<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  
    <url>
      <loc>https://cyber-osint.io/news/uae-saudi-arabia-face-onslaught-of-increasingly-complex-cyberattacks</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>UAE, Saudi Arabia Face Onslaught of Increasingly Complex Cyberattacks</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/attackers-manipulate-ai-chatbots-in-mass-disinformation-phishing-campaign</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Attackers Manipulate AI Chatbots in Mass Disinformation, Phishing Campaign</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/supporting-asds-multi-factor-authentication-campaign-why-mfa-matters-more-than-ever</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Supporting ASD’s multi-factor authentication campaign: Why MFA matters more than ever</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/infratrust-report-warns-network-management-systems-under-attack</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>InfraTrust report warns network management systems under attack</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/fbi-investigating-alleged-shinyhunters-breach-of-its-jobs-site</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>FBI investigating alleged ShinyHunters breach of its jobs site</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/this-windows-malware-is-built-to-let-up-to-four-ai-models-vote-on-its-next-move</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/how-one-kubernetes-yaml-can-hand-over-a-gcp-organization</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>How One Kubernetes YAML Can Hand Over a GCP Organization</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/compromised-memtensor-packages-deliver-sckit-credential-stealer-via-npm-and-pypi</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/latvia-arrests-suspected-hacker-for-electronics-repair-company-breach</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Latvia arrests suspected hacker for electronics repair company breach</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/burnham-announces-plan-for-new-uk-center-to-fight-disinformation</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Burnham announces plan for new UK center to fight disinformation</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/arista-patches-actively-exploited-velocloud-orchestrator-zero-day</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Arista patches actively exploited VeloCloud Orchestrator zero-day</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/new-cpanel-flaw-lets-a-hosting-account-run-code-as-root-take-full-server-control</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>New cPanel Flaw Lets a Hosting Account Run Code as Root, Take Full Server Control</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/545-hackers-tested-it-first-now-xranges-for-ai-scores-your-security-agent</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>545 Hackers Tested It First. Now XRanges for AI Scores Your Security Agent</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/anthropic-and-openai-models-still-attempt-restricted-actions-in-safety-tests</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/microsoft-september-windows-updates-break-always-on-vpn-connections</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Microsoft: September Windows updates break Always On VPN connections</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/exploit-released-for-unpatched-ubuntu-linux-flaw-enabling-host-root-container-escape</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/f5-patches-critical-big-ip-apm-zero-day-exploited-for-unauthenticated-rce-on-oauth-servers</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>F5 Patches Critical BIG-IP APM Zero-Day Exploited for Unauthenticated RCE on OAuth Servers</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/chinese-hackers-exploit-chrome-windows-zero-day-chain-to-deploy-cleangulp-malware</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/ryuk-ransomware-member-sentenced-to-24-months-in-prison</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Ryuk ransomware member sentenced to 24 months in prison</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/f5-patches-big-ip-apm-zero-day-flaw-exploited-in-rce-attacks</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>F5 patches BIG-IP APM zero-day flaw exploited in RCE attacks</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/critical-nextjs-imageresponse-flaw-can-lead-to-server-code-execution-via-crafted-svg-input</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/shinyhunters-claims-fbi-breach-says-it-stole-data-on-agents-and-job-applicants</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-23</news:publication_date>
        <news:title>ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/rogue-external-mfa-providers-can-steal-passwords-during-logins</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Rogue external MFA providers can steal passwords during logins</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/sweden-fines-miljdata-183000-over-breach-affecting-22-million</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Sweden fines Miljödata $183,000 over breach affecting 2.2 million</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/relays-are-masking-chinese-access-to-frontier-ai-models-in-the-us</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Relays Are Masking Chinese Access to Frontier AI Models in the US</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/how-the-ciso-cmo-alliance-builds-trust-before-crisis-strikes</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>How the CISO-CMO Alliance Builds Trust Before Crisis Strikes</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/chinese-hackers-exploit-wordpress-zyxel-flaws-to-steal-govt-data</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Chinese hackers exploit WordPress, Zyxel flaws to steal govt data</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/microsoft-disrupts-eviltokens-device-code-phishing-service</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Microsoft Disrupts EvilTokens Device Code Phishing Service</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/deception-by-design-cisas-guide-to-tricking-cybercriminals</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Deception by Design: CISA&apos;s Guide to Tricking Cybercriminals</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/canadian-regulator-opens-probe-of-idscan-for-allegedly-violating-data-privacy-laws</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Canadian regulator opens probe of IDScan for allegedly violating data privacy laws</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/shinyhunters-claims-fbi-hack-data-theft-in-peoplesoft-zero-day-breach</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>ShinyHunters claims FBI hack, data theft in PeopleSoft zero-day breach</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/check-point-warns-of-management-server-zero-day-exploited-in-targeted-attacks</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Check Point Warns of Management Server Zero-Day Exploited in Targeted Attacks</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/new-closedquorum-windows-malware-uses-ai-for-attack-decisions</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>New ClosedQuorum Windows malware uses AI for attack decisions</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/wordpress-issues-patch-for-critical-flaw-that-can-enable-code-execution-on-some-servers</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>WordPress Issues Patch for Critical Flaw That Can Enable Code Execution on Some Servers</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/malicious-npm-package-poses-as-twilio-bug-bounty-probe-can-exfiltrate-credentials</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Malicious npm Package Poses as Twilio Bug-Bounty Probe, Can Exfiltrate Credentials</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/reducing-shadow-it-visibility-gaps-with-wazuh</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Reducing shadow IT visibility gaps with Wazuh</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/amid-ongoing-rogue-incidents-debate-over-ai-safety-gets-real</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Amid Ongoing Rogue Incidents, Debate Over AI Safety Gets Real</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/microsoft-takes-down-eviltokens-device-code-phishing-service-tied-to-12000-inbox-compromises</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Microsoft Takes Down EvilTokens Device-Code Phishing Service Tied to 12,000 Inbox Compromises</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/critical-bifrost-ai-gateway-flaw-lets-attackers-run-commands-without-credentials</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/researcher-drops-bigdiskbuster-zero-day-poc-that-blocks-microsoft-defender-updates</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Researcher Drops BigDiskBuster Zero-Day PoC That Blocks Microsoft Defender Updates</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/two-arrested-in-uk-after-microsoft-takedown-of-eviltokens-ai-chatbot-for-cybercriminals</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Two arrested in UK after Microsoft takedown of ‘Eviltokens’ AI-chatbot for cybercriminals</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/eviltokens-phaas-disrupted-after-compromising-12000-microsoft-accounts</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>EvilTokens PhaaS disrupted after compromising 12,000 Microsoft accounts</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/webinar-tomorrow-inside-real-world-google-workspace-breaches</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Webinar tomorrow: Inside real-world Google Workspace breaches</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/d-link-warns-of-max-severity-zero-day-bug-in-dir-822a-routers</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>D-Link warns of max severity zero-day bug in DIR-822A routers</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/ai-agents-are-rewriting-the-rules-of-lateral-movement</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>AI Agents Are Rewriting the Rules of Lateral Movement</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/new-cvss-100-velocloud-orchestrator-flaw-actively-exploited-in-certificate-based-setups</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>New CVSS 10.0 VeloCloud Orchestrator Flaw Actively Exploited in Certificate-Based Setups</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/more-than-a-third-of-industrial-orgs-see-cybersecurity-risk-as-a-top-obstacle-to-growth-study-finds</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>More Than a Third of Industrial Orgs See Cybersecurity Risk as a Top Obstacle to Growth, Study Finds</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/dora-year-two-can-your-soc-actually-see-the-attack</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>DORA Year Two: Can Your SOC Actually See the Attack?</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/new-linux-kernel-flaw-gives-arm64-kvm-guests-read-write-access-to-host-memory</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/sharepoint-flaw-initially-listed-as-spoofing-by-microsoft-enables-authenticated-rce</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/shai-hulud-attack-nips-cyber-firm-crowdsecs-github-data</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Shai-Hulud Attack Nips Cyber-Firm CrowdSec&apos;s GitHub Data</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/the-closed-quorum-inside-the-first-reported-autonomous-ai-c2-implant</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>The Closed Quorum: Inside the first reported autonomous AI C2 implant</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/introducing-cairn-frontier-tracking-for-ai-integrated-malware</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Introducing CAIRN: Frontier tracking for AI-integrated malware</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/new-windows-defender-zero-day-blocks-microsoft-antivirus-updates</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>New Windows Defender zero-day blocks Microsoft antivirus updates</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/malicious-npm-package-indexed-btree-hid-its-loader-in-runtime-code-before-removal</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/cisa-orders-feds-to-patch-zyxel-flaw-exploited-for-data-theft</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>CISA orders feds to patch Zyxel flaw exploited for data theft</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/sidecopy-broadens-india-targeting-to-academia-with-reverserat-spear-phishing</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>SideCopy Broadens India Targeting to Academia With ReverseRAT Spear-Phishing</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/one-hidden-meta-muse-setting-could-let-attackers-turn-the-ai-assistant-into-a-backdoor</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/wordpress-comment2shell-flaw-can-turn-anonymous-comment-xss-into-rce-via-admin-session</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session</news:title>
      </news:news>
    </url>
    <url>
      <loc>https://cyber-osint.io/news/zyxel-and-veeam-flaws-under-active-exploitation-with-command-and-system-access</loc>
      <news:news>
        <news:publication>
          <news:name>CyberOSINT</news:name>
          <news:language>en</news:language>
        </news:publication>
        <news:publication_date>2026-09-22</news:publication_date>
        <news:title>Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access</news:title>
      </news:news>
    </url>
</urlset>