<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://threatdigest.io/article/drupal-vulnerability-in-hacker-crosshairs-shortly-after-disclosure/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T10:32:10.077036+00:00</news:publication_date>
      <news:title>Drupal Exploit Found in the Wild Hours After Patch</news:title>
      <news:keywords>SQL injection, cve-2026-9082, cyber attack, drupal, postgresql, website security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/foul-play-fake-fifa-websites-target-soccer-fans-looking-for-world-cup-tickets-merchandise/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T08:42:40.981010+00:00</news:publication_date>
      <news:title>Fake FIFA Sites Fleece Fans</news:title>
      <news:keywords>FIFA, World Cup 2026, cybersecurity, phishing, scams, typosquatting</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/litespeed-cpanel-plugin-cve-2026-48172-exploited-to-run-scripts-as-root/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T07:36:49.298249+00:00</news:publication_date>
      <news:title>LiteSpeed Plugin Exploited for Root Access</news:title>
      <news:keywords>CVE-2026-48172, LiteSpeed, cPanel, root access, script execution, vulnerability exploitation</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/daily-briefing-may-23-2026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T07:00:00.420243+00:00</news:publication_date>
      <news:title>Daily Briefing: May 23, 2026</news:title>
      
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-recognized-as-a-leader-in-the-forrester-wavetm-for-workforce-identity-security-platforms/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:55:51.372221+00:00</news:publication_date>
      <news:title>Microsoft Entra: Leader in Workforce Identity Security?</news:title>
      <news:keywords>ai identity, cybersecurity, forrester wave, identity-security, microsoft entra, workforce identity</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/from-edge-appliance-to-enterprise-compromise-multi-stage-linux-intrusion-via-f5-and-confluence/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:47:34.320649+00:00</news:publication_date>
      <news:title>Linux Breached via F5 & Confluence [New Tactics]</news:title>
      <news:keywords>Active Directory compromise, Confluence vulnerability, F5 BIG-IP, Linux intrusion, edge appliance compromise, edge appliance security, identity-centric attacks, multi-stage attack</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/ghostwriter-targets-ukraine-government-entities-with-prometheus-phishing-malware/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:43:06.442250+00:00</news:publication_date>
      <news:title>Ghostwriter's Prometheus Play: Ukraine Govt Targeted with New Phishing Malware</news:title>
      <news:keywords>cobalt strike, cyber warfare, ghostwriter, phishing, prometheus malware, ukraine government</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-security-success-stories-how-st-lukes-and-manpowergroup-are-securing-ai-foundations/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:31:52.197866+00:00</news:publication_date>
      <news:title>AI Security: St. Luke's & ManpowerGroup Success Stories</news:title>
      <news:keywords>AI security, ManpowerGroup, Microsoft Security Copilot, St. Luke's University Health Network, cloud security, zero trust</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/metasploit-wrap-up-05222026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T19:02:15.525531+00:00</news:publication_date>
      <news:title>Metasploit Adds 5 New Exploits, Including Auth Bypass on Cisco SD-WAN</news:title>
      <news:keywords>Barracuda ESG, Cisco SD-WAN, HUSTOJ, Metasploit, cPanel, cve-2026-20182</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/netherlands-seizes-800-servers-of-hosting-firm-enabling-cyberattacks/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T18:17:50.269412+00:00</news:publication_date>
      <news:title>Dutch Cops Seize 800 Servers Enabling Cyberattacks</news:title>
      <news:keywords>FIOD, Netherlands, Stark Industries, WorkTitans B.V., cyberattack hosting, sanctions</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/sentinels-league-2026-live-rankings-for-the-threat-hunting-world-championship-30de93ff5122/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T17:05:45.169115+00:00</news:publication_date>
      <news:title>Threat Hunting Championship: $100K Prize Pool & New 30-Min Format</news:title>
      <news:keywords>AI in cybersecurity, SentinelOne, capture the flag, cybersecurity competition, sentinels league, threat hunting</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/the-good-the-bad-and-the-ugly-in-cybersecurity-week-21/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T16:04:30.787467+00:00</news:publication_date>
      <news:title>Microsoft Defender Zero-Days: SYSTEM Privileges & DoS Chaos</news:title>
      <news:keywords>cve-2026-41091, cybercrime, infostealer, macOS malware, microsoft-defender, zero-day</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/first-vpn-cybercrime-service-disrupted-administrator-arrested/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T13:36:33.255494+00:00</news:publication_date>
      <news:title>First VPN Takedown: Cybercrime's Anonymity Shaken</news:title>
      <news:keywords>anonymity, cybercrime, dark web, first vpn, law enforcement, ransomware</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/how-cisos-should-prep-for-agentic-ready-ai-boms/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T13:25:24.264513+00:00</news:publication_date>
      <news:title>AI BOMs: CISOs Scramble for Visibility</news:title>
      <news:keywords>AI security, CISOs, agentic AI, ai bom, nist</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/ubiquiti-patches-three-max-severity-unifi-os-vulnerabilities/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T12:21:21.343283+00:00</news:publication_date>
      <news:title>Ubiquiti Patches Max-Severity UniFi OS Flaws</news:title>
      <news:keywords>command injection, cve, cybersecurity, ubiquiti, unifi os, vulnerabilities</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cloud-atlas-activity-in-the-second-half-of-2025-and-early-2026-new-tools-and-a-new-payload/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T10:57:48.684460+00:00</news:publication_date>
      <news:title>Cloud Atlas Shifts Tactics [2026]</news:title>
      <news:keywords>cloud atlas, phishing, powershell, powershower, ssh tunneling, vbcloud</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/paved-with-intent-roadtools-and-nation-state-tactics-in-the-cloud/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T10:18:44.855138+00:00</news:publication_date>
      <news:title>ROADtools: Cloud's New Shadow Play Revealed</news:title>
      <news:keywords>cloud security, entra id, identity and access management, nation-state threats, roadtools</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/us-and-canada-arrest-and-charge-suspected-kimwolf-botnet-admin/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T09:24:13.494547+00:00</news:publication_date>
      <news:title>KimWolf Botnet Admin Arrested: 2 Million Devices Compromised</news:title>
      <news:keywords>DDoS attack, IoT security, Kimwolf botnet, cybercrime-as-a-service, law enforcement</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/chinas-webworm-uses-discord-microsoft-graphs-to-hack-eu-govts/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T07:50:17.012751+00:00</news:publication_date>
      <news:title>Webworm's Discord/Graph Tactics: Hacking EU Govts</news:title>
      <news:keywords>APT, China, cyber espionage, discord, microsoft graph, webworm</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/daily-briefing-may-22-2026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T07:00:00.462039+00:00</news:publication_date>
      <news:title>Daily Briefing: May 22, 2026</news:title>
      
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/google-api-keys-remain-active-after-deletion/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T05:48:51.817983+00:00</news:publication_date>
      <news:title>Google API Keys Linger Post-Deletion [Security Flaw]</news:title>
      <news:keywords>API keys, credential management, distributed systems, google cloud, security vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/why-security-in-2026-requires-continuous-threat-and-exposure-management-ctem-at-scale/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T05:48:45.362946+00:00</news:publication_date>
      <news:title>CTEM 2026: Is Your Patch Window Still Open?</news:title>
      <news:keywords>CTEM, Rapid7, attack surface management, cybersecurity strategy, vulnerability management</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/alleged-kimwolf-botmaster-dort-arrested-charged-in-us-and-canada/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T05:46:47.630264+00:00</news:publication_date>
      <news:title>Kimwolf Botnet Master Busted [Criminal Charges Filed]</news:title>
      <news:keywords>DDoS attacks, Jacob Butler, cybercrime, dort, iot botnet, kimwolf</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cisco-patches-cvss-100-secure-workload-rest-api-flaw-enabling-data-access/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T05:29:27.339209+00:00</news:publication_date>
      <news:title>Cisco Patches CVSS 10.0 Flaw: Data Access at Risk</news:title>
      <news:keywords>cisco, cve-2026-20223, cvss 10.0, data access, rest api, secure workload</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-defender-vulnerabilities-are-being-exploited-in-the-wild/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T19:27:51.822825+00:00</news:publication_date>
      <news:title>Microsoft Defender Exploited [2026]</news:title>
      <news:keywords>CISA, KEV, cybersecurity, exploitation, microsoft-defender, vulnerabilities</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/whats-new-in-microsoft-security-may-2026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T17:52:08.520776+00:00</news:publication_date>
      <news:title>Microsoft Security's AI Gambit: More Visibility or More Blind Spots?</news:title>
      <news:keywords>AI security, data security posture management, microsoft entra id, microsoft purview, microsoft-security, windows 365</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/varonis-announces-integration-with-the-claude-compliance-api/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T16:39:22.784470+00:00</news:publication_date>
      <news:title>Varonis Adds Claude AI Activity to Atlas Platform</news:title>
      <news:keywords>AI security, Anthropic, Varonis, claude, compliance, data governance</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/mini-shai-hulud-frequently-asked-questions-about-the-teampcp-npm-and-pypi-supply-chain-campaign/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T16:12:22.263943+00:00</news:publication_date>
      <news:title>170+ Packages Wormed: TeamPCP's Mini Shai-Hulud Campaign Explained</news:title>
      <news:keywords>PyPI, TeamPCP, mini shai-hulud, npm, supply chain attack, worm</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/showboat-linux-malware-hits-middle-east-telecom-with-socks5-proxy-backdoor/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T14:32:35.985210+00:00</news:publication_date>
      <news:title>Showboat Malware: China-Linked Linux Backdoor Targets Telecoms</news:title>
      <news:keywords>SOCKS5 proxy, china nexus, cybersecurity, linux malware, showboat malware, threat intelligence</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cve-2026-9082-highly-critical-sql-injection-vulnerability-in-drupal-core-sa-core-2026-004/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T13:30:30.111385+00:00</news:publication_date>
      <news:title>Drupal Core SQL Injection: Is Your PostgreSQL Site Next?</news:title>
      <news:keywords>SQL injection, cve-2026-9082, drupal, postgresql, web security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/tenable-one-deepens-third-party-integrations-with-new-open-connector-for-unified-risk-visibility/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T12:47:00.214970+00:00</news:publication_date>
      <news:title>Tenable One Connector: Breaking Down Silos or Just More Buzz?</news:title>
      <news:keywords>Tenable One, cyber risk visibility, data integration, exposure management, open connector, vendor lock-in</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/when-identity-is-the-attack-path/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T11:02:01.873927+00:00</news:publication_date>
      <news:title>Identity is the New Attack Path [Security Blind Spot]</news:title>
      <news:keywords>AI security, attack path mapping, cloud security, credential theft, cybersecurity tools, identity-security</news:keywords>
    </news:news>
  </url>
</urlset>
