<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-08-14-sap-commerce-cloud-rce-exploitation/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T16:30:00.000Z</news:publication_date>
      <news:title>SAP Commerce Cloud RCE Exploit Hits Days After Patch</news:title>
      <news:keywords>SAP, Commerce Cloud, RCE, remote code execution, patch, active exploitation, enterprise</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-14-sap-commerce-cloud-rce-exploitation/cover.jpg</image:loc>
      <image:title>SAP Commerce Cloud RCE Exploit Hits Days After Patch</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-14-shell-clop-89gb-data-theft-claim/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T14:30:00.000Z</news:publication_date>
      <news:title>Clop Claims 89GB Shell Theft; Investigation Open</news:title>
      <news:keywords>Clop, Shell, data-theft, extortion, ransomware, oil-gas, investigation</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-14-shell-clop-89gb-data-theft-claim/cover.jpg</image:loc>
      <image:title>Clop Claims 89GB Shell Theft; Investigation Open</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-14-ringcentral-breach-shinyhunters-1-6m-accounts/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T12:00:00.000Z</news:publication_date>
      <news:title>ShinyHunters Hits RingCentral: 1.6M Accounts Exposed</news:title>
      <news:keywords>ringcentral, shinyhunters, data-breach, extortion, pii, telecom, breach-notification</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-14-ringcentral-breach-shinyhunters-1-6m-accounts/cover.jpg</image:loc>
      <image:title>ShinyHunters Hits RingCentral: 1.6M Accounts Exposed</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-14-beacon-crm-breach-charities-aws-key/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T10:00:00.000Z</news:publication_date>
      <news:title>Beacon CRM Breach Hits 1,000+ Charities via AWS Key</news:title>
      <news:keywords>beacon, charity, data-breach, aws-credentials, cloud-security, crm, access-key</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-14-beacon-crm-breach-charities-aws-key/cover.jpg</image:loc>
      <image:title>Beacon CRM Breach Hits 1,000+ Charities via AWS Key</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-14-wordpress-704-rce-imagick-ghostscript/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T10:00:00.000Z</news:publication_date>
      <news:title>WordPress 7.0.4 Patches High-Severity RCE Flaw</news:title>
      <news:keywords>wordpress, rce, imagick, ghostscript, postscript, file-upload, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-14-wordpress-704-rce-imagick-ghostscript/cover.jpg</image:loc>
      <image:title>WordPress 7.0.4 Patches High-Severity RCE Flaw</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-14-geoserver-zero-day-rce-active-exploitation/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T08:00:00.000Z</news:publication_date>
      <news:title>GeoServer Zero-Day SQL Injection Exploited in Wild</news:title>
      <news:keywords>geoserver, zero-day, sql-injection, rce, active-exploitation, unpatched, geospatial</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-14-geoserver-zero-day-rce-active-exploitation/cover.jpg</image:loc>
      <image:title>GeoServer Zero-Day SQL Injection Exploited in Wild</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-14-apple-mercenary-spyware-threat-notifications/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T02:00:00.000Z</news:publication_date>
      <news:title>Apple Notifies Users of Mercenary Spyware Attacks</news:title>
      <news:keywords>apple, mercenary-spyware, iphone, threat-notification, mobile-security, surveillance, lockdown-mode</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-14-apple-mercenary-spyware-threat-notifications/cover.jpg</image:loc>
      <image:title>Apple Notifies Users of Mercenary Spyware Attacks</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-14-belgium-eid-browser-extension-rce/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T02:00:00.000Z</news:publication_date>
      <news:title>Belgium eID Browser Extension Bugs Enable RCE</news:title>
      <news:keywords>Belgium, eID, browser extension, RCE, authentication, national identity, trust framework</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-14-belgium-eid-browser-extension-rce/cover.jpg</image:loc>
      <image:title>Belgium eID Browser Extension Bugs Enable RCE</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-legacyhive-windows-zero-day-patch/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-14T00:00:00.000Z</news:publication_date>
      <news:title>Microsoft Patches LegacyHive Windows Zero-Day</news:title>
      <news:keywords>legacyhive, microsoft, windows, zero-day, patch, registry, windows-security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-legacyhive-windows-zero-day-patch/cover.jpg</image:loc>
      <image:title>Microsoft Patches LegacyHive Windows Zero-Day</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-akira-edr-safe-mode-bypass-data-theft/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T22:00:00.000Z</news:publication_date>
      <news:title>Akira Disables EDR via Safe Mode Reboot, Steals Data</news:title>
      <news:keywords>akira, ransomware, edr-bypass, safe-mode, exfiltration, endpoint-detection, ttps</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-akira-edr-safe-mode-bypass-data-theft/cover.jpg</image:loc>
      <image:title>Akira Disables EDR via Safe Mode Reboot, Steals Data</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-vcenter-cve-2026-59310-reverse-ssh-persistence/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T20:00:00.000Z</news:publication_date>
      <news:title>VMware vCenter Exploit Deploys Reverse SSH Backdoor</news:title>
      <news:keywords>vmware, vcenter, CVE-2026-59310, reverse ssh, persistence, active exploitation, broadcom</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-vcenter-cve-2026-59310-reverse-ssh-persistence/cover.jpg</image:loc>
      <image:title>VMware vCenter Exploit Deploys Reverse SSH Backdoor</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-mirai-variant-encrypted-c2-credential-sniffer/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T18:00:00.000Z</news:publication_date>
      <news:title>New Mirai Variant Adds Encrypted C2 and Credential Sniffer</news:title>
      <news:keywords>mirai, botnet, iot, encrypted-c2, default-credentials, malware, threat-intel</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-mirai-variant-encrypted-c2-credential-sniffer/cover.jpg</image:loc>
      <image:title>New Mirai Variant Adds Encrypted C2 and Credential Sniffer</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-trezor-shipmonk-breach-14k-customers/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T16:00:00.000Z</news:publication_date>
      <news:title>Trezor Breach: 14,000 Customers Exposed via ShipMonk Hack</news:title>
      <news:keywords>trezor, shipmonk, data breach, hardware wallet, supply chain, third-party risk, cryptocurrency</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-trezor-shipmonk-breach-14k-customers/cover.jpg</image:loc>
      <image:title>Trezor Breach: 14,000 Customers Exposed via ShipMonk Hack</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-white-house-hack-back-private-firms-ncc/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T14:00:00.000Z</news:publication_date>
      <news:title>White House Opens Hack-Back Program to Private Firms</news:title>
      <news:keywords>hack-back, offensive cyber, White House, NCC, cybercrime, private sector, Trump</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-white-house-hack-back-private-firms-ncc/cover.jpg</image:loc>
      <image:title>White House Opens Hack-Back Program to Private Firms</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-jewelbug-apt-espionage-crypto-dual-ops/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T12:00:00.000Z</news:publication_date>
      <news:title>Jewelbug APT Merges Espionage and Crypto Fraud</news:title>
      <news:keywords>jewelbug, apt, china, espionage, cryptocurrency, threat-intel, hackers-for-hire</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-jewelbug-apt-espionage-crypto-dual-ops/cover.jpg</image:loc>
      <image:title>Jewelbug APT Merges Espionage and Crypto Fraud</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-fortinet-fortiweb-fortimanager-aug-patches/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T10:00:00.000Z</news:publication_date>
      <news:title>Fortinet Patches Critical FortiWeb Auth Bypass, CVSS 9.8</news:title>
      <news:keywords>Fortinet, FortiWeb, FortiManager, CVE-2026-26035, CVE-2026-70468, authentication bypass, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-fortinet-fortiweb-fortimanager-aug-patches/cover.jpg</image:loc>
      <image:title>Fortinet Patches Critical FortiWeb Auth Bypass, CVSS 9.8</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-sharepoint-cve-2026-55040-active-exploitation-poc/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T08:00:00.000Z</news:publication_date>
      <news:title>SharePoint CVE-2026-55040 Exploited After PoC Drop</news:title>
      <news:keywords>sharepoint, cve-2026-55040, authentication-bypass, rapid7, active-exploitation, poc, microsoft</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-sharepoint-cve-2026-55040-active-exploitation-poc/cover.jpg</image:loc>
      <image:title>SharePoint CVE-2026-55040 Exploited After PoC Drop</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-ics-patch-tuesday-siemens-schneider-phoenix-contact/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T06:00:00.000Z</news:publication_date>
      <news:title>ICS Patch Tuesday: Siemens, Schneider, Phoenix Contact</news:title>
      <news:keywords>ICS, OT, Patch Tuesday, Siemens, Schneider Electric, Phoenix Contact, CISA, industrial control systems</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-ics-patch-tuesday-siemens-schneider-phoenix-contact/cover.jpg</image:loc>
      <image:title>ICS Patch Tuesday: Siemens, Schneider, Phoenix Contact</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-13-android-windrelay-spynote-nfc-relay-fraud/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T04:30:00.000Z</news:publication_date>
      <news:title>Android Malware Relays NFC Cards, Takes Out Loans</news:title>
      <news:keywords>windrelay, spynote, android, nfc relay, mobile malware, financial fraud</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-13-android-windrelay-spynote-nfc-relay-fraud/cover.jpg</image:loc>
      <image:title>Android Malware Relays NFC Cards, Takes Out Loans</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-12-city-forum-salesforce-servicenow-data-theft/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-13T00:00:00.000Z</news:publication_date>
      <news:title>City-Forum Campaign Targets Salesforce, ServiceNow</news:title>
      <news:keywords>City-Forum, Salesforce, ServiceNow, data theft, anonymous access, misconfiguration, enterprise portals</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-12-city-forum-salesforce-servicenow-data-theft/cover.jpg</image:loc>
      <image:title>City-Forum Campaign Targets Salesforce, ServiceNow</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-12-colombia-justice-ministry-ransomware/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-12T22:30:00.000Z</news:publication_date>
      <news:title>Colombia Justice Ministry Hit With Ransomware</news:title>
      <news:keywords>ransomware, Colombia, government, Latin America, critical infrastructure, Ministry of Justice, breach</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-12-colombia-justice-ministry-ransomware/cover.jpg</image:loc>
      <image:title>Colombia Justice Ministry Hit With Ransomware</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-12-adobe-commerce-cve-2026-71362-active-exploit/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-12T22:00:00.000Z</news:publication_date>
      <news:title>Attackers Exploiting Critical Adobe Commerce Flaw</news:title>
      <news:keywords>CVE-2026-71362, Adobe Commerce, Magento, account hijacking, active exploitation, incorrect authorization, e-commerce security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-12-adobe-commerce-cve-2026-71362-active-exploit/cover.jpg</image:loc>
      <image:title>Attackers Exploiting Critical Adobe Commerce Flaw</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-12-chrome-vpn-extensions-proxy-hijack/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-12T20:00:00.000Z</news:publication_date>
      <news:title>737 Fake Chrome VPN Extensions Route Traffic via Proxies</news:title>
      <news:keywords>chrome, browser extensions, vpn, proxy, socks5, traffic interception, supply chain</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-12-chrome-vpn-extensions-proxy-hijack/cover.jpg</image:loc>
      <image:title>737 Fake Chrome VPN Extensions Route Traffic via Proxies</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-12-lazarus-cve-2026-68820-operation-dream-job-cisa-kev/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-12T18:30:00.000Z</news:publication_date>
      <news:title>Lazarus Targeted Defense Firms via Windows Zero-Day</news:title>
      <news:keywords>CVE-2026-68820, Lazarus, DPRK, Operation Dream Job, ForestTiger, Windows zero-day, CISA KEV</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-12-lazarus-cve-2026-68820-operation-dream-job-cisa-kev/cover.jpg</image:loc>
      <image:title>Lazarus Targeted Defense Firms via Windows Zero-Day</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-08-12-shieldbreak-defender-cve-2026-50656-patch-bypass/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-12T17:00:00.000Z</news:publication_date>
      <news:title>ShieldBreak: Defender Patch Bypass PoC Published</news:title>
      <news:keywords>shieldbreak, microsoft defender, cve-2026-50656, roguplanet, zero-day, poc, privilege escalation</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-08-12-shieldbreak-defender-cve-2026-50656-patch-bypass/cover.jpg</image:loc>
      <image:title>ShieldBreak: Defender Patch Bypass PoC Published</image:title>
    </image:image>
  </url>
</urlset>