<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://plainsec.com/stories/94cb3aa2-29f4-4028-b90e-9508d83796d7/owa-access-now-survives-resets-and-reimaging</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>OWA Access Now Survives Resets and Reimaging</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/2c389046-c769-417c-bf50-fef23e54a208/misconfigured-ai-tests-became-real-intrusions</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Misconfigured AI Tests Became Real Intrusions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/e7aa2601-4174-4a6a-929b-38b06bb7f0c8/ai-agent-turns-public-cves-into-faster-attacks</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>AI Agent Turns Public CVEs Into Faster Attacks</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a6345617-b0c3-4e3b-92d7-c1859e390d54/ad-tag-compromise-turns-trusted-sites-into-stealers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Ad Tag Compromise Turns Trusted Sites Into Stealers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8636880c-a088-47b1-b9aa-c3963ba0d836/stolen-files-create-risk-even-when-operations-stay-up</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Stolen Files Create Risk Even When Operations Stay Up</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4424e2ba-9af3-41f1-a581-4e5e6943e2d6/one-carecloud-breach-reaches-thousands-of-practices</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>One CareCloud Breach Reaches Thousands of Practices</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/06953381-d204-4fac-9e06-6bff9bc5cce6/trusted-korean-pages-became-endpoint-compromise-paths</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Trusted Korean Pages Became Endpoint Compromise Paths</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/78de554b-d824-4f79-b346-d06442538320/adobe-campaign-classic-leaves-on-prem-deployments-exposed</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Adobe Campaign Classic Leaves On-Prem Deployments Exposed</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4dc4baa7-13db-4f99-acc0-4334cfa192b1/chrome-bug-discovery-is-outrunning-release-cadence</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Chrome Bug Discovery Is Outrunning Release Cadence</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/36e4565e-793b-4b06-8e9c-44f4bf9e3151/vcenter-flaws-expose-the-whole-virtual-estate</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>vCenter Flaws Expose the Whole Virtual Estate</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1558ca4e-498a-4691-9d57-fc44e305d5b0/xcode-malware-now-spreads-across-local-projects</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Xcode Malware Now Spreads Across Local Projects</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f506b21d-dab0-4bb0-b0ae-d2cf65c8e683/one-npm-playbook-reached-four-trusted-packages</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>One npm Playbook Reached Four Trusted Packages</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d0bb0dba-bd0c-43bb-b9f6-28c7e9c3c0e6/shared-plc-exposure-turns-one-attack-into-many</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Shared PLC Exposure Turns One Attack Into Many</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/e7f8cea0-bc3a-4a30-a4d3-92196defcf9d/cosmos-db-gateway-secret-breaks-tenant-boundaries</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Cosmos DB Gateway Secret Breaks Tenant Boundaries</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/e385a396-2da1-46f1-ad22-fd1d2bbc69b1/ruflo-s-default-bridge-leaves-ai-memory-open</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Ruflo’s Default Bridge Leaves AI Memory Open</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f2755dc3-0582-4ffd-af72-b2c57c9b81bd/hidden-remote-paths-let-plc-attacks-lock-out-operators</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Hidden Remote Paths Let PLC Attacks Lock Out Operators</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/afefbcf7-f43b-46d0-ace5-0148078c295d/breach-costs-hit-record-as-trust-becomes-the-expense</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T12:25:35Z</news:publication_date>
      <news:title>Breach Costs Hit Record as Trust Becomes the Expense</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/2eefbb18-6066-4e37-9193-a9e6775774bb/patch-windows-get-their-own-runtime-guard</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>Patch Windows Get Their Own Runtime Guard</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/25440bee-70fa-43cf-a446-915a0e07a9f5/one-malicious-page-can-reach-android-root</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>One Malicious Page Can Reach Android Root</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5c931e8c-4314-4274-ba3f-98a7c7b3b0a5/lazarus-tradecraft-spills-into-south-korea-s-ransomware-scene</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>Lazarus Tradecraft Spills Into South Korea’s Ransomware Scene</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/66113343-331a-4720-b836-b24c50dc33c1/imported-npm-betas-can-hand-over-node-hosts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>Imported npm Betas Can Hand Over Node Hosts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3cf962a3-93f8-45d1-be49-ecdd3e0cbb28/critical-services-need-a-disconnected-survival-mode</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>Critical Services Need a Disconnected Survival Mode</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/2f0a3d34-928b-43a0-8bf4-444d251cacfe/ai-agents-can-break-out-without-prompt-help</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>AI Agents Can Break Out Without Prompt Help</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4272e09a-fc30-4f06-97d9-acb27d4cc03e/default-wordpress-sites-can-be-taken-over-directly</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>Default WordPress Sites Can Be Taken Over Directly</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/cab1695d-3b71-46de-8e4c-0539c6f4609a/microsoft-consent-pages-let-phishing-bypass-fake-login-checks</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>Microsoft Consent Pages Let Phishing Bypass Fake-Login Checks</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1d064d17-156f-4ba5-a658-003dfb750e9e/ai-safety-tests-broke-out-into-live-systems</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-31T02:24:52Z</news:publication_date>
      <news:title>AI Safety Tests Broke Out Into Live Systems</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/702e3d90-0c2f-4422-b33d-0aa9cc5e31e9/infected-hosts-become-covert-operator-relays</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:31:31Z</news:publication_date>
      <news:title>Infected Hosts Become Covert Operator Relays</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/254bafbe-8935-49b0-974f-bf5e988bb870/linux-botnet-turns-process-kills-into-reboots</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:31:31Z</news:publication_date>
      <news:title>Linux Botnet Turns Process Kills Into Reboots</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/21eb343a-50a2-4d97-bc9d-4700cfecf151/public-exploit-turns-vbulletin-into-a-server-foothold</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:31:31Z</news:publication_date>
      <news:title>Public Exploit Turns vBulletin Into a Server Foothold</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1a29e2d0-bae1-4f89-8dad-c9cdf263afee/spring-boot-fat-jars-stay-exposed-after-fastjson-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:31:31Z</news:publication_date>
      <news:title>Spring Boot Fat-JARs Stay Exposed After Fastjson Bypass</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/bcf6cc60-52ca-4825-8c1b-c02f4f42a42e/teamcity-s-agent-channel-becomes-the-entry-point</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:31:31Z</news:publication_date>
      <news:title>TeamCity’s Agent Channel Becomes the Entry Point</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c9a0bb58-06dc-40d1-b911-a0791189dbb3/bmcs-stay-crackable-before-login</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:31:31Z</news:publication_date>
      <news:title>BMCs Stay Crackable Before Login</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/0caf70d6-32dd-4bce-ba79-7be80eb2a7dd/fcc-puts-new-robot-and-inverter-imports-at-risk</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:31:31Z</news:publication_date>
      <news:title>FCC Puts New Robot and Inverter Imports at Risk</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9594d2ad-5226-4051-8b5a-0e1ad47936be/public-android-rat-builder-expands-china-credential-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-30T02:31:31Z</news:publication_date>
      <news:title>Public Android RAT Builder Expands China Credential Theft</news:title>
    </news:news>
  </url>
</urlset>
