<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://plainsec.com/stories/07398274-f7ab-43c3-90bc-5203d77ab63d/hunt-io-finds-dahua-cameras-kept-reconnecting</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>Hunt.io Finds Dahua Cameras Kept Reconnecting</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/07398274-f7ab-43c3-90bc-5203d77ab63d/hunt-io-finds-dahua-cameras-kept-reconnecting</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>Camere Dahua esposte anche dopo il reset</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f05ca80b-5f6e-4c17-8996-f524cf2fd0d4/mlflow-webhook-test-ssrf-reached-internal-metadata</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>MLflow SSRF Is Already Harvesting Cloud Credentials</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f05ca80b-5f6e-4c17-8996-f524cf2fd0d4/mlflow-webhook-test-ssrf-reached-internal-metadata</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>MLflow diventa un proxy per rubare credenziali cloud</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/79ed23de-c8f6-4304-9a52-b6a4ca5c473f/gitlab-advisory-covers-13-flaws-across-18-x-and-19-x</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>GitLab GraphQL Flaws Invite Fast State Changes</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/79ed23de-c8f6-4304-9a52-b6a4ca5c473f/gitlab-advisory-covers-13-flaws-across-18-x-and-19-x</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>GitLab espone la scrittura anonima sulla GraphQL pubblica</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/db636e44-6cb2-4eaa-94a4-22d0295c5c65/medusa-scales-ransomware-with-brokered-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>Medusa Turns Brokered Access Into Faster Intrusions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/db636e44-6cb2-4eaa-94a4-22d0295c5c65/medusa-scales-ransomware-with-brokered-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>Medusa scala con accessi comprati e exploit in 24 ore</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8a8ee71b-fb44-4f9a-9056-f45e5dac134c/carecloud-breach-count-jumps-to-3-76-million</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>CareCloud Breach Count Climbs Into Millions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8a8ee71b-fb44-4f9a-9056-f45e5dac134c/carecloud-breach-count-jumps-to-3-76-million</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>CareCloud, il cloud sanitario espone 3,7 milioni di pazienti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9c9ab7dc-f7d5-4968-bbeb-53a4a88df13b/cisa-confirms-windows-task-host-ransomware-exploitation</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>CISA Confirms Windows Task Host Ransomware Exploitation</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/9c9ab7dc-f7d5-4968-bbeb-53a4a88df13b/cisa-confirms-windows-task-host-ransomware-exploitation</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>Ransomware sfrutta il Task Host di Windows per elevare i privilegi</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/2c1c34b8-d571-43f3-9849-226879c749b2/safepal-breach-exposes-orders-not-wallets</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>SafePal Order Leak Moves Into Resale</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/2c1c34b8-d571-43f3-9849-226879c749b2/safepal-breach-exposes-orders-not-wallets</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>Dalla fuga di dati al mercato del phishing SafePal</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8c93665e-a23c-464c-b63c-cfde3ae76ba9/geoserver-flaw-draws-fast-probing-possible-server-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>GeoTools Regression Reopens GeoServer SQL Injection</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8c93665e-a23c-464c-b63c-cfde3ae76ba9/geoserver-flaw-draws-fast-probing-possible-server-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>GeoTools riapre un vecchio buco in GeoServer</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3d195d15-9353-47d1-a139-ca808a5926de/twinloot-hides-its-control-channel-in-microsoft-365</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>TwinLoot Hides Its Control Channel in Microsoft 365</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3d195d15-9353-47d1-a139-ca808a5926de/twinloot-hides-its-control-channel-in-microsoft-365</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>Microsoft 365 diventa il canale di comando di TwinLoot</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/af66c600-7b97-4cd8-8542-b6885c4c58c8/openai-adds-costly-monitoring-to-model-training</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T12:27:57Z</news:publication_date>
      <news:title>OpenAI Adds Costly Monitoring to Model Training</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/af66c600-7b97-4cd8-8542-b6885c4c58c8/openai-adds-costly-monitoring-to-model-training</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T12:27:57Z</news:publication_date>
      <news:title>La sicurezza dei modelli diventa un collo di bottiglia</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/06238a6f-1303-4d25-be02-bedf58e0f679/froxlor-api-leak-exposes-password-hashes-and-2fa-seeds</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T12:27:57Z</news:publication_date>
      <news:title>Froxlor API Leak Exposes Password Hashes and 2FA Seeds</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/06238a6f-1303-4d25-be02-bedf58e0f679/froxlor-api-leak-exposes-password-hashes-and-2fa-seeds</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T12:27:57Z</news:publication_date>
      <news:title>Un’API di Froxlor espone hash e seed 2FA</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4fe9110e-0f15-4d6f-950f-9795747414dd/silkparasite-fields-five-new-rats-in-central-asia</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>SilkParasite Fields Five New RATs in Central Asia</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/4fe9110e-0f15-4d6f-950f-9795747414dd/silkparasite-fields-five-new-rats-in-central-asia</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>SilkParasite moltiplica i RAT contro i governi dell’Asia centrale</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/78cae32f-a6cf-4e0c-a692-f9db196e5096/claude-search-lure-pushed-macsync-to-mac-users</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T12:27:57Z</news:publication_date>
      <news:title>Microsoft Expands MacSync Beyond Rotating C2 Domains</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/78cae32f-a6cf-4e0c-a692-f9db196e5096/claude-search-lure-pushed-macsync-to-mac-users</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T12:27:57Z</news:publication_date>
      <news:title>I domini cambiano, il furto continua su MacSync</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/25e6bc32-45ce-46f6-afa2-3980be2b2cde/anthropic-and-epfl-map-agent-to-agent-prompt-spread</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>Anthropic and EPFL Map Agent-to-Agent Prompt Spread</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/25e6bc32-45ce-46f6-afa2-3980be2b2cde/anthropic-and-epfl-map-agent-to-agent-prompt-spread</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T04:29:31Z</news:publication_date>
      <news:title>Un warning nel prompt ferma la propaganda tra agenti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f41f6450-e6c3-443b-93ca-ff6f27fa128e/mabna-charges-expose-academic-data-resale-network</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>Mabna Charges Expose Academic Data Resale Network</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f41f6450-e6c3-443b-93ca-ff6f27fa128e/mabna-charges-expose-academic-data-resale-network</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>Le inbox dei professori diventano un mercato nero</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1ed9ee51-453c-47d2-ac0a-0c02de523870/clop-s-windchill-shell-knows-too-much</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T08:21:44Z</news:publication_date>
      <news:title>Clop’s Windchill Shell Knows Too Much</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/1ed9ee51-453c-47d2-ac0a-0c02de523870/clop-s-windchill-shell-knows-too-much</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T08:21:44Z</news:publication_date>
      <news:title>Windchill diventa un estrattore di credenziali e file</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/806368c9-a023-4af8-8c27-1eb383442bd2/oracle-construction-advisory-flags-trust-breaking-flaw</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>Oracle EBS Patches 120 Flaws Across Core Modules</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/806368c9-a023-4af8-8c27-1eb383442bd2/oracle-construction-advisory-flags-trust-breaking-flaw</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T16:21:53Z</news:publication_date>
      <news:title>L'intera ERP Oracle esposta da 120 falle</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/38f46841-750c-4ffd-a3d8-4b01b29673ba/dgfip-breach-exposes-tax-data-through-stolen-identity</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T04:27:09Z</news:publication_date>
      <news:title>DGFiP Breach Ran Through Trusted Accounts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/38f46841-750c-4ffd-a3d8-4b01b29673ba/dgfip-breach-exposes-tax-data-through-stolen-identity</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T04:27:09Z</news:publication_date>
      <news:title>La sospensione degli account non ha fermato il furto in DGFiP</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/75f4c064-9adf-4c76-8879-ead6115ac01a/azure-tenant-dumps-expose-the-org-chart</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T23:33:34Z</news:publication_date>
      <news:title>Azure Tenant Dumps Expose the Org Chart</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/75f4c064-9adf-4c76-8879-ead6115ac01a/azure-tenant-dumps-expose-the-org-chart</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T23:33:34Z</news:publication_date>
      <news:title>L’export del tenant diventa la mappa per il BEC</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/52bd253b-7952-4ca8-ab3e-3ce6bd657a1f/sap-commerce-cloud-exploit-lands-days-after-patch</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T04:27:09Z</news:publication_date>
      <news:title>SAP Commerce Cloud Exploit Lands Days After Patch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/52bd253b-7952-4ca8-ab3e-3ce6bd657a1f/sap-commerce-cloud-exploit-lands-days-after-patch</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T04:27:09Z</news:publication_date>
      <news:title>SAP Commerce Cloud esposto senza credenziali rubate</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3ef89fb9-180d-43dc-b40a-e646f7866b9c/irregular-s-test-setup-reached-real-targets</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T17:09:06Z</news:publication_date>
      <news:title>Irregular’s Sandbox Mistake Hit a Real Domain</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3ef89fb9-180d-43dc-b40a-e646f7866b9c/irregular-s-test-setup-reached-real-targets</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T17:09:06Z</news:publication_date>
      <news:title>Un errore di naming trasforma la simulazione in attacco reale</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6c19cb1f-cfea-4096-a57e-362612a86ff0/copilot-s-hidden-url-turned-clicks-into-prompts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:07:07Z</news:publication_date>
      <news:title>Microsoft Copilot Patch Lands Amid Scope Dispute</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6c19cb1f-cfea-4096-a57e-362612a86ff0/copilot-s-hidden-url-turned-clicks-into-prompts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:07:07Z</news:publication_date>
      <news:title>Copilot Personal: patch su una falla ancora contestata</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/40203f24-dce8-49c5-8a7a-fcf61255337e/attackers-use-ai-to-rank-what-to-steal</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T17:09:06Z</news:publication_date>
      <news:title>Attackers Use AI to Rank What to Steal</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/40203f24-dce8-49c5-8a7a-fcf61255337e/attackers-use-ai-to-rank-what-to-steal</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T17:09:06Z</news:publication_date>
      <news:title>L’AI diventa l’operatore dentro l’intrusione</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/b9644f97-75f6-415c-b237-ebb9720d6d1b/unisoc-modem-flaw-breaks-the-android-boundary</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T23:33:34Z</news:publication_date>
      <news:title>Unisoc Modem Flaw Breaks the Android Boundary</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/b9644f97-75f6-415c-b237-ebb9720d6d1b/unisoc-modem-flaw-breaks-the-android-boundary</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T23:33:34Z</news:publication_date>
      <news:title>Il modem diventa la via d’ingresso al kernel Android</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/efb3c6b1-d210-47fc-ae59-969e62d52ae4/evooo1bot-turns-routers-into-stealth-proxies</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T18:32:19Z</news:publication_date>
      <news:title>Evooo1Bot Turns Edge CVEs Into Proxy Nodes</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/efb3c6b1-d210-47fc-ae59-969e62d52ae4/evooo1bot-turns-routers-into-stealth-proxies</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T18:32:19Z</news:publication_date>
      <news:title>I gateway compromessi diventano proxy persistenti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/78263682-2716-4b0e-b961-d36e46d6f4ca/user-profile-builder-bug-can-hand-out-admin-sessions</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T02:22:27Z</news:publication_date>
      <news:title>Forminator Upload Flaw Can Run Attacker PHP</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/78263682-2716-4b0e-b961-d36e46d6f4ca/user-profile-builder-bug-can-hand-out-admin-sessions</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T02:22:27Z</news:publication_date>
      <news:title>La form di WordPress può diventare un webshell host</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1b34a604-7a3e-4ff5-a463-4588dbf60ceb/city-forum-reads-portal-data-through-guest-accounts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T02:22:27Z</news:publication_date>
      <news:title>City Forum Emerges as One Persistent Scraper</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/1b34a604-7a3e-4ff5-a463-4588dbf60ceb/city-forum-reads-portal-data-through-guest-accounts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T02:22:27Z</news:publication_date>
      <news:title>Un solo scraper tiene aperti i portal guest di Salesforce e ServiceNow</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/702ba5e9-6823-4932-b37d-6afc356103fc/anthropic-tests-show-claude-agents-sabotaging-peers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T00:34:58Z</news:publication_date>
      <news:title>Anthropic Tests Show Claude Agents Sabotaging Peers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/702ba5e9-6823-4932-b37d-6afc356103fc/anthropic-tests-show-claude-agents-sabotaging-peers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T00:34:58Z</news:publication_date>
      <news:title>Claude agenti contro Claude: il rischio interno emerge</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f000ca9f-a99b-4898-960c-8ee812c9cb8d/mcp-connectors-hide-a-high-value-trust-boundary</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T13:39:09Z</news:publication_date>
      <news:title>MCP Connectors Hide a High-Value Trust Boundary</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f000ca9f-a99b-4898-960c-8ee812c9cb8d/mcp-connectors-hide-a-high-value-trust-boundary</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T13:39:09Z</news:publication_date>
      <news:title>MCP trasforma i connector AI in un archivio di segreti privilegiati</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/daaa4466-207f-4157-a8b7-68a0486d9881/vcenter-exploits-left-reverse-ssh-footholds-behind</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T08:34:49Z</news:publication_date>
      <news:title>CISA’s KEV Update Spans Four Live Exploits</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/daaa4466-207f-4157-a8b7-68a0486d9881/vcenter-exploits-left-reverse-ssh-footholds-behind</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T08:34:49Z</news:publication_date>
      <news:title>Quattro CVE in KEV, l’esposizione si allarga su più piattaforme</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/54dbf5d1-b602-441e-9f98-439e12ac643f/amnesiastealer-adds-live-browser-session-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T19:16:51Z</news:publication_date>
      <news:title>AmnesiaStealer Adds Live Browser Session Control</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/54dbf5d1-b602-441e-9f98-439e12ac643f/amnesiastealer-adds-live-browser-session-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T19:16:51Z</news:publication_date>
      <news:title>AmnesiaStealer passa dal furto account al controllo della sessione</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a6386d71-9b59-4671-9c14-8181ec37b099/agent-guardrails-fail-before-the-model-speaks</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T15:02:03Z</news:publication_date>
      <news:title>Agent Guardrails Fail Before the Model Speaks</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/a6386d71-9b59-4671-9c14-8181ec37b099/agent-guardrails-fail-before-the-model-speaks</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T15:02:03Z</news:publication_date>
      <news:title>I guardrail del modello non bastano più agli agent</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1bcd3645-4ab1-4838-9ed9-dc11ecc7c858/certighost-lets-a-domain-user-impersonate-a-dc</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>Certighost Lets a Domain User Impersonate a DC</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/1bcd3645-4ab1-4838-9ed9-dc11ecc7c858/certighost-lets-a-domain-user-impersonate-a-dc</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>La CA di dominio diventa un oracle di fiducia</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/47d99a45-561f-475d-a393-3e49994933f9/germany-brazil-arrest-seven-in-clone-card-fraud-case</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>Germany, Brazil Arrest Seven in Clone-Card Fraud Case</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/47d99a45-561f-475d-a393-3e49994933f9/germany-brazil-arrest-seven-in-clone-card-fraud-case</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>Raffica di arresti in un caso di frode bancaria transfrontaliera</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d159fa84-f306-4536-8bce-8b2abff7bf72/jewelbug-merges-espionage-and-crypto-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>Jewelbug Merges Espionage and Crypto Theft</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d159fa84-f306-4536-8bce-8b2abff7bf72/jewelbug-merges-espionage-and-crypto-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>Jewelbug unisce spionaggio di Stato e furto crypto dallo stesso panel</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/52e779ce-6c0d-4f4f-acc7-1781a37232fe/windrelay-and-spynote-fueled-a-13-minute-call-scam</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>WindRelay and SpyNote Fueled a 13-Minute Call Scam</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/52e779ce-6c0d-4f4f-acc7-1781a37232fe/windrelay-and-spynote-fueled-a-13-minute-call-scam</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>Una chiamata da 13 minuti basta per clonare una carta</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9dff98a1-ea40-4cdc-8841-ad9f2b47f186/flashpoint-shows-infostealers-now-run-at-machine-speed</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>Flashpoint Shows Infostealers Now Run at Machine Speed</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/9dff98a1-ea40-4cdc-8841-ad9f2b47f186/flashpoint-shows-infostealers-now-run-at-machine-speed</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T02:23:13Z</news:publication_date>
      <news:title>I log rubati diventano un motore di accesso automatico</news:title>
    </news:news>
  </url>
</urlset>
