<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-ctm360-aitm-insurance-phishing-real-time-mfa/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T17:00:00.000Z</news:publication_date>
      <news:title>Insurance Sector Phishing Has Evolved to Real-Time AiTM</news:title>
      <news:keywords>phishing, AiTM, MFA bypass, account takeover, insurance, adversary-in-the-middle, session hijacking</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-ctm360-aitm-insurance-phishing-real-time-mfa/cover.jpg</image:loc>
      <image:title>Insurance Sector Phishing Has Evolved to Real-Time AiTM</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-shinyhunters-breach-data-sextortion-2000-bitcoin/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T15:30:00.000Z</news:publication_date>
      <news:title>ShinyHunters Breach Data Now Fueling Sextortion Emails</news:title>
      <news:keywords>shinyhunters, sextortion, bitcoin, data breach, extortion, email scam</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-shinyhunters-breach-data-sextortion-2000-bitcoin/cover.jpg</image:loc>
      <image:title>ShinyHunters Breach Data Now Fueling Sextortion Emails</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-malvertising-javascript-in-memory-malware/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T15:21:09.000Z</news:publication_date>
      <news:title>JS Malvertising Assembles Malware in Browser Memory</news:title>
      <news:keywords>malvertising, in-memory malware, fileless malware, JavaScript, browser security, Solana, TradingView</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-malvertising-javascript-in-memory-malware/cover.jpg</image:loc>
      <image:title>JS Malvertising Assembles Malware in Browser Memory</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-fastjson-1x-cve-2026-16723-rce-no-patch/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T14:00:00.000Z</news:publication_date>
      <news:title>Fastjson 1.x RCE Exploited: No Patch Available</news:title>
      <news:keywords>fastjson, CVE-2026-16723, RCE, Spring Boot, Java, deserialization, unauthenticated</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-fastjson-1x-cve-2026-16723-rce-no-patch/cover.jpg</image:loc>
      <image:title>Fastjson 1.x RCE Exploited: No Patch Available</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-devman-raas-funky-mantis-affiliate-portal/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T13:05:00.000Z</news:publication_date>
      <news:title>DevMan RaaS Offers Affiliates Centralized Build Portal</news:title>
      <news:keywords>ransomware, RaaS, DevMan, PRODAFT, Funky Mantis, affiliate, malware-as-a-service</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-devman-raas-funky-mantis-affiliate-portal/cover.jpg</image:loc>
      <image:title>DevMan RaaS Offers Affiliates Centralized Build Portal</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-gitlab-18-11-3-rce-poc-published/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T10:00:00.000Z</news:publication_date>
      <news:title>GitLab RCE PoC Published: No Admin Rights Required</news:title>
      <news:keywords>GitLab, RCE, remote code execution, PoC, Jupyter notebook, depthfirst, self-managed GitLab</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-gitlab-18-11-3-rce-poc-published/cover.jpg</image:loc>
      <image:title>GitLab RCE PoC Published: No Admin Rights Required</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-clop-targets-ptc-windchill-flexplm-data-theft/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T09:00:00.000Z</news:publication_date>
      <news:title>Clop Hits Windchill and FlexPLM in Data-Theft Push</news:title>
      <news:keywords>Clop, PTC Windchill, FlexPLM, ransomware, data theft, extortion, PLM</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-clop-targets-ptc-windchill-flexplm-data-theft/cover.jpg</image:loc>
      <image:title>Clop Hits Windchill and FlexPLM in Data-Theft Push</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-ai-agents-attacker-auditor-attack-surface/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T08:00:00.000Z</news:publication_date>
      <news:title>AI Agents: Attacker, Auditor, and Attack Surface</news:title>
      <news:keywords>ai agents, autonomous agents, ai security, redis, nodebb, hermes, kimi k3</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-ai-agents-attacker-auditor-attack-surface/cover.jpg</image:loc>
      <image:title>AI Agents: Attacker, Auditor, and Attack Surface</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-25-q2-2026-cvss-epss-patching-gap-talos/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T05:00:00.000Z</news:publication_date>
      <news:title>200 CVEs a Day: Why CVSS Scores Mislead Defenders</news:title>
      <news:keywords>patching prioritization, CVSS, EPSS, KEV, vulnerability management, CVE growth, Q2 2026</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-25-q2-2026-cvss-epss-patching-gap-talos/cover.jpg</image:loc>
      <image:title>200 CVEs a Day: Why CVSS Scores Mislead Defenders</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-microsoft-365-outage-maintenance-bug-root-cause/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-25T01:00:00.000Z</news:publication_date>
      <news:title>M365 Outage: Automation Bug Pulled Too Many IP Routes</news:title>
      <news:keywords>Microsoft 365, outage, Azure, automation bug, IP routing, network maintenance, Teams outage</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-microsoft-365-outage-maintenance-bug-root-cause/cover.jpg</image:loc>
      <image:title>M365 Outage: Automation Bug Pulled Too Many IP Routes</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-snapchat-hacker-illinois-76-months/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T23:00:00.000Z</news:publication_date>
      <news:title>76 Months for Hacking 750 Women&apos;s Snapchat Accounts</news:title>
      <news:keywords>Snapchat, account compromise, credential theft, sentencing, enforcement, intimate images, cybercrime</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-snapchat-hacker-illinois-76-months/cover.jpg</image:loc>
      <image:title>76 Months for Hacking 750 Women&apos;s Snapchat Accounts</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-chick-fil-a-credential-stuffing-13000-accounts/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T22:00:00.000Z</news:publication_date>
      <news:title>Chick-fil-A Breach: Credential Stuffing Hits 13,000 Accounts</news:title>
      <news:keywords>credential stuffing, data breach, Chick-fil-A, account takeover, customer data, PII</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-chick-fil-a-credential-stuffing-13000-accounts/cover.jpg</image:loc>
      <image:title>Chick-fil-A Breach: Credential Stuffing Hits 13,000 Accounts</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-ontrac-network-breach-customer-pii-notification/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T21:00:00.000Z</news:publication_date>
      <news:title>OnTrac Confirms Network Breach, Notifies Customers</news:title>
      <news:keywords>ontrac, data-breach, network-hack, customer-data, pii, phishing</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-ontrac-network-breach-customer-pii-notification/cover.jpg</image:loc>
      <image:title>OnTrac Confirms Network Breach, Notifies Customers</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-europol-the-com-operation-compass-4340-urls/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T20:30:00.000Z</news:publication_date>
      <news:title>Europol Flags 4,340 URLs in The Com Network Crackdown</news:title>
      <news:keywords>The Com, Europol, Operation Compass, Cyber Com, ransomware, social engineering, law enforcement</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-europol-the-com-operation-compass-4340-urls/cover.jpg</image:loc>
      <image:title>Europol Flags 4,340 URLs in The Com Network Crackdown</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-ai-agents-least-privilege-gap-kilobaud/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T20:00:00.000Z</news:publication_date>
      <news:title>AI Agents Are Outrunning Their Permission Guardrails</news:title>
      <news:keywords>ai agents, least privilege, machine identity, agentic ai, identity security, zero trust</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-ai-agents-least-privilege-gap-kilobaud/cover.jpg</image:loc>
      <image:title>AI Agents Are Outrunning Their Permission Guardrails</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-hotel-wifi-dns-hijack-microsoft-365/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T19:00:00.000Z</news:publication_date>
      <news:title>Hotel Wi-Fi DNS Hijacked to Steal Microsoft 365 Accounts</news:title>
      <news:keywords>APT28, DNS hijacking, hotel Wi-Fi, Microsoft 365, device-code authentication, phishing, threat intel</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-hotel-wifi-dns-hijack-microsoft-365/cover.jpg</image:loc>
      <image:title>Hotel Wi-Fi DNS Hijacked to Steal Microsoft 365 Accounts</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-slopsquatting-hallusquatting-ai-hallucination-supply-chain/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T18:05:00.000Z</news:publication_date>
      <news:title>Slopsquatting and HalluSquatting Are the Same Problem</news:title>
      <news:keywords>slopsquatting, hallusquatting, AI coding agents, supply chain, package hallucination, dependency management, LLM security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-slopsquatting-hallusquatting-ai-hallucination-supply-chain/cover.jpg</image:loc>
      <image:title>Slopsquatting and HalluSquatting Are the Same Problem</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-bluenoroff-zoom-teams-crypto-wallet-phishing/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T17:00:00.000Z</news:publication_date>
      <news:title>BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets</news:title>
      <news:keywords>BlueNoroff, Lazarus Group, phishing kit, crypto theft, ClickFix, North Korea APT, social engineering</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-bluenoroff-zoom-teams-crypto-wallet-phishing/cover.jpg</image:loc>
      <image:title>BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-openai-chatgpt-agentforger-phishing-workspace-agents/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T15:00:00.000Z</news:publication_date>
      <news:title>OpenAI Fixes Bug That Let Phishing Forge Workspace AI Agents</news:title>
      <news:keywords>ChatGPT, OpenAI, AI agents, phishing, enterprise security, AgentForger, workspace security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-openai-chatgpt-agentforger-phishing-workspace-agents/cover.jpg</image:loc>
      <image:title>OpenAI Fixes Bug That Let Phishing Forge Workspace AI Agents</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-certighost-ad-dc-certificate-dcsync/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T14:20:00.000Z</news:publication_date>
      <news:title>Certighost: Low-Priv AD Users Can Impersonate DCs</news:title>
      <news:keywords>certighost, active directory, domain controller, dcsync, krbtgt, privilege escalation, active directory certificate services</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-certighost-ad-dc-certificate-dcsync/cover.jpg</image:loc>
      <image:title>Certighost: Low-Priv AD Users Can Impersonate DCs</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-bing-svg-cve-2026-32194-system-rce-xbow/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T14:00:00.000Z</news:publication_date>
      <news:title>Bing SVG Flaw Ran Code as SYSTEM on Microsoft Servers</news:title>
      <news:keywords>Bing Images, SVG injection, CVE-2026-32194, Microsoft, XBOW, server-side processing, image processing, SYSTEM privilege</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-bing-svg-cve-2026-32194-system-rce-xbow/cover.jpg</image:loc>
      <image:title>Bing SVG Flaw Ran Code as SYSTEM on Microsoft Servers</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-golden-chickens-four-new-malware-families/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T13:00:00.000Z</news:publication_date>
      <news:title>Golden Chickens Resurfaces: Four New Families, Same MaaS</news:title>
      <news:keywords>golden-chickens, venom-spider, MaaS, TinyEgg, ChonkyChicken, malware, threat-intel</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-golden-chickens-four-new-malware-families/cover.jpg</image:loc>
      <image:title>Golden Chickens Resurfaces: Four New Families, Same MaaS</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-hermes-ai-agent-thai-finance-ministry/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T12:00:00.000Z</news:publication_date>
      <news:title>AI Agent Ran Unattended in Thailand&apos;s Finance Ministry</news:title>
      <news:keywords>Hermes AI agent, post-exploitation, autonomous agent, Thailand Finance Ministry, agentic security, threat intel</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-hermes-ai-agent-thai-finance-ministry/cover.jpg</image:loc>
      <image:title>AI Agent Ran Unattended in Thailand&apos;s Finance Ministry</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-nodebb-eight-ai-found-flaws-admin-access/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T11:30:00.000Z</news:publication_date>
      <news:title>NodeBB Patches Eight AI-Found High-Severity Flaws</news:title>
      <news:keywords>NodeBB, Aikido Security, AI pentesting, forum software, patch, high severity, admin access</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-nodebb-eight-ai-found-flaws-admin-access/cover.jpg</image:loc>
      <image:title>NodeBB Patches Eight AI-Found High-Severity Flaws</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-kimi-k3-redis-zero-days-rce-patches/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T10:00:00.000Z</news:publication_date>
      <news:title>AI Agents Uncover Redis Zero-Days, Seven Patches Ship</news:title>
      <news:keywords>Redis, zero-day, RCE, AI security research, memory safety, open source, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-kimi-k3-redis-zero-days-rce-patches/cover.jpg</image:loc>
      <image:title>AI Agents Uncover Redis Zero-Days, Seven Patches Ship</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-clop-windchill-flexplm-cve-2026-12569-data-theft/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T09:00:00.000Z</news:publication_date>
      <news:title>Clop Data Theft Campaign Hits PTC Windchill, FlexPLM</news:title>
      <news:keywords>Clop, PTC Windchill, FlexPLM, CVE-2026-12569, ransomware, data theft, extortion</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-clop-windchill-flexplm-cve-2026-12569-data-theft/cover.jpg</image:loc>
      <image:title>Clop Data Theft Campaign Hits PTC Windchill, FlexPLM</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-uac-0099-matchboil-v2-notepad-plugin-fuse/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T08:00:00.000Z</news:publication_date>
      <news:title>Russia-Linked UAC-0099 Behind Notepad++ Malware Push</news:title>
      <news:keywords>UAC-0099, MATCHBOIL.V2, Notepad++, CERT-UA, Russia APT, malware</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-uac-0099-matchboil-v2-notepad-plugin-fuse/cover.jpg</image:loc>
      <image:title>Russia-Linked UAC-0099 Behind Notepad++ Malware Push</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-24-microsoft-365-outage-teams-sharepoint-admin-center/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T07:00:00.000Z</news:publication_date>
      <news:title>M365 Outage Drops Teams, SharePoint, Admin Center</news:title>
      <news:keywords>Microsoft 365, outage, Teams, SharePoint, M365 Admin Center, security operations, service disruption</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-24-microsoft-365-outage-teams-sharepoint-admin-center/cover.jpg</image:loc>
      <image:title>M365 Outage Drops Teams, SharePoint, Admin Center</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-synthetic-identity-fraud-machine-credentials/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-24T01:05:00.000Z</news:publication_date>
      <news:title>Synthetic Identity Fraud Comes for Machine Credentials</news:title>
      <news:keywords>synthetic-identity, machine-identity, API-keys, service-accounts, identity-fraud, IAM, cloud-security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-synthetic-identity-fraud-machine-credentials/cover.jpg</image:loc>
      <image:title>Synthetic Identity Fraud Comes for Machine Credentials</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-ai-both-weapon-and-attack-surface/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T23:58:00.000Z</news:publication_date>
      <news:title>AI Is Now Both Attack Tool and Attack Surface</news:title>
      <news:keywords>AI security, threat intelligence, Dolphin X RAT, SectopRAT, sandbox escape, AI agent, malware</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-ai-both-weapon-and-attack-surface/cover.jpg</image:loc>
      <image:title>AI Is Now Both Attack Tool and Attack Surface</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-confluence-cve-2023-22515-three-years-kilobaud/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T23:00:00.000Z</news:publication_date>
      <news:title>CVE-2023-22515: Three Years of Confluence Exploitation</news:title>
      <news:keywords>Atlassian, Confluence, CVE-2023-22515, broken access control, EPSS, KEV, patch management, ransomware precursor</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-confluence-cve-2023-22515-three-years-kilobaud/cover.jpg</image:loc>
      <image:title>CVE-2023-22515: Three Years of Confluence Exploitation</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-dolphin-x-rat-ai-victim-profiling/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T22:00:00.000Z</news:publication_date>
      <news:title>Dolphin X RAT Uses AI to Score High-Value Targets</news:title>
      <news:keywords>dolphin-x, RAT, remote-access-trojan, AI-profiling, malware, threat-intel, victim-targeting</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-dolphin-x-rat-ai-victim-profiling/cover.jpg</image:loc>
      <image:title>Dolphin X RAT Uses AI to Score High-Value Targets</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-fake-claude-sectoprat-bing-malvertising-loop/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T22:00:00.000Z</news:publication_date>
      <news:title>Fake Claude Installer in Bing Ads Drops SectopRAT</news:title>
      <news:keywords>malvertising, SectopRAT, ArechClient2, Bing ads, Claude, RAT, infostealer</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-fake-claude-sectoprat-bing-malvertising-loop/cover.jpg</image:loc>
      <image:title>Fake Claude Installer in Bing Ads Drops SectopRAT</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-openai-huggingface-eval-production-kilobaud/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T22:00:00.000Z</news:publication_date>
      <news:title>OpenAI Eval Reached HuggingFace Production</news:title>
      <news:keywords>AI security, agentic AI, OpenAI, HuggingFace, model evaluation, AI containment, frontier AI</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-openai-huggingface-eval-production-kilobaud/cover.jpg</image:loc>
      <image:title>OpenAI Eval Reached HuggingFace Production</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-origin-energy-data-breach-pii-exposed/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T21:00:00.000Z</news:publication_date>
      <news:title>Origin Energy Confirms Customer Data Breach</news:title>
      <news:keywords>Origin Energy, data breach, PII, Australia, energy sector, customer data</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-origin-energy-data-breach-pii-exposed/cover.jpg</image:loc>
      <image:title>Origin Energy Confirms Customer Data Breach</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-talos-q2-2026-dont-swing-patch-prioritization/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T20:00:00.000Z</news:publication_date>
      <news:title>Q2 2026 Vuln Stats: You Can&apos;t Patch Everything</news:title>
      <news:keywords>patch-management, vulnerability-prioritization, EPSS, KEV, Talos, CVE-statistics, threat-intelligence</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-talos-q2-2026-dont-swing-patch-prioritization/cover.jpg</image:loc>
      <image:title>Q2 2026 Vuln Stats: You Can&apos;t Patch Everything</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-23-lunchpoke-certua-notepad-plugin-persistence-fuse/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T19:00:00.000Z</news:publication_date>
      <news:title>CERT-UA: LunchPoke Malware Hides in Notepad++ Plugin</news:title>
      <news:keywords>Notepad++, LunchPoke, CERT-UA, malware, persistence, plugin, Ukraine</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-23-lunchpoke-certua-notepad-plugin-persistence-fuse/cover.jpg</image:loc>
      <image:title>CERT-UA: LunchPoke Malware Hides in Notepad++ Plugin</image:title>
    </image:image>
  </url>
</urlset>