<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://threatdigest.io/article/friday-squid-blogging-regulating-squid-fishing-in-the-south-pacific/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T18:10:25.132184+00:00</news:publication_date>
      <news:title>Squid Overfishing: A South Pacific Crisis</news:title>
      <news:keywords>SPRFMO, South Pacific, marine conservation, overfishing, squid fishing</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/how-enverus-secures-salesforce-data-and-prevents-data-breaches-with-varonis/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T16:40:21.463116+00:00</news:publication_date>
      <news:title>Enverus Dodges SaaS Attack [Varonis Insight]</news:title>
      <news:keywords>SaaS security, Varonis, data breach prevention, enverus, identity threat detection, salesforce security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/megalodon-github-attack-targets-5561-repos-with-malicious-cicd-workflows/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T15:03:38.670171+00:00</news:publication_date>
      <news:title>GitHub Attack [5,561 Repos] Uses Malicious CI/CD Workflows</news:title>
      <news:keywords>ci/cd, github attack, malicious workflows, megalodon, secrets exfiltration, supply chain attack</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/verizon-dbir-healthcare-fends-off-increased-social-engineering-attacks/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T14:24:29.490053+00:00</news:publication_date>
      <news:title>Healthcare Under Fire: Social Engineering Dominates Verizon DBIR</news:title>
      <news:keywords>AI in cyberattacks, Verizon DBIR, data breaches, healthcare cybersecurity, ransomware, social engineering</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cve-2026-46333-local-root-privilege-escalation-and-credential-disclosure-in-the-linux-kernel-ptrace-path/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T13:52:20.521525+00:00</news:publication_date>
      <news:title>Linux Kernel Root Exploit Revealed [CVE-2026-46333]</news:title>
      <news:keywords>cve-2026-46333, linux kernel, local privilege escalation, ptrace, root access</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/underminr-vulnerability-lets-attackers-hide-malicious-connections-behind-trusted-domains/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T12:46:53.918989+00:00</news:publication_date>
      <news:title>Underminr Flaw Lets Bad Actors Hide in Plain Sight</news:title>
      <news:keywords>cdn, cybersecurity, domain fronting, malicious connections, underminr, vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/laravel-lang-php-packages-compromised-to-deliver-cross-platform-credential-stealer/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T11:34:18.296514+00:00</news:publication_date>
      <news:title>Laravel-Lang Packages Hit by Supply Chain Attack [2026]</news:title>
      
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/drupal-vulnerability-in-hacker-crosshairs-shortly-after-disclosure/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T10:32:10.077036+00:00</news:publication_date>
      <news:title>Drupal Exploit Found in the Wild Hours After Patch</news:title>
      <news:keywords>SQL injection, cve-2026-9082, cyber attack, drupal, postgresql, website security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/foul-play-fake-fifa-websites-target-soccer-fans-looking-for-world-cup-tickets-merchandise/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T08:42:40.981010+00:00</news:publication_date>
      <news:title>Fake FIFA Sites Fleece Fans</news:title>
      <news:keywords>FIFA, World Cup 2026, cybersecurity, phishing, scams, typosquatting</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/litespeed-cpanel-plugin-cve-2026-48172-exploited-to-run-scripts-as-root/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T07:36:49.298249+00:00</news:publication_date>
      <news:title>LiteSpeed Plugin Exploited for Root Access</news:title>
      <news:keywords>CVE-2026-48172, LiteSpeed, cPanel, root access, script execution, vulnerability exploitation</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/daily-briefing-may-23-2026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T07:00:00.420243+00:00</news:publication_date>
      <news:title>Daily Briefing: May 23, 2026</news:title>
      
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-recognized-as-a-leader-in-the-forrester-wavetm-for-workforce-identity-security-platforms/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:55:51.372221+00:00</news:publication_date>
      <news:title>Microsoft Entra: Leader in Workforce Identity Security?</news:title>
      <news:keywords>ai identity, cybersecurity, forrester wave, identity-security, microsoft entra, workforce identity</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/from-edge-appliance-to-enterprise-compromise-multi-stage-linux-intrusion-via-f5-and-confluence/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:47:34.320649+00:00</news:publication_date>
      <news:title>Linux Breached via F5 & Confluence [New Tactics]</news:title>
      <news:keywords>Active Directory compromise, Confluence vulnerability, F5 BIG-IP, Linux intrusion, edge appliance compromise, edge appliance security, identity-centric attacks, multi-stage attack</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/ghostwriter-targets-ukraine-government-entities-with-prometheus-phishing-malware/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:43:06.442250+00:00</news:publication_date>
      <news:title>Ghostwriter's Prometheus Play: Ukraine Govt Targeted with New Phishing Malware</news:title>
      <news:keywords>cobalt strike, cyber warfare, ghostwriter, phishing, prometheus malware, ukraine government</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-security-success-stories-how-st-lukes-and-manpowergroup-are-securing-ai-foundations/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:31:52.197866+00:00</news:publication_date>
      <news:title>AI Security: St. Luke's & ManpowerGroup Success Stories</news:title>
      <news:keywords>AI security, ManpowerGroup, Microsoft Security Copilot, St. Luke's University Health Network, cloud security, zero trust</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/metasploit-wrap-up-05222026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T19:02:15.525531+00:00</news:publication_date>
      <news:title>Metasploit Adds 5 New Exploits, Including Auth Bypass on Cisco SD-WAN</news:title>
      <news:keywords>Barracuda ESG, Cisco SD-WAN, HUSTOJ, Metasploit, cPanel, cve-2026-20182</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/netherlands-seizes-800-servers-of-hosting-firm-enabling-cyberattacks/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T18:17:50.269412+00:00</news:publication_date>
      <news:title>Dutch Cops Seize 800 Servers Enabling Cyberattacks</news:title>
      <news:keywords>FIOD, Netherlands, Stark Industries, WorkTitans B.V., cyberattack hosting, sanctions</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/sentinels-league-2026-live-rankings-for-the-threat-hunting-world-championship-30de93ff5122/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T17:05:45.169115+00:00</news:publication_date>
      <news:title>Threat Hunting Championship: $100K Prize Pool & New 30-Min Format</news:title>
      <news:keywords>AI in cybersecurity, SentinelOne, capture the flag, cybersecurity competition, sentinels league, threat hunting</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/the-good-the-bad-and-the-ugly-in-cybersecurity-week-21/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T16:04:30.787467+00:00</news:publication_date>
      <news:title>Microsoft Defender Zero-Days: SYSTEM Privileges & DoS Chaos</news:title>
      <news:keywords>cve-2026-41091, cybercrime, infostealer, macOS malware, microsoft-defender, zero-day</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/first-vpn-cybercrime-service-disrupted-administrator-arrested/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T13:36:33.255494+00:00</news:publication_date>
      <news:title>First VPN Takedown: Cybercrime's Anonymity Shaken</news:title>
      <news:keywords>anonymity, cybercrime, dark web, first vpn, law enforcement, ransomware</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/how-cisos-should-prep-for-agentic-ready-ai-boms/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T13:25:24.264513+00:00</news:publication_date>
      <news:title>AI BOMs: CISOs Scramble for Visibility</news:title>
      <news:keywords>AI security, CISOs, agentic AI, ai bom, nist</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/ubiquiti-patches-three-max-severity-unifi-os-vulnerabilities/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T12:21:21.343283+00:00</news:publication_date>
      <news:title>Ubiquiti Patches Max-Severity UniFi OS Flaws</news:title>
      <news:keywords>command injection, cve, cybersecurity, ubiquiti, unifi os, vulnerabilities</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cloud-atlas-activity-in-the-second-half-of-2025-and-early-2026-new-tools-and-a-new-payload/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T10:57:48.684460+00:00</news:publication_date>
      <news:title>Cloud Atlas Shifts Tactics [2026]</news:title>
      <news:keywords>cloud atlas, phishing, powershell, powershower, ssh tunneling, vbcloud</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/paved-with-intent-roadtools-and-nation-state-tactics-in-the-cloud/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T10:18:44.855138+00:00</news:publication_date>
      <news:title>ROADtools: Cloud's New Shadow Play Revealed</news:title>
      <news:keywords>cloud security, entra id, identity and access management, nation-state threats, roadtools</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/us-and-canada-arrest-and-charge-suspected-kimwolf-botnet-admin/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T09:24:13.494547+00:00</news:publication_date>
      <news:title>KimWolf Botnet Admin Arrested: 2 Million Devices Compromised</news:title>
      <news:keywords>DDoS attack, IoT security, Kimwolf botnet, cybercrime-as-a-service, law enforcement</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/chinas-webworm-uses-discord-microsoft-graphs-to-hack-eu-govts/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T07:50:17.012751+00:00</news:publication_date>
      <news:title>Webworm's Discord/Graph Tactics: Hacking EU Govts</news:title>
      <news:keywords>APT, China, cyber espionage, discord, microsoft graph, webworm</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/daily-briefing-may-22-2026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T07:00:00.462039+00:00</news:publication_date>
      <news:title>Daily Briefing: May 22, 2026</news:title>
      
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/google-api-keys-remain-active-after-deletion/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T05:48:51.817983+00:00</news:publication_date>
      <news:title>Google API Keys Linger Post-Deletion [Security Flaw]</news:title>
      <news:keywords>API keys, credential management, distributed systems, google cloud, security vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/why-security-in-2026-requires-continuous-threat-and-exposure-management-ctem-at-scale/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T05:48:45.362946+00:00</news:publication_date>
      <news:title>CTEM 2026: Is Your Patch Window Still Open?</news:title>
      <news:keywords>CTEM, Rapid7, attack surface management, cybersecurity strategy, vulnerability management</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/alleged-kimwolf-botmaster-dort-arrested-charged-in-us-and-canada/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T05:46:47.630264+00:00</news:publication_date>
      <news:title>Kimwolf Botnet Master Busted [Criminal Charges Filed]</news:title>
      <news:keywords>DDoS attacks, Jacob Butler, cybercrime, dort, iot botnet, kimwolf</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cisco-patches-cvss-100-secure-workload-rest-api-flaw-enabling-data-access/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T05:29:27.339209+00:00</news:publication_date>
      <news:title>Cisco Patches CVSS 10.0 Flaw: Data Access at Risk</news:title>
      <news:keywords>cisco, cve-2026-20223, cvss 10.0, data access, rest api, secure workload</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-defender-vulnerabilities-are-being-exploited-in-the-wild/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T19:27:51.822825+00:00</news:publication_date>
      <news:title>Microsoft Defender Exploited [2026]</news:title>
      <news:keywords>CISA, KEV, cybersecurity, exploitation, microsoft-defender, vulnerabilities</news:keywords>
    </news:news>
  </url>
</urlset>
