<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-azure-cosmos-db-cosmosescape-cross-tenant/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T20:00:00.000Z</news:publication_date>
      <news:title>Azure CosmosEscape Flaw Exposed Any Tenant&apos;s Database</news:title>
      <news:keywords>azure, cosmos-db, gremlin, sandbox-escape, cross-tenant, cloud-security, wiz</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-azure-cosmos-db-cosmosescape-cross-tenant/cover.jpg</image:loc>
      <image:title>Azure CosmosEscape Flaw Exposed Any Tenant&apos;s Database</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-teams-vishing-chaos-ransomware-north-america/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T19:00:00.000Z</news:publication_date>
      <news:title>Teams IT Vishing Drops Chaos Ransomware on US Firms</news:title>
      <news:keywords>Chaos ransomware, Microsoft Teams, vishing, social engineering, remote access, North America</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-teams-vishing-chaos-ransomware-north-america/cover.jpg</image:loc>
      <image:title>Teams IT Vishing Drops Chaos Ransomware on US Firms</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-shinyhunters-brinks-home-breach/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T18:00:00.000Z</news:publication_date>
      <news:title>Brinks Home Confirms Breach; ShinyHunters Claims Credit</news:title>
      <news:keywords>shinyhunters, data-breach, brinks-home, residential-security, extortion, threat-actor</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-shinyhunters-brinks-home-breach/cover.jpg</image:loc>
      <image:title>Brinks Home Confirms Breach; ShinyHunters Claims Credit</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-analog-devices-data-breach-exfiltration/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T16:05:00.000Z</news:publication_date>
      <news:title>Analog Devices Confirms Breach, Files Exfiltrated</news:title>
      <news:keywords>analog devices, data breach, exfiltration, semiconductor, incident disclosure</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-analog-devices-data-breach-exfiltration/cover.jpg</image:loc>
      <image:title>Analog Devices Confirms Breach, Files Exfiltrated</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-copilot-word-prompt-injection-propagation/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T14:30:00.000Z</news:publication_date>
      <news:title>Copilot Prompt Injection Can Rewrite Docs, Self-Propagate</news:title>
      <news:keywords>microsoft-365, copilot, prompt-injection, word, ai-security, llm-security, data-manipulation</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-copilot-word-prompt-injection-propagation/cover.jpg</image:loc>
      <image:title>Copilot Prompt Injection Can Rewrite Docs, Self-Propagate</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-anysign4pc-korean-watering-hole-signbt-copperhedge/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T13:00:00.000Z</news:publication_date>
      <news:title>AnySign4PC Exploited in Korean Watering Hole Campaign</news:title>
      <news:keywords>AnySign4PC, watering-hole, SIGNBT, COPPERHEDGE, North Korea, Lazarus Group, South Korea</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-anysign4pc-korean-watering-hole-signbt-copperhedge/cover.jpg</image:loc>
      <image:title>AnySign4PC Exploited in Korean Watering Hole Campaign</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-silver-fox-byovd-valleyrat-japan/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T12:00:00.000Z</news:publication_date>
      <news:title>Silver Fox Chains 3 Drivers in New Japan BYOVD Campaign</news:title>
      <news:keywords>silver fox, byovd, valleyrat, winos, japan, kernel driver, chinese cybercrime</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-silver-fox-byovd-valleyrat-japan/cover.jpg</image:loc>
      <image:title>Silver Fox Chains 3 Drivers in New Japan BYOVD Campaign</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-void-blizzard-owa-credential-rotation/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T11:00:00.000Z</news:publication_date>
      <news:title>OWAReaper Backdoor Outlasts Credential Rotation</news:title>
      <news:keywords>OWAReaper, Void Blizzard, Laundry Bear, Exchange OWA, credential rotation, Russia APT, Microsoft</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-void-blizzard-owa-credential-rotation/cover.jpg</image:loc>
      <image:title>OWAReaper Backdoor Outlasts Credential Rotation</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-fcc-covered-list-foreign-robots-power-inverters/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T10:30:00.000Z</news:publication_date>
      <news:title>FCC Bars New Foreign Robots, Power Inverters on Cyber Risk</news:title>
      <news:keywords>FCC, Covered List, mobile robots, power inverters, equipment authorization, supply chain security, national security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-fcc-covered-list-foreign-robots-power-inverters/cover.jpg</image:loc>
      <image:title>FCC Bars New Foreign Robots, Power Inverters on Cyber Risk</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-sapphire-sleet-npm-debug-chalk-north-korea/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T06:30:00.000Z</news:publication_date>
      <news:title>Amazon Ties Sapphire Sleet to npm debug, chalk Hijack</news:title>
      <news:keywords>sapphire-sleet, npm, supply-chain, north-korea, debug, chalk, bluenoroff</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-sapphire-sleet-npm-debug-chalk-north-korea/cover.jpg</image:loc>
      <image:title>Amazon Ties Sapphire Sleet to npm debug, chalk Hijack</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-ir-gap-coordination-not-tools/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T06:00:00.000Z</news:publication_date>
      <news:title>73% Not Ready: The IR Gap Is Coordination, Not Tools</news:title>
      <news:keywords>incident-response, IR-readiness, coordination, CISO, tabletop-exercise, executive-alignment</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-ir-gap-coordination-not-tools/cover.jpg</image:loc>
      <image:title>73% Not Ready: The IR Gap Is Coordination, Not Tools</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-30-claude-mythos-hawk256-aes-cryptanalysis/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T05:00:00.000Z</news:publication_date>
      <news:title>AI Cracks HAWK-256 Post-Quantum Scheme, Speeds AES</news:title>
      <news:keywords>post-quantum cryptography, HAWK-256, AES-128, cryptanalysis, Anthropic, lattice cryptography, AI security research</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-30-claude-mythos-hawk256-aes-cryptanalysis/cover.jpg</image:loc>
      <image:title>AI Cracks HAWK-256 Post-Quantum Scheme, Speeds AES</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-linux-cve-2026-53264-ai-exploit-root/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:00:00.000Z</news:publication_date>
      <news:title>AI Speeds Linux Kernel Exploit: CVE-2026-53264 Local Root</news:title>
      <news:keywords>linux kernel, CVE-2026-53264, local privilege escalation, use-after-free, STAR Labs, AI exploit development, CentOS Stream 9</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-linux-cve-2026-53264-ai-exploit-root/cover.jpg</image:loc>
      <image:title>AI Speeds Linux Kernel Exploit: CVE-2026-53264 Local Root</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-void-blizzard-exchange-owa-owareaper-zero-day/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T23:44:00.000Z</news:publication_date>
      <news:title>Void Blizzard Deploys OWAReaper via Exchange Zero-Day</news:title>
      <news:keywords>Void Blizzard, Laundry Bear, Exchange OWA, OWAReaper, zero-day, Russia APT, mailbox backdoor</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-void-blizzard-exchange-owa-owareaper-zero-day/cover.jpg</image:loc>
      <image:title>Void Blizzard Deploys OWAReaper via Exchange Zero-Day</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-openai-agent-hugging-face-credential-breach/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T23:00:00.000Z</news:publication_date>
      <news:title>OpenAI Agent Used Exposed Creds in Hugging Face Breach</news:title>
      <news:keywords>Hugging Face, OpenAI, AI agents, credential exposure, breach, supply-chain</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-openai-agent-hugging-face-credential-breach/cover.jpg</image:loc>
      <image:title>OpenAI Agent Used Exposed Creds in Hugging Face Breach</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-teamcity-cve-2026-63077-rapid7-agent-protocol/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T23:00:00.000Z</news:publication_date>
      <news:title>TeamCity CVE-2026-63077: Agent Protocol Is the Vector</news:title>
      <news:keywords>CVE-2026-63077, JetBrains, TeamCity, deserialization, RCE, agent polling protocol, Rapid7</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-teamcity-cve-2026-63077-rapid7-agent-protocol/cover.jpg</image:loc>
      <image:title>TeamCity CVE-2026-63077: Agent Protocol Is the Vector</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-f6-russian-clone-sites-advance-payment-fraud/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T22:00:00.000Z</news:publication_date>
      <news:title>F6: Nine-Year Clone Site Campaign Stole B2B Advance Payments</news:title>
      <news:keywords>advance payment fraud, vendor impersonation, lookalike domain, B2B fraud, supply chain fraud, F6, Russia</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-f6-russian-clone-sites-advance-payment-fraud/cover.jpg</image:loc>
      <image:title>F6: Nine-Year Clone Site Campaign Stole B2B Advance Payments</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-cisco-fmc-cve-2026-20316-kev-hardcoded-credential/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T21:00:00.000Z</news:publication_date>
      <news:title>CISA KEV: Cisco FMC Hard-Coded Password Now Exploited</news:title>
      <news:keywords>CVE-2026-20316, Cisco, Firewall Management Center, CISA KEV, hardcoded credential, network security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-cisco-fmc-cve-2026-20316-kev-hardcoded-credential/cover.jpg</image:loc>
      <image:title>CISA KEV: Cisco FMC Hard-Coded Password Now Exploited</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-shinyhunters-health-isac-healthcare-sso-warning/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T19:00:00.000Z</news:publication_date>
      <news:title>ShinyHunters Targets Healthcare SSO, Health-ISAC Warns</news:title>
      <news:keywords>ShinyHunters, healthcare, Health-ISAC, SSO, social engineering, data theft, cloud security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-shinyhunters-health-isac-healthcare-sso-warning/cover.jpg</image:loc>
      <image:title>ShinyHunters Targets Healthcare SSO, Health-ISAC Warns</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-rails-active-storage-critical-file-read/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T18:30:00.000Z</news:publication_date>
      <news:title>Rails Patches Critical File Read via Image Upload</news:title>
      <news:keywords>ruby-on-rails, active-storage, arbitrary-file-read, image-upload, web-framework, patch</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-rails-active-storage-critical-file-read/cover.jpg</image:loc>
      <image:title>Rails Patches Critical File Read via Image Upload</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-broadcom-vmware-vcenter-esx-critical-patches/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T18:00:00.000Z</news:publication_date>
      <news:title>Broadcom Patches Critical VMware Auth Bypass, RCE, VM Escape</news:title>
      <news:keywords>VMware, vCenter, ESXi, authentication-bypass, code-execution, VM-escape, Broadcom</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-broadcom-vmware-vcenter-esx-critical-patches/cover.jpg</image:loc>
      <image:title>Broadcom Patches Critical VMware Auth Bypass, RCE, VM Escape</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-ruflo-mcp-cve-2026-59726-unauthenticated-rce/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T17:00:00.000Z</news:publication_date>
      <news:title>Ruflo MCP Scores Perfect CVSS 10 in Unauthenticated RCE Flaw</news:title>
      <news:keywords>CVE-2026-59726, Ruflo, MCP, unauthenticated RCE, AI agent security, CVSS 10</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-ruflo-mcp-cve-2026-59726-unauthenticated-rce/cover.jpg</image:loc>
      <image:title>Ruflo MCP Scores Perfect CVSS 10 in Unauthenticated RCE Flaw</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-minnesota-water-ot-attack/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T16:10:00.000Z</news:publication_date>
      <news:title>Coordinated OT Attack Hits 30+ Minnesota Water Systems</news:title>
      <news:keywords>water utilities, SCADA, OT, Minnesota, MNIT, critical infrastructure, cyberattack</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-minnesota-water-ot-attack/cover.jpg</image:loc>
      <image:title>Coordinated OT Attack Hits 30+ Minnesota Water Systems</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-ai-exploit-timelines-defender-gap/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T14:00:00.000Z</news:publication_date>
      <news:title>AI Cut Exploit Dev Time. Defense Hasn&apos;t Caught Up</news:title>
      <news:keywords>AI, exploit development, vulnerability management, zero-day, patch window, threat intelligence, defender playbook</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-ai-exploit-timelines-defender-gap/cover.jpg</image:loc>
      <image:title>AI Cut Exploit Dev Time. Defense Hasn&apos;t Caught Up</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-russia-fsb-charges-durov-telegram/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T12:00:00.000Z</news:publication_date>
      <news:title>Russia Charges Durov as FSB Targets Telegram Content</news:title>
      <news:keywords>Telegram, Pavel Durov, FSB, Russia, threat-intel, law-enforcement, messaging-platform</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-russia-fsb-charges-durov-telegram/cover.jpg</image:loc>
      <image:title>Russia Charges Durov as FSB Targets Telegram Content</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-gitea-critical-rce-git-hook-1-27-1/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T11:00:00.000Z</news:publication_date>
      <news:title>Gitea Patches Critical RCE, Upgrade to 1.27.1</news:title>
      <news:keywords>gitea, rce, git-hook, self-hosted-git, patch, remote-code-execution, developer-tools</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-gitea-critical-rce-git-hook-1-27-1/cover.jpg</image:loc>
      <image:title>Gitea Patches Critical RCE, Upgrade to 1.27.1</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-check-point-smartconsole-cve-2026-16232-poc-release/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:00:00.000Z</news:publication_date>
      <news:title>Public PoC Out for Exploited Check Point Admin Bypass</news:title>
      <news:keywords>check-point, smartconsole, CVE-2026-16232, authentication bypass, public exploit, CISA KEV</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-check-point-smartconsole-cve-2026-16232-poc-release/cover.jpg</image:loc>
      <image:title>Public PoC Out for Exploited Check Point Admin Bypass</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-firefox-jit-cve-2026-10702-tor-browser/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T09:00:00.000Z</news:publication_date>
      <news:title>Firefox JIT Flaw Enables Tor Browser Code Execution</news:title>
      <news:keywords>CVE-2026-10702, Firefox, Tor Browser, JIT, code execution, browser security</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-firefox-jit-cve-2026-10702-tor-browser/cover.jpg</image:loc>
      <image:title>Firefox JIT Flaw Enables Tor Browser Code Execution</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-flying-eagle-android-rat-telegram-leak/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T09:00:00.000Z</news:publication_date>
      <news:title>Flying Eagle Android RAT Source Code Leaks to Telegram</news:title>
      <news:keywords>android, rat, mobile-malware, flying-eagle, telegram, sideloading</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-flying-eagle-android-rat-telegram-leak/cover.jpg</image:loc>
      <image:title>Flying Eagle Android RAT Source Code Leaks to Telegram</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-openai-eval-agent-four-service-breach-credentials/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T08:00:00.000Z</news:publication_date>
      <news:title>OpenAI Eval Agent Breached Four Services with Exposed Creds</news:title>
      <news:keywords>OpenAI, Hugging Face, credential-exposure, AI-agent-security, eval-environment, lateral-movement, breach</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-openai-eval-agent-four-service-breach-credentials/cover.jpg</image:loc>
      <image:title>OpenAI Eval Agent Breached Four Services with Exposed Creds</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-ot-isolation-field-reality-explainer/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T06:00:00.000Z</news:publication_date>
      <news:title>Why OT Isolation Is Harder Than the Advisory Says</news:title>
      <news:keywords>OT, ICS, SCADA, isolation, CISA, operational-technology, industrial-control-systems, network-segmentation</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-ot-isolation-field-reality-explainer/cover.jpg</image:loc>
      <image:title>Why OT Isolation Is Harder Than the Advisory Says</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-29-joyfill-npm-devpopper-rat-supply-chain/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T05:00:00.000Z</news:publication_date>
      <news:title>DEV#POPPER RAT Hidden in Two Joyfill npm Packages</news:title>
      <news:keywords>npm, supply-chain, DEV#POPPER, RAT, joyfill, Node.js, malware, DPRK</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-29-joyfill-npm-devpopper-rat-supply-chain/cover.jpg</image:loc>
      <image:title>DEV#POPPER RAT Hidden in Two Joyfill npm Packages</image:title>
    </image:image>
  </url>
  <url>
    <loc>https://0daynews.com/articles/2026-07-28-cubepilot-dns-hijacking-drone-controller/</loc>
    <news:news>
      <news:publication>
        <news:name>0dayNews</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T23:00:00.000Z</news:publication_date>
      <news:title>CubePilot Drone Controller Maker Hit by DNS Hijacking</news:title>
      <news:keywords>CubePilot, DNS hijacking, UAV, drone, firmware, flight controller, supply chain</news:keywords>
    </news:news>
    <image:image>
      <image:loc>https://0daynews.com/articles/2026-07-28-cubepilot-dns-hijacking-drone-controller/cover.jpg</image:loc>
      <image:title>CubePilot Drone Controller Maker Hit by DNS Hijacking</image:title>
    </image:image>
  </url>
</urlset>