<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://threatdigest.io/article/new-shai-hulud-malware-wave-compromises-600-npm-packages/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T16:58:54.342715+00:00</news:publication_date>
      <news:title>Shai-Hulud Unleashed: 600+ NPM Packages Compromised</news:title>
      <news:keywords>AI in cybersecurity, Shai-Hulud, cybersecurity, malware, npm, supply chain attack</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/wireshark-466-released-sun-may-24th/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T16:56:00.993121+00:00</news:publication_date>
      <news:title>Wireshark 4.6.6: 1 Fix, 11 Bugs Squashed [Update]</news:title>
      <news:keywords>bug fix, cybersecurity, network analysis, npcap, vulnerability, wireshark</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/ghost-cms-sql-injection-flaw-exploited-in-large-scale-clickfix-campaign/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T16:09:43.783350+00:00</news:publication_date>
      <news:title>Ghost CMS Exploited: 700+ Sites Hit [Massive Attack]</news:title>
      <news:keywords>ClickFix, SQL injection, cve-2026-26980, cybersecurity campaign, ghost cms, malware</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/windows-11-kb5089549-kb5087420-cumulative-updates-released/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T14:59:42.439162+00:00</news:publication_date>
      <news:title>Windows 11 Updates: May 2026 Security Patches Arrive</news:title>
      <news:keywords>Patch Tuesday, cumulative update, kb5087420, kb5089549, microsoft-security, windows 11 updates</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/hackers-bypass-sonicwall-vpn-mfa-due-to-incomplete-patching/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T13:47:10.583557+00:00</news:publication_date>
      <news:title>SonicWall MFA Bypass: Real Risks for Real Companies</news:title>
      <news:keywords>MFA bypass, SonicWall, cve-2024-12802, ransomware, vpn security, vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-may-2026-patch-tuesday-fixes-120-flaws-no-zero-days/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T12:31:48.867659+00:00</news:publication_date>
      <news:title>May 2026 Patch Tuesday: 120 Flaws Patched, No Zero-Days</news:title>
      <news:keywords>Microsoft Patch Tuesday, Windows vulnerabilities, elevation of privilege, microsoft office, remote code execution, security vulnerabilities</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cisa-security-leak/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T11:02:31.730411+00:00</news:publication_date>
      <news:title>CISA Leak: GovCloud Credentials Exposed on GitHub [Analysis]</news:title>
      <news:keywords>AWS, CISA, cybersecurity, data leak, github, govcloud</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/exploits-and-vulnerabilities-in-q1-2026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T10:00:29.146213+00:00</news:publication_date>
      <news:title>2026 Exploit Kits Target Office, Windows, Linux [Q1 Deep Dive]</news:title>
      <news:keywords>Q1 2026, Windows vulnerabilities, cve, exploit kits, linux vulnerabilities, microsoft office vulnerabilities</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/in-other-news-industrial-router-exploitation-cisa-kev-nomination-form-gas-station-hacking/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T09:16:37.824544+00:00</news:publication_date>
      <news:title>Gas Station Hacks & CISA Blunders: The Week in Cyber Chaos</news:title>
      <news:keywords>AI security tools, CISA, CVE-2024-9643, Four-Faith, Iranian hackers, gas station hacking, gas station security, industrial router exploitation, industrial routers, mythos</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/canadian-man-arrested-for-operating-kimwolf-botnet/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T09:06:26.302968+00:00</news:publication_date>
      <news:title>Kimwolf Botnet Takedown: What It Means For You</news:title>
      <news:keywords>botnet, cybercrime, ddos, justice department, kimwolf, law enforcement</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/grafana-says-codebase-and-other-data-stolen-via-tanstack-supply-chain-attack/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T08:53:10.044305+00:00</news:publication_date>
      <news:title>Grafana Source Code Stolen via TanStack Attack</news:title>
      <news:keywords>code theft, github, grafana, mini shai-hulud, supply chain attack, tanstack</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/trendai-patches-apex-one-zero-day-exploited-in-the-wild/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T08:15:55.441900+00:00</news:publication_date>
      <news:title>TrendAI Patches Apex One Zero-Day: What It Means for Your Network</news:title>
      <news:keywords>Trend Micro, apex one, cve-2026-34926, directory traversal, trendai, zero-day</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/what-to-watch-this-week-the-supply-chain-and-ai-nexus-20260524/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T08:00:04.113463+00:00</news:publication_date>
      <news:title>What to Watch This Week: The Supply Chain and AI Nexus</news:title>
      <news:keywords>analysis, predictions, trends</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/daily-briefing-may-24-2026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T07:00:00.431691+00:00</news:publication_date>
      <news:title>Daily Briefing: May 24, 2026</news:title>
      
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/zero-chaos-scaling-detection-engineering-at-the-speed-of-software-with-detection-as-code/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T05:53:10.798248+00:00</news:publication_date>
      <news:title>Detection Engineering Gets Code Treatment [New Paradigm]</news:title>
      <news:keywords>DevSecOps, detection as code, detection engineering, security operations, terraform</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/metasploit-wrap-up-05222026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T05:51:11.686861+00:00</news:publication_date>
      <news:title>Metasploit Weekly: Cisco Auth Bypass, Barracuda RCE, & More</news:title>
      <news:keywords>barracuda esg, cisco sd-wan, cpanel whm, exploit, metasploit, vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/18th-may-threat-intelligence-report/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T05:50:14.502390+00:00</news:publication_date>
      <news:title>AI Unleashed: Your Digital Life Just Got Weird</news:title>
      <news:keywords>AI threats, cybersecurity, data breaches, phishing, ransomware, vulnerabilities</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cisa-adds-exploited-langflow-and-trend-micro-apex-one-vulnerabilities-to-kev/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T05:39:21.757491+00:00</news:publication_date>
      <news:title>CISA KEV: Langflow, Trend Micro Apex One Exploits Hit Gov</news:title>
      <news:keywords>CISA, KEV, exploit, langflow, trend micro apex one, vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/metasploit-wrap-up-05082026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-24T05:15:34.018275+00:00</news:publication_date>
      <news:title>Metasploit Update: Who's Really Getting Exploited in 2026?</news:title>
      <news:keywords>apache shiro, exploit, ftp, metasploit, penetration testing, vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/making-vulnerable-drivers-exploitable-without-hardware-the-byovd-perspective/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T18:52:45.475499+00:00</news:publication_date>
      <news:title>Drivers Exploitable Without Hardware?</news:title>
      <news:keywords>BYOVD, cybersecurity, driver exploitation, vulnerability research, windows kernel drivers</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/friday-squid-blogging-regulating-squid-fishing-in-the-south-pacific/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T18:10:25.132184+00:00</news:publication_date>
      <news:title>Squid Overfishing: A South Pacific Crisis</news:title>
      <news:keywords>SPRFMO, South Pacific, marine conservation, overfishing, squid fishing</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/how-enverus-secures-salesforce-data-and-prevents-data-breaches-with-varonis/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T16:40:21.463116+00:00</news:publication_date>
      <news:title>Enverus Dodges SaaS Attack [Varonis Insight]</news:title>
      <news:keywords>SaaS security, Varonis, data breach prevention, enverus, identity threat detection, salesforce security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/megalodon-github-attack-targets-5561-repos-with-malicious-cicd-workflows/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T15:03:38.670171+00:00</news:publication_date>
      <news:title>GitHub Attack [5,561 Repos] Uses Malicious CI/CD Workflows</news:title>
      <news:keywords>ci/cd, github attack, malicious workflows, megalodon, secrets exfiltration, supply chain attack</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/verizon-dbir-healthcare-fends-off-increased-social-engineering-attacks/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T14:24:29.490053+00:00</news:publication_date>
      <news:title>Healthcare Under Fire: Social Engineering Dominates Verizon DBIR</news:title>
      <news:keywords>AI in cyberattacks, Verizon DBIR, data breaches, healthcare cybersecurity, ransomware, social engineering</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/cve-2026-46333-local-root-privilege-escalation-and-credential-disclosure-in-the-linux-kernel-ptrace-path/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T13:52:20.521525+00:00</news:publication_date>
      <news:title>Linux Kernel Root Exploit Revealed [CVE-2026-46333]</news:title>
      <news:keywords>cve-2026-46333, linux kernel, local privilege escalation, ptrace, root access</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/underminr-vulnerability-lets-attackers-hide-malicious-connections-behind-trusted-domains/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T12:46:53.918989+00:00</news:publication_date>
      <news:title>Underminr Flaw Lets Bad Actors Hide in Plain Sight</news:title>
      <news:keywords>cdn, cybersecurity, domain fronting, malicious connections, underminr, vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/laravel-lang-php-packages-compromised-to-deliver-cross-platform-credential-stealer/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T11:34:18.296514+00:00</news:publication_date>
      <news:title>Laravel-Lang Packages Hit by Supply Chain Attack [2026]</news:title>
      
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/drupal-vulnerability-in-hacker-crosshairs-shortly-after-disclosure/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T10:32:10.077036+00:00</news:publication_date>
      <news:title>Drupal Exploit Found in the Wild Hours After Patch</news:title>
      <news:keywords>SQL injection, cve-2026-9082, cyber attack, drupal, postgresql, website security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/foul-play-fake-fifa-websites-target-soccer-fans-looking-for-world-cup-tickets-merchandise/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T08:42:40.981010+00:00</news:publication_date>
      <news:title>Fake FIFA Sites Fleece Fans</news:title>
      <news:keywords>FIFA, World Cup 2026, cybersecurity, phishing, scams, typosquatting</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/litespeed-cpanel-plugin-cve-2026-48172-exploited-to-run-scripts-as-root/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T07:36:49.298249+00:00</news:publication_date>
      <news:title>LiteSpeed Plugin Exploited for Root Access</news:title>
      <news:keywords>CVE-2026-48172, LiteSpeed, cPanel, root access, script execution, vulnerability exploitation</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/daily-briefing-may-23-2026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T07:00:00.420243+00:00</news:publication_date>
      <news:title>Daily Briefing: May 23, 2026</news:title>
      
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-recognized-as-a-leader-in-the-forrester-wavetm-for-workforce-identity-security-platforms/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:55:51.372221+00:00</news:publication_date>
      <news:title>Microsoft Entra: Leader in Workforce Identity Security?</news:title>
      <news:keywords>ai identity, cybersecurity, forrester wave, identity-security, microsoft entra, workforce identity</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/from-edge-appliance-to-enterprise-compromise-multi-stage-linux-intrusion-via-f5-and-confluence/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:47:34.320649+00:00</news:publication_date>
      <news:title>Linux Breached via F5 & Confluence [New Tactics]</news:title>
      <news:keywords>Active Directory compromise, Confluence vulnerability, F5 BIG-IP, Linux intrusion, edge appliance compromise, edge appliance security, identity-centric attacks, multi-stage attack</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/ghostwriter-targets-ukraine-government-entities-with-prometheus-phishing-malware/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:43:06.442250+00:00</news:publication_date>
      <news:title>Ghostwriter's Prometheus Play: Ukraine Govt Targeted with New Phishing Malware</news:title>
      <news:keywords>cobalt strike, cyber warfare, ghostwriter, phishing, prometheus malware, ukraine government</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/microsoft-security-success-stories-how-st-lukes-and-manpowergroup-are-securing-ai-foundations/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-23T05:31:52.197866+00:00</news:publication_date>
      <news:title>AI Security: St. Luke's & ManpowerGroup Success Stories</news:title>
      <news:keywords>AI security, ManpowerGroup, Microsoft Security Copilot, St. Luke's University Health Network, cloud security, zero trust</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/metasploit-wrap-up-05222026/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T19:02:15.525531+00:00</news:publication_date>
      <news:title>Metasploit Adds 5 New Exploits, Including Auth Bypass on Cisco SD-WAN</news:title>
      <news:keywords>Barracuda ESG, Cisco SD-WAN, HUSTOJ, Metasploit, cPanel, cve-2026-20182</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://threatdigest.io/article/netherlands-seizes-800-servers-of-hosting-firm-enabling-cyberattacks/</loc>
    <news:news>
      <news:publication>
        <news:name>Threat Digest</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-22T18:17:50.269412+00:00</news:publication_date>
      <news:title>Dutch Cops Seize 800 Servers Enabling Cyberattacks</news:title>
      <news:keywords>FIOD, Netherlands, Stark Industries, WorkTitans B.V., cyberattack hosting, sanctions</news:keywords>
    </news:news>
  </url>
</urlset>
