<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-snapchat-hacker-illinois-76-months/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T23:00:00.000Z</news:publication_date>
      <news:title>76 Months for Hacking 750 Women&apos;s Snapchat Accounts</news:title>
      <news:keywords>Snapchat, account compromise, credential theft, sentencing, enforcement, intimate images, cybercrime</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-snapchat-hacker-illinois-76-months/cover.jpg</image:loc>
      <image:title>76 Months for Hacking 750 Women&apos;s Snapchat Accounts</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-chick-fil-a-credential-stuffing-13000-accounts/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T22:00:00.000Z</news:publication_date>
      <news:title>Chick-fil-A Breach: Credential Stuffing Hits 13,000 Accounts</news:title>
      <news:keywords>credential stuffing, data breach, Chick-fil-A, account takeover, customer data, PII</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-chick-fil-a-credential-stuffing-13000-accounts/cover.jpg</image:loc>
      <image:title>Chick-fil-A Breach: Credential Stuffing Hits 13,000 Accounts</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-ontrac-network-breach-customer-pii-notification/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T21:00:00.000Z</news:publication_date>
      <news:title>OnTrac Confirms Network Breach, Notifies Customers</news:title>
      <news:keywords>ontrac, data-breach, network-hack, customer-data, pii, phishing</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-ontrac-network-breach-customer-pii-notification/cover.jpg</image:loc>
      <image:title>OnTrac Confirms Network Breach, Notifies Customers</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-europol-the-com-operation-compass-4340-urls/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T20:30:00.000Z</news:publication_date>
      <news:title>Europol Flags 4,340 URLs in The Com Network Crackdown</news:title>
      <news:keywords>The Com, Europol, Operation Compass, Cyber Com, ransomware, social engineering, law enforcement</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-europol-the-com-operation-compass-4340-urls/cover.jpg</image:loc>
      <image:title>Europol Flags 4,340 URLs in The Com Network Crackdown</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-hotel-wifi-dns-hijack-microsoft-365/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T19:00:00.000Z</news:publication_date>
      <news:title>Hotel Wi-Fi DNS Hijacked to Steal Microsoft 365 Accounts</news:title>
      <news:keywords>APT28, DNS hijacking, hotel Wi-Fi, Microsoft 365, device-code authentication, phishing, threat intel</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-hotel-wifi-dns-hijack-microsoft-365/cover.jpg</image:loc>
      <image:title>Hotel Wi-Fi DNS Hijacked to Steal Microsoft 365 Accounts</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-slopsquatting-hallusquatting-ai-hallucination-supply-chain/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T18:05:00.000Z</news:publication_date>
      <news:title>Slopsquatting and HalluSquatting Are the Same Problem</news:title>
      <news:keywords>slopsquatting, hallusquatting, AI coding agents, supply chain, package hallucination, dependency management, LLM security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-slopsquatting-hallusquatting-ai-hallucination-supply-chain/cover.jpg</image:loc>
      <image:title>Slopsquatting and HalluSquatting Are the Same Problem</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-bluenoroff-zoom-teams-crypto-wallet-phishing/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T17:00:00.000Z</news:publication_date>
      <news:title>BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets</news:title>
      <news:keywords>BlueNoroff, Lazarus Group, phishing kit, crypto theft, ClickFix, North Korea APT, social engineering</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-bluenoroff-zoom-teams-crypto-wallet-phishing/cover.jpg</image:loc>
      <image:title>BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-openai-chatgpt-agentforger-phishing-workspace-agents/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T15:00:00.000Z</news:publication_date>
      <news:title>OpenAI Fixes Bug That Let Phishing Forge Workspace AI Agents</news:title>
      <news:keywords>ChatGPT, OpenAI, AI agents, phishing, enterprise security, AgentForger, workspace security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-openai-chatgpt-agentforger-phishing-workspace-agents/cover.jpg</image:loc>
      <image:title>OpenAI Fixes Bug That Let Phishing Forge Workspace AI Agents</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-certighost-ad-dc-certificate-dcsync/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T14:20:00.000Z</news:publication_date>
      <news:title>Certighost: Low-Priv AD Users Can Impersonate DCs</news:title>
      <news:keywords>certighost, active directory, domain controller, dcsync, krbtgt, privilege escalation, active directory certificate services</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-certighost-ad-dc-certificate-dcsync/cover.jpg</image:loc>
      <image:title>Certighost: Low-Priv AD Users Can Impersonate DCs</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-bing-svg-cve-2026-32194-system-rce-xbow/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T14:00:00.000Z</news:publication_date>
      <news:title>Bing SVG Flaw Ran Code as SYSTEM on Microsoft Servers</news:title>
      <news:keywords>Bing Images, SVG injection, CVE-2026-32194, Microsoft, XBOW, server-side processing, image processing, SYSTEM privilege</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-bing-svg-cve-2026-32194-system-rce-xbow/cover.jpg</image:loc>
      <image:title>Bing SVG Flaw Ran Code as SYSTEM on Microsoft Servers</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-golden-chickens-four-new-malware-families/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T13:00:00.000Z</news:publication_date>
      <news:title>Golden Chickens Resurfaces: Four New Families, Same MaaS</news:title>
      <news:keywords>golden-chickens, venom-spider, MaaS, TinyEgg, ChonkyChicken, malware, threat-intel</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-golden-chickens-four-new-malware-families/cover.jpg</image:loc>
      <image:title>Golden Chickens Resurfaces: Four New Families, Same MaaS</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-hermes-ai-agent-thai-finance-ministry/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T12:00:00.000Z</news:publication_date>
      <news:title>AI Agent Ran Unattended in Thailand&apos;s Finance Ministry</news:title>
      <news:keywords>Hermes AI agent, post-exploitation, autonomous agent, Thailand Finance Ministry, agentic security, threat intel</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-hermes-ai-agent-thai-finance-ministry/cover.jpg</image:loc>
      <image:title>AI Agent Ran Unattended in Thailand&apos;s Finance Ministry</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-nodebb-eight-ai-found-flaws-admin-access/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T11:30:00.000Z</news:publication_date>
      <news:title>NodeBB Patches Eight AI-Found High-Severity Flaws</news:title>
      <news:keywords>NodeBB, Aikido Security, AI pentesting, forum software, patch, high severity, admin access</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-nodebb-eight-ai-found-flaws-admin-access/cover.jpg</image:loc>
      <image:title>NodeBB Patches Eight AI-Found High-Severity Flaws</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-kimi-k3-redis-zero-days-rce-patches/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T10:00:00.000Z</news:publication_date>
      <news:title>AI Agents Uncover Redis Zero-Days, Seven Patches Ship</news:title>
      <news:keywords>Redis, zero-day, RCE, AI security research, memory safety, open source, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-kimi-k3-redis-zero-days-rce-patches/cover.jpg</image:loc>
      <image:title>AI Agents Uncover Redis Zero-Days, Seven Patches Ship</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-clop-windchill-flexplm-cve-2026-12569-data-theft/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T09:00:00.000Z</news:publication_date>
      <news:title>Clop Data Theft Campaign Hits PTC Windchill, FlexPLM</news:title>
      <news:keywords>Clop, PTC Windchill, FlexPLM, CVE-2026-12569, ransomware, data theft, extortion</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-clop-windchill-flexplm-cve-2026-12569-data-theft/cover.jpg</image:loc>
      <image:title>Clop Data Theft Campaign Hits PTC Windchill, FlexPLM</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-uac-0099-matchboil-v2-notepad-plugin-fuse/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T08:00:00.000Z</news:publication_date>
      <news:title>Russia-Linked UAC-0099 Behind Notepad++ Malware Push</news:title>
      <news:keywords>UAC-0099, MATCHBOIL.V2, Notepad++, CERT-UA, Russia APT, malware</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-uac-0099-matchboil-v2-notepad-plugin-fuse/cover.jpg</image:loc>
      <image:title>Russia-Linked UAC-0099 Behind Notepad++ Malware Push</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-microsoft-365-outage-teams-sharepoint-admin-center/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T07:00:00.000Z</news:publication_date>
      <news:title>M365 Outage Drops Teams, SharePoint, Admin Center</news:title>
      <news:keywords>Microsoft 365, outage, Teams, SharePoint, M365 Admin Center, security operations, service disruption</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-microsoft-365-outage-teams-sharepoint-admin-center/cover.jpg</image:loc>
      <image:title>M365 Outage Drops Teams, SharePoint, Admin Center</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-synthetic-identity-fraud-machine-credentials/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T01:05:00.000Z</news:publication_date>
      <news:title>Synthetic Identity Fraud Comes for Machine Credentials</news:title>
      <news:keywords>synthetic-identity, machine-identity, API-keys, service-accounts, identity-fraud, IAM, cloud-security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-synthetic-identity-fraud-machine-credentials/cover.jpg</image:loc>
      <image:title>Synthetic Identity Fraud Comes for Machine Credentials</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-ai-both-weapon-and-attack-surface/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T23:58:00.000Z</news:publication_date>
      <news:title>AI Is Now Both Attack Tool and Attack Surface</news:title>
      <news:keywords>AI security, threat intelligence, Dolphin X RAT, SectopRAT, sandbox escape, AI agent, malware</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-ai-both-weapon-and-attack-surface/cover.jpg</image:loc>
      <image:title>AI Is Now Both Attack Tool and Attack Surface</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-confluence-cve-2023-22515-three-years-kilobaud/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T23:00:00.000Z</news:publication_date>
      <news:title>CVE-2023-22515: Three Years of Confluence Exploitation</news:title>
      <news:keywords>Atlassian, Confluence, CVE-2023-22515, broken access control, EPSS, KEV, patch management, ransomware precursor</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-confluence-cve-2023-22515-three-years-kilobaud/cover.jpg</image:loc>
      <image:title>CVE-2023-22515: Three Years of Confluence Exploitation</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-dolphin-x-rat-ai-victim-profiling/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T22:00:00.000Z</news:publication_date>
      <news:title>Dolphin X RAT Uses AI to Score High-Value Targets</news:title>
      <news:keywords>dolphin-x, RAT, remote-access-trojan, AI-profiling, malware, threat-intel, victim-targeting</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-dolphin-x-rat-ai-victim-profiling/cover.jpg</image:loc>
      <image:title>Dolphin X RAT Uses AI to Score High-Value Targets</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-fake-claude-sectoprat-bing-malvertising-loop/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T22:00:00.000Z</news:publication_date>
      <news:title>Fake Claude Installer in Bing Ads Drops SectopRAT</news:title>
      <news:keywords>malvertising, SectopRAT, ArechClient2, Bing ads, Claude, RAT, infostealer</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-fake-claude-sectoprat-bing-malvertising-loop/cover.jpg</image:loc>
      <image:title>Fake Claude Installer in Bing Ads Drops SectopRAT</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-openai-huggingface-eval-production-kilobaud/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T22:00:00.000Z</news:publication_date>
      <news:title>OpenAI Eval Reached HuggingFace Production</news:title>
      <news:keywords>AI security, agentic AI, OpenAI, HuggingFace, model evaluation, AI containment, frontier AI</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-openai-huggingface-eval-production-kilobaud/cover.jpg</image:loc>
      <image:title>OpenAI Eval Reached HuggingFace Production</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-origin-energy-data-breach-pii-exposed/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T21:00:00.000Z</news:publication_date>
      <news:title>Origin Energy Confirms Customer Data Breach</news:title>
      <news:keywords>Origin Energy, data breach, PII, Australia, energy sector, customer data</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-origin-energy-data-breach-pii-exposed/cover.jpg</image:loc>
      <image:title>Origin Energy Confirms Customer Data Breach</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-talos-q2-2026-dont-swing-patch-prioritization/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T20:00:00.000Z</news:publication_date>
      <news:title>Q2 2026 Vuln Stats: You Can&apos;t Patch Everything</news:title>
      <news:keywords>patch-management, vulnerability-prioritization, EPSS, KEV, Talos, CVE-statistics, threat-intelligence</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-talos-q2-2026-dont-swing-patch-prioritization/cover.jpg</image:loc>
      <image:title>Q2 2026 Vuln Stats: You Can&apos;t Patch Everything</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-lunchpoke-certua-notepad-plugin-persistence-fuse/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T19:00:00.000Z</news:publication_date>
      <news:title>CERT-UA: LunchPoke Malware Hides in Notepad++ Plugin</news:title>
      <news:keywords>Notepad++, LunchPoke, CERT-UA, malware, persistence, plugin, Ukraine</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-lunchpoke-certua-notepad-plugin-persistence-fuse/cover.jpg</image:loc>
      <image:title>CERT-UA: LunchPoke Malware Hides in Notepad++ Plugin</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-void-blizzard-zimbra-zero-click-email-theft-airgap/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T18:00:00.000Z</news:publication_date>
      <news:title>Void Blizzard Exploits Zimbra Flaw for Email Theft</news:title>
      <news:keywords>Void Blizzard, Laundry Bear, Zimbra, email theft, CISA, state-sponsored, Russia</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-void-blizzard-zimbra-zero-click-email-theft-airgap/cover.jpg</image:loc>
      <image:title>Void Blizzard Exploits Zimbra Flaw for Email Theft</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-jadeprox-triback-loader-group-ib-china-nexus-apt/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T17:00:00.000Z</news:publication_date>
      <news:title>China-Linked JadeProx Deploys TriBack Loader in Gov Attacks</news:title>
      <news:keywords>JadeProx, TriBack Loader, China APT, Group-IB, government, healthcare, threat intelligence, Windows loader</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-jadeprox-triback-loader-group-ib-china-nexus-apt/cover.jpg</image:loc>
      <image:title>China-Linked JadeProx Deploys TriBack Loader in Gov Attacks</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-claude-cowork-vm-escape-mac-files-airgap/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T16:00:00.000Z</news:publication_date>
      <news:title>Claude Cowork VM Escape Reaches Mac Files</news:title>
      <news:keywords>Claude Cowork, VM escape, sandbox escape, Anthropic, Accomplish AI, macOS, AI agent security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-claude-cowork-vm-escape-mac-files-airgap/cover.jpg</image:loc>
      <image:title>Claude Cowork VM Escape Reaches Mac Files</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-fedramp-20x-rev5-transition-continuous-monitoring-loop/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T15:00:00.000Z</news:publication_date>
      <news:title>FedRAMP 20x Ends Point-in-Time Authorization</news:title>
      <news:keywords>FedRAMP, FedRAMP 20x, cloud compliance, continuous monitoring, OSCAL, ATO, federal cloud</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-fedramp-20x-rev5-transition-continuous-monitoring-loop/cover.jpg</image:loc>
      <image:title>FedRAMP 20x Ends Point-in-Time Authorization</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-github-actions-packagist-cpanel-whm-supply-chain/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T13:00:00.000Z</news:publication_date>
      <news:title>Attackers Weaponize GitHub Actions Against cPanel Hosts</news:title>
      <news:keywords>supply chain, GitHub Actions, Packagist, cPanel, WHM, CI/CD abuse, malicious packages</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-github-actions-packagist-cpanel-whm-supply-chain/cover.jpg</image:loc>
      <image:title>Attackers Weaponize GitHub Actions Against cPanel Hosts</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-refluxfs-cve-2026-64600-linux-kernel-lpe-rhel/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T12:00:00.000Z</news:publication_date>
      <news:title>RefluXFS LPE Hits Default RHEL, Fedora, Amazon Linux</news:title>
      <news:keywords>CVE-2026-64600, Linux kernel, XFS, privilege escalation, LPE, RHEL, Qualys</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-refluxfs-cve-2026-64600-linux-kernel-lpe-rhel/cover.jpg</image:loc>
      <image:title>RefluXFS LPE Hits Default RHEL, Fedora, Amazon Linux</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-chaos-ransomware-msarat-browser-c2-webrtc-airgap/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T11:00:00.000Z</news:publication_date>
      <news:title>Chaos Ransomware&apos;s msaRAT Hides C2 in Browser Traffic</news:title>
      <news:keywords>ransomware, msaRAT, Chaos ransomware, browser C2, WebRTC, TURN relay, command-and-control</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-chaos-ransomware-msarat-browser-c2-webrtc-airgap/cover.jpg</image:loc>
      <image:title>Chaos Ransomware&apos;s msaRAT Hides C2 in Browser Traffic</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-exchange-online-mailbox-quarantine-error-airgap/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T10:00:00.000Z</news:publication_date>
      <news:title>Exchange Online Quarantining Mailboxes in Error Since Sunday</news:title>
      <news:keywords>Exchange Online, Microsoft, mailbox quarantine, Microsoft 365, email security, false positive</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-exchange-online-mailbox-quarantine-error-airgap/cover.jpg</image:loc>
      <image:title>Exchange Online Quarantining Mailboxes in Error Since Sunday</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-moveit-cve-2023-34362-three-years-clop-data-breach/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T08:00:00.000Z</news:publication_date>
      <news:title>MOVEit Transfer and the Breach That Defined 2023</news:title>
      <news:keywords>CVE-2023-34362, MOVEit Transfer, Cl0p, SQL injection, data breach, managed file transfer, EPSS</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-moveit-cve-2023-34362-three-years-clop-data-breach/cover.jpg</image:loc>
      <image:title>MOVEit Transfer and the Breach That Defined 2023</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-eclypsium-infratrust-pulse-firmware-patch-priority/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T07:00:00.000Z</news:publication_date>
      <news:title>Eclypsium Launches InfraTrust for Firmware Patch Priority</news:title>
      <news:keywords>firmware security, infrastructure vulnerabilities, patch prioritization, Eclypsium, InfraTrust, edge devices, networking</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-eclypsium-infratrust-pulse-firmware-patch-priority/cover.jpg</image:loc>
      <image:title>Eclypsium Launches InfraTrust for Firmware Patch Priority</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-kratos-phishing-kit-dismantled-microsoft-365-mfa-bypass-fuse/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T05:00:00.000Z</news:publication_date>
      <news:title>Kratos Phishing Kit Dismantled in Global Takedown</news:title>
      <news:keywords>phishing, MFA bypass, Microsoft 365, AiTM, Kratos, law enforcement, session hijacking</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-kratos-phishing-kit-dismantled-microsoft-365-mfa-bypass-fuse/cover.jpg</image:loc>
      <image:title>Kratos Phishing Kit Dismantled in Global Takedown</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-22-n-day-n-hour-patch-window-sharepoint-wp2shell/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T02:00:00.000Z</news:publication_date>
      <news:title>N-Day Is Now N-Hour: The Vanishing Patch Window</news:title>
      <news:keywords>n-day exploitation, patch management, CVE, exploit window, SharePoint, wp2shell, vulnerability response</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-22-n-day-n-hour-patch-window-sharepoint-wp2shell/cover.jpg</image:loc>
      <image:title>N-Day Is Now N-Hour: The Vanishing Patch Window</image:title>
    </image:image>
  </url>
</urlset>