<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://plainsec.com/stories/3de74f1b-37c0-4c9f-8ff2-ed7c9d0af181/poellm-hides-its-c2-in-github-poetry</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>PoeLLM Hides Its C2 in GitHub Poetry</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3de74f1b-37c0-4c9f-8ff2-ed7c9d0af181/poellm-hides-its-c2-in-github-poetry</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>PoeLLM trasforma i server esposti in una rete che si autoalimenta</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8c424ac7-5508-47a0-acee-f5703abee3a0/hfs-cookie-flaw-opens-a-remote-code-execution-path</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>HFS Cookie Flaw Opens a Remote Code Execution Path</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8c424ac7-5508-47a0-acee-f5703abee3a0/hfs-cookie-flaw-opens-a-remote-code-execution-path</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>HFS trasforma un cookie bug in esecuzione remota</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4f9a1776-a93d-4e7d-ba9a-d20cbe417da6/fortibleed-locks-out-fortinet-defenders</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T14:48:57Z</news:publication_date>
      <news:title>FortiBleed Turns Fortinet Logins Into Brokered Access</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/4f9a1776-a93d-4e7d-ba9a-d20cbe417da6/fortibleed-locks-out-fortinet-defenders</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T14:48:57Z</news:publication_date>
      <news:title>FortiBleed passa dal furto all’accesso rivenduto</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8af5a865-a929-43cf-95df-666a4771993c/fbi-breach-traces-to-a-missed-peoplesoft-patch</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>FBI Breach Followed a Missed PeopleSoft Patch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8af5a865-a929-43cf-95df-666a4771993c/fbi-breach-traces-to-a-missed-peoplesoft-patch</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Un patch mancata apre il varco al breach FBI</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/668551ad-ae5a-46d8-95b7-0984bc8f0a19/asos-app-alert-turned-extortion-channel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>ASOS App Alert Turned Extortion Channel</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/668551ad-ae5a-46d8-95b7-0984bc8f0a19/asos-app-alert-turned-extortion-channel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>L’app ASOS diventa il mezzo del ricatto</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5b78305e-1230-44d2-9416-6ba26adcca85/gentlemen-affiliate-broke-the-raas-money-flow</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Gentlemen Affiliate Broke the RaaS Money Flow</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5b78305e-1230-44d2-9416-6ba26adcca85/gentlemen-affiliate-broke-the-raas-money-flow</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Un affiliato di The Gentlemen rompe la filiera del ransomware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/16a0ce1e-8904-4ba5-ad3f-7ac05acf7679/cve-2026-21589-atlassian-bitbucket</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T08:30:07Z</news:publication_date>
      <news:title>Atlassian File-Read Flaw Draws Live Probing</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/16a0ce1e-8904-4ba5-ad3f-7ac05acf7679/cve-2026-21589-atlassian-bitbucket</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T08:30:07Z</news:publication_date>
      <news:title>Il file-read di Atlassian espone credenziali e chiavi</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5ae62da1-328e-4883-b2ec-c913a72e4650/forescout-finds-pqc-bottleneck-in-medical-hardware</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>Forescout Finds PQC Bottleneck in Medical Hardware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5ae62da1-328e-4883-b2ec-c913a72e4650/forescout-finds-pqc-bottleneck-in-medical-hardware</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>La migrazione PQC nelle strutture sanitarie dipende dall’hardware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6f6df11c-7fda-49ad-9042-d48c9a3c12b5/nikkei-mailbox-hijack-reached-journalistic-sources</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T10:46:34Z</news:publication_date>
      <news:title>Nikkei Mailbox Hijack Reached Journalistic Sources</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6f6df11c-7fda-49ad-9042-d48c9a3c12b5/nikkei-mailbox-hijack-reached-journalistic-sources</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T10:46:34Z</news:publication_date>
      <news:title>La mailbox di Nikkei diventa una piattaforma di phishing</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1ef39c14-d4ae-4a5c-8a98-cd1f14353a68/clickfix-uses-browser-cache-to-evade-run-limits</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T08:30:07Z</news:publication_date>
      <news:title>ClickFix Uses Browser Cache to Evade Run Limits</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/1ef39c14-d4ae-4a5c-8a98-cd1f14353a68/clickfix-uses-browser-cache-to-evade-run-limits</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T08:30:07Z</news:publication_date>
      <news:title>ClickFix usa la cache del browser per aggirare Run</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/eab710d4-576c-4c0c-9f66-6a3b5fe60c54/wikimedia-says-openai-agents-strained-wikipedia-operations</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Wikimedia Agents Shifted From Edits to Proxy Abuse</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/eab710d4-576c-4c0c-9f66-6a3b5fe60c54/wikimedia-says-openai-agents-strained-wikipedia-operations</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Gli agenti OpenAI trasformano i tool Wikimedia in proxy</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/881e70a6-b1cf-4541-bda9-c03da75d29d1/arizona-courts-breach-exposed-protection-orders</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T20:52:24Z</news:publication_date>
      <news:title>Arizona Courts Breach Exposed Protection Orders</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/881e70a6-b1cf-4541-bda9-c03da75d29d1/arizona-courts-breach-exposed-protection-orders</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T20:52:24Z</news:publication_date>
      <news:title>I record dei tribunali esposti oltre le semplici tasse arretrate</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c3f4a1d8-c2e7-491c-8801-3d62b8628f91/langflow-exploitation-turns-ai-builders-into-secret-vaults</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>Langflow Exploitation Turns AI Builders Into Secret Vaults</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c3f4a1d8-c2e7-491c-8801-3d62b8628f91/langflow-exploitation-turns-ai-builders-into-secret-vaults</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>Langflow trasforma un bug in furto di credenziali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d2f6b172-7996-4ff8-b60d-5c365d321943/google-blocks-counterfeit-certificates-after-registry-breach</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>Registry Hijack Minted Valid Google Certificates</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d2f6b172-7996-4ff8-b60d-5c365d321943/google-blocks-counterfeit-certificates-after-registry-breach</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>La fiducia del browser è stata dirottata a monte</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f9853266-dd0d-4c5a-be77-9fe3ddf056cf/wordpress-plugin-xss-leaves-backdoors-behind</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T00:31:07Z</news:publication_date>
      <news:title>WordPress Plugin XSS Leaves Backdoors Behind</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f9853266-dd0d-4c5a-be77-9fe3ddf056cf/wordpress-plugin-xss-leaves-backdoors-behind</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T00:31:07Z</news:publication_date>
      <news:title>Lo stored XSS diventa accesso amministratore persistente su WordPress</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d302451d-e498-482c-88b8-237d7d9962ef/github-copilot-cli-leaks-secrets-through-encrypted-pages</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>GitHub Copilot CLI Leaks Secrets Through Encrypted Pages</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d302451d-e498-482c-88b8-237d7d9962ef/github-copilot-cli-leaks-secrets-through-encrypted-pages</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>Copilot CLI può trasformare una pagina web in furto di segreti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5e86adae-3e24-4e3d-b925-a485e61ae37f/lmcache-routable-cache-server-enables-remote-code-execution</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T22:59:50Z</news:publication_date>
      <news:title>LMCache Routable Cache Server Enables Remote Code Execution</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5e86adae-3e24-4e3d-b925-a485e61ae37f/lmcache-routable-cache-server-enables-remote-code-execution</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T22:59:50Z</news:publication_date>
      <news:title>LMCache espone l’LLM serving a RCE senza patch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f8170250-1a0c-4b34-8949-0d3944b37cec/sonicwall-sma1000-series-appliances-affected-by-multiple-vulnerabilities</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T10:49:14Z</news:publication_date>
      <news:title>SonicWall’s SMA1000 Fix Still Needs One More Step</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f8170250-1a0c-4b34-8949-0d3944b37cec/sonicwall-sma1000-series-appliances-affected-by-multiple-vulnerabilities</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T10:49:14Z</news:publication_date>
      <news:title>SonicWall SMA1000 richiede un secondo hotfix</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a8a78f7a-d407-424b-b395-5cedce59c074/ransomware-goes-after-the-recovery-path</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Ransomware Goes After the Recovery Path</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/a8a78f7a-d407-424b-b395-5cedce59c074/ransomware-goes-after-the-recovery-path</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>I backup sono il nuovo bersaglio del ransomware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c26cf471-2a71-4e93-a855-f21259e9c5a2/coalition-pushes-cisa-to-assign-ot-ownership</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>Coalition Pushes CISA to Assign OT Ownership</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c26cf471-2a71-4e93-a855-f21259e9c5a2/coalition-pushes-cisa-to-assign-ot-ownership</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>Cisa sotto pressione per colmare il vuoto sull’ot federale</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/86cb38ca-398c-4a9c-8567-5a4f5a3f4163/pwn2own-ireland-opens-with-mobile-focus</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Pwn2Own Day One Put AI Tools in Scope</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/86cb38ca-398c-4a9c-8567-5a4f5a3f4163/pwn2own-ireland-opens-with-mobile-focus</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Pwn2Own mostra che l’AI espone bug più pesanti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/62eacc39-8c66-4a4f-817d-a1419e7ad580/outlook-blocks-msix-installer-attachments</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>Microsoft Outlook Drops MSIX Email Delivery</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/62eacc39-8c66-4a4f-817d-a1419e7ad580/outlook-blocks-msix-installer-attachments</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>Outlook blocca gli installer MSIX via email</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9ac21280-7134-499a-8765-e4ac850ad81a/cve-2026-106197-google-chrome</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Chrome 155 Patches Four Critical Memory Bugs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/9ac21280-7134-499a-8765-e4ac850ad81a/cve-2026-106197-google-chrome</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Chrome chiude 247 falle, quattro sono critiche</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/29c27f06-1e36-48da-84ee-727451c72de1/cisco-splits-apic-and-meraki-fixes-across-the-stack</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>Cisco Splits APIC and Meraki Fixes Across the Stack</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/29c27f06-1e36-48da-84ee-727451c72de1/cisco-splits-apic-and-meraki-fixes-across-the-stack</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>Cisco chiude APIC e Meraki con più rilasci distinti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8a41536b-98fb-4bd8-a929-28ce5015fb86/mcp-marketplaces-sell-trust-without-governance</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>MCP Marketplaces Sell Trust Without Governance</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8a41536b-98fb-4bd8-a929-28ce5015fb86/mcp-marketplaces-sell-trust-without-governance</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>La fiducia cieca nei server MCP apre una superficie d’attacco</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/63f5118c-46d9-4cc8-b6df-9ae94486446b/crowdstrike-finds-a-blind-spot-in-llm-guards</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T02:26:11Z</news:publication_date>
      <news:title>CrowdStrike Finds a Blind Spot in LLM Guards</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/63f5118c-46d9-4cc8-b6df-9ae94486446b/crowdstrike-finds-a-blind-spot-in-llm-guards</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T02:26:11Z</news:publication_date>
      <news:title>I filtri per request saltano quando i prompt si sommano</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ef3ef51e-f0d9-4c4f-9b08-32250f9eb0bf/fake-ai-sites-steal-ad-account-logins</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>Fake ChatGPT Sites Steal Ad Accounts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ef3ef51e-f0d9-4c4f-9b08-32250f9eb0bf/fake-ai-sites-steal-ad-account-logins</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>Le frodi su ChatGPT e Gemini bucano la MFA degli account adv</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/fc69f824-6c1c-4467-8d88-1ea68084d0e1/blinder-tunnel-hides-iranian-intrusions-in-github</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Blinder Tunnel Hides Iranian Intrusions in GitHub</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/fc69f824-6c1c-4467-8d88-1ea68084d0e1/blinder-tunnel-hides-iranian-intrusions-in-github</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Blinder Tunnel nasconde il C2 in GitHub</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/967db37d-8a9d-49fb-8b4c-0009cfb74b55/ploutus-arrest-could-link-atm-jackpotting-crews</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Ploutus Arrest Could Link ATM Jackpotting Crews</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/967db37d-8a9d-49fb-8b4c-0009cfb74b55/ploutus-arrest-could-link-atm-jackpotting-crews</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Arrestato il presunto ideatore di Ploutus</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ab4951de-f526-43a5-be8e-1f11c17e2588/risolte-vulnerabilit-nei-chipset-mediatek</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>MediaTek Bulletin Pushes Risk to OEM Rollouts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ab4951de-f526-43a5-be8e-1f11c17e2588/risolte-vulnerabilit-nei-chipset-mediatek</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>La patch MediaTek vale solo quando arriva sugli OEM</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5efe9ff0-419a-480a-b002-5ec2db841896/hpe-ilo-7-bypass-exposes-remote-management</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>HPE iLO 7 Bypass Exposes Remote Management</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5efe9ff0-419a-480a-b002-5ec2db841896/hpe-ilo-7-bypass-exposes-remote-management</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>HPE iLO 7 accetta accessi senza credenziali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/51f37da7-dda4-415c-8a38-95b1a35b1445/dell-dsu-cli-flaw-can-hand-out-root</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Dell DSU CLI Flaw Can Hand Out Root</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/51f37da7-dda4-415c-8a38-95b1a35b1445/dell-dsu-cli-flaw-can-hand-out-root</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Un tool di deployment porta a root su Linux</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8c531b9f-56f7-41e9-b259-abea4bdcabab/datadog-spots-bedrock-checks-in-stolen-aws-keys</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Datadog Spots Bedrock Checks in Stolen AWS Keys</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8c531b9f-56f7-41e9-b259-abea4bdcabab/datadog-spots-bedrock-checks-in-stolen-aws-keys</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Le AWS key rubate valgono di più se aprono Bedrock</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/31a29641-2103-41aa-9a18-6663d000954e/shinyhunters-claim-peoplesoft-zero-day-broke-fbi-defenses</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T04:33:37Z</news:publication_date>
      <news:title>ShinyHunters Claim PeopleSoft Zero-Day Broke FBI Defenses</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/31a29641-2103-41aa-9a18-6663d000954e/shinyhunters-claim-peoplesoft-zero-day-broke-fbi-defenses</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T04:33:37Z</news:publication_date>
      <news:title>PeopleSoft esposto in rete amplia la portata del zero-day</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d8d656f2-2fec-4735-87b9-fde3161a093b/malfex-malware-still-slips-past-npm-cleanup</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>MALFEX Malware Still Slips Past npm Cleanup</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d8d656f2-2fec-4735-87b9-fde3161a093b/malfex-malware-still-slips-past-npm-cleanup</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>MALFEX resta dentro npm nonostante le rimozioni</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f7000aeb-4eed-45d0-bf03-2991a5c86040/langflow-mehrere-schwachstellen</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T16:55:48Z</news:publication_date>
      <news:title>Langflow PoCs Expose Header Trust and MCP RCE</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f7000aeb-4eed-45d0-bf03-2991a5c86040/langflow-mehrere-schwachstellen</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T16:55:48Z</news:publication_date>
      <news:title>Langflow espone l’AI workflow con un header falsificato</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/15eff06c-3f33-474d-9540-dbad91daf72d/atb-extortion-leak-shifts-focus-to-alleged-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-05T23:19:34Z</news:publication_date>
      <news:title>ATB Extortion Leak Shifts Focus to Alleged Theft</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/15eff06c-3f33-474d-9540-dbad91daf72d/atb-extortion-leak-shifts-focus-to-alleged-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-05T23:19:34Z</news:publication_date>
      <news:title>Campione di dati pubblicato, la pressione sale su ATB</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/0b09ca51-64d9-4d64-8845-410016e53d15/action1-rmm-hides-inside-a-phishing-loader</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>Action1 RMM Hides Inside a Phishing Loader</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/0b09ca51-64d9-4d64-8845-410016e53d15/action1-rmm-hides-inside-a-phishing-loader</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>Action1 usato come canale invisibile per il controllo remoto</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/78466b4e-77c8-4b51-8802-ee420832b967/cve-2026-79820-hpe-ilo</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T04:33:37Z</news:publication_date>
      <news:title>HPE iLO Auth Bypass Hits the Hardware Plane</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/78466b4e-77c8-4b51-8802-ee420832b967/cve-2026-79820-hpe-ilo</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T04:33:37Z</news:publication_date>
      <news:title>iLO di HPE espone la console di gestione completa</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/e9dc87ce-2b68-4e86-aa22-19ad356b131c/milk-dragon-moves-retail-phishing-into-marketplace-ads</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T04:33:37Z</news:publication_date>
      <news:title>Milk Dragon Moves Retail Phishing Into Marketplace Ads</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/e9dc87ce-2b68-4e86-aa22-19ad356b131c/milk-dragon-moves-retail-phishing-into-marketplace-ads</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T04:33:37Z</news:publication_date>
      <news:title>Marketplace social usati per rubare carte e OTP</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6a5fead5-661a-403f-a755-a95f3537e4f0/belarusian-hackers-hid-in-a-russian-health-network</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T06:26:17Z</news:publication_date>
      <news:title>Belarusian Hackers Hid in a Russian Health Network</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6a5fead5-661a-403f-a755-a95f3537e4f0/belarusian-hackers-hid-in-a-russian-health-network</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T06:26:17Z</news:publication_date>
      <news:title>Una rete sanitaria-trampolino apre il fianco dei fornitori collegati</news:title>
    </news:news>
  </url>
</urlset>
