover.jpg</image:loc>
      <image:title>Citrix NetScaler: Two Unpatched RCEs Actively Exploited</image:title>
    </image:image>
  </url>
</urlset>