<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://threatvectr.com/story/cisa-wants-you-to-leave-a-trap-out-for-hackers</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T14:41:00.975Z</news:publication_date>
      <news:title>CISA Wants You to Leave a Trap Out for Hackers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/ubuntu-still-shipping-a-kernel-bug-that-lets-containers-break-out-to-root</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T12:58:00.748Z</news:publication_date>
      <news:title>Ubuntu Still Shipping a Kernel Bug That Lets Containers Break Out to Root</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/nextjs-social-preview-feature-has-a-remote-code-execution-bug</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T07:51:00.323Z</news:publication_date>
      <news:title>Next.js Social Preview Feature Has a Remote Code Execution Bug</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/closedquorum-runs-its-own-attack-without-asking-anyone</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T00:56:00.494Z</news:publication_date>
      <news:title>CLOSEDQUORUM Runs Its Own Attack Without Asking Anyone</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/one-http-request-turns-bifrost-ai-gateway-into-a-shell</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-22T18:02:00.128Z</news:publication_date>
      <news:title>One HTTP Request Turns Bifrost AI Gateway Into a Shell</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/eviltokens-the-phishing-kit-that-turned-a-smart-tv-login-trick-into-a-mass</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-22T16:51:00.209Z</news:publication_date>
      <news:title>EvilTokens: the phishing kit that turned a smart-TV login trick into a mass account raid</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/ai-coding-tool-was-quietly-uploading-your-entire-codebase-to-china</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-22T15:23:00.924Z</news:publication_date>
      <news:title>AI Coding Tool Was Quietly Uploading Your Entire Codebase to China</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/arista-says-a-velocloud-orchestrator-bug-is-already-being-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-22T13:49:00.274Z</news:publication_date>
      <news:title>Arista Says a VeloCloud Orchestrator Bug Is Already Being Exploited</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/arm64-kvm-flaw-lets-a-guest-vm-reach-into-the-hosts-memory</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-22T12:33:00.936Z</news:publication_date>
      <news:title>Arm64 KVM flaw lets a guest VM reach into the host&apos;s memory</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/microsoft-called-this-sharepoint-bug-a-spoofing-issue-it-runs-code</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-22T12:30:00.781Z</news:publication_date>
      <news:title>Microsoft Called This SharePoint Bug a Spoofing Issue. It Runs Code.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/cisa-gives-federal-agencies-three-days-to-patch-a-zyxel-switch-bug-already-being</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-22T07:01:00.552Z</news:publication_date>
      <news:title>CISA gives federal agencies three days to patch a Zyxel switch bug already being used in attacks</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatvectr.com/story/shinyhunters-defaces-cl0ps-leak-site-and-claims-it-grabbed-the-gangs-tor-keys</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatVectr</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-22T00:21:00.017Z</news:publication_date>
      <news:title>ShinyHunters defaces Cl0p&apos;s leak site and claims it grabbed the gang&apos;s Tor keys</news:title>
    </news:news>
  </url>
</urlset>