<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  
    <url>
      <loc>https://cyber-osint.io/news/eviltokens-phaas-disrupted-after-compromising-12000-microsoft-accounts</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>EvilTokens PhaaS disrupted after compromising 12,000 Microsoft accounts</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/webinar-tomorrow-inside-real-world-google-workspace-breaches</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Webinar tomorrow: Inside real-world Google Workspace breaches</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/d-link-warns-of-max-severity-zero-day-bug-in-dir-822a-routers</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>D-Link warns of max severity zero-day bug in DIR-822A routers</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/ai-agents-are-rewriting-the-rules-of-lateral-movement</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>AI Agents Are Rewriting the Rules of Lateral Movement</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/new-cvss-100-velocloud-orchestrator-flaw-actively-exploited-in-certificate-based-setups</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>New CVSS 10.0 VeloCloud Orchestrator Flaw Actively Exploited in Certificate-Based Setups</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/more-than-a-third-of-industrial-orgs-see-cybersecurity-risk-as-a-top-obstacle-to-growth-study-finds</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>More Than a Third of Industrial Orgs See Cybersecurity Risk as a Top Obstacle to Growth, Study Finds</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/dora-year-two-can-your-soc-actually-see-the-attack</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>DORA Year Two: Can Your SOC Actually See the Attack?</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/new-linux-kernel-flaw-gives-arm64-kvm-guests-read-write-access-to-host-memory</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/sharepoint-flaw-initially-listed-as-spoofing-by-microsoft-enables-authenticated-rce</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/new-windows-defender-zero-day-blocks-microsoft-antivirus-updates</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>New Windows Defender zero-day blocks Microsoft antivirus updates</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/malicious-npm-package-indexed-btree-hid-its-loader-in-runtime-code-before-removal</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/cisa-orders-feds-to-patch-zyxel-flaw-exploited-for-data-theft</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>CISA orders feds to patch Zyxel flaw exploited for data theft</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/sidecopy-broadens-india-targeting-to-academia-with-reverserat-spear-phishing</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>SideCopy Broadens India Targeting to Academia With ReverseRAT Spear-Phishing</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/one-hidden-meta-muse-setting-could-let-attackers-turn-the-ai-assistant-into-a-backdoor</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/wordpress-comment2shell-flaw-can-turn-anonymous-comment-xss-into-rce-via-admin-session</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/zyxel-and-veeam-flaws-under-active-exploitation-with-command-and-system-access</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/how-ai-agents-can-trigger-runaway-costs-for-enterprises</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>How AI Agents Can Trigger Runaway Costs for Enterprises</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/bigcommerce-alerts-merchants-of-data-breach-linked-to-ribon-apps</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>BigCommerce alerts merchants of data breach linked to Ribon apps</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/cisa-alerts-of-active-exploitation-of-three-linux-kernel-flaws</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>CISA alerts of active exploitation of three Linux kernel flaws</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/shinyhunters-hacked-clop-now-what-about-clops-victims</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>ShinyHunters Hacked Clop. Now What About Clop&apos;s Victims?</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/cybercriminals-are-hiding-new-malware-in-torrents-for-popular-films</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Cybercriminals Are Hiding New Malware in Torrents for Popular Films</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/wordpress-click2shell-flaw-lets-hackers-execute-php-on-the-server</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>WordPress Click2Shell flaw lets hackers execute PHP on the server</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/microsoft-to-retire-microsoft-365-companion-apps-in-december</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Microsoft to retire Microsoft 365 Companion apps in December</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/fake-lastpass-authenticator-installer-abuses-microsoft-signed-driver-to-kill-antivirus-and-edr</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Fake LastPass Authenticator Installer Abuses Microsoft-Signed Driver to Kill Antivirus and EDR</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/contagious-interview-campaign-compromises-30000-devices-steals-1071m-in-crypto</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Contagious Interview Campaign Compromises 30,000 Devices, Steals $10.71M in Crypto</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/google-fined-403-million-over-gdpr-violations-tied-to-location-data</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Google Fined €403 Million Over GDPR Violations Tied to Location Data</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/google-fined-403-million-over-location-data-privacy-violations</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Google fined €403 million over location data privacy violations</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/rogue-behavior-openai-reveals-more-model-misalignment-incidents</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Rogue Behavior: OpenAI Reveals More Model Misalignment Incidents</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/microsoft-fixes-broken-excel-copy-and-paste-for-all-office-users</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Microsoft fixes broken Excel copy and paste for all Office users</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/weekly-recap-cisco-0-day-ai-agent-rce-clickfix-attacks-clickfix-surge-and-browser-hijacks</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/taskstomp-powershell-backdoor-steals-documents-wi-fi-passwords-and-clipboard-data</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>TASK#STOMP PowerShell Backdoor Steals Documents, Wi-Fi Passwords, and Clipboard Data</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/fbis-cjis-v61-what-security-teams-need-to-know</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>FBI&apos;s CJIS v6.1: What Security Teams Need to Know.</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/microsoft-reminds-admins-to-migrate-entra-id-users-to-passkeys</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Microsoft reminds admins to migrate Entra ID users to passkeys</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/linkedin-wins-court-order-blocking-mass-scraping-of-user-data</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>LinkedIn wins court order blocking mass scraping of user data</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/google-says-gemini-breached-three-companies-during-security-test</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Google says Gemini breached three companies during security test</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/microsoft-september-updates-break-file-history-backup-feature</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Microsoft: September updates break File History backup feature</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/shinyhunters-hacks-rival-extortion-gang-and-takes-over-its-dark-web-site</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>ShinyHunters hacks rival extortion gang and takes over its dark web site</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/group-policy-hijacked-payload-ransomware-weaponizes-active-directory-gpo</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/from-exposure-to-lockdown-how-aws-neutralizes-compromised-iam-credentials-through-managed-policies</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>From Exposure to Lockdown: How AWS Neutralizes Compromised IAM Credentials through Managed Policies</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/execution-runtime-security-in-the-era-of-agentic-ai</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Execution Runtime Security in the Era of Agentic AI</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/clickfix-lures-deploy-chainscript-rat-using-polygon-to-rotate-c2-infrastructure</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/a-week-in-security-september-14-september-20</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>A week in security (September 14 – September 20)</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/jade-sleet-linked-to-indian-it-provider-breach-with-flatroof-and-roofdeck-backdoors</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-21</news:publication_date>
        <news:title>Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/russia-reports-thousands-of-cyberattacks-on-election-infrastructure-during-vote</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-20</news:publication_date>
        <news:title>Russia reports thousands of cyberattacks on election infrastructure during vote</news:title>
      </news:news>
    </url>
</urlset>