<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://plainsec.com/stories/dd8bd376-1907-4786-8c76-38952ce33667/gitlab-path-traversal-puts-servers-at-risk</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T19:04:26Z</news:publication_date>
      <news:title>GitLab Flaw Hits KEV Under Active Exploitation</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/dd8bd376-1907-4786-8c76-38952ce33667/gitlab-path-traversal-puts-servers-at-risk</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T19:04:26Z</news:publication_date>
      <news:title>GitLab passa da advisory a emergenza operativa</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/459db3dc-8d6e-4eb3-a699-f7f7a4415247/roundcube-flaw-turns-mail-logins-into-server-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Roundcube SQL Injection Hits Before Login</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/459db3dc-8d6e-4eb3-a699-f7f7a4415247/roundcube-flaw-turns-mail-logins-into-server-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Roundcube passa da abuso di account a compromissione pre-login</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6ebf0af2-8590-4227-b593-3d4adfe6397a/cisa-flags-teamcity-as-a-ransomware-entry-point</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>CISA Flags TeamCity as a Ransomware Entry Point</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6ebf0af2-8590-4227-b593-3d4adfe6397a/cisa-flags-teamcity-as-a-ransomware-entry-point</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>TeamCity diventa un varco per i ransomware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a685b742-5382-4a31-8481-c1a451495095/openai-agent-climbed-past-medicare-portal-controls</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>OpenAI Agent Crossed Portal Boundaries in Australia</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/a685b742-5382-4a31-8481-c1a451495095/openai-agent-climbed-past-medicare-portal-controls</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>L’agente di OpenAI ha oltrepassato il confine dei dati pubblici</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6b6348ca-ba20-472e-a045-0f023ed6324e/bitget-wallet-theft-exposes-custody-risk</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T12:33:52Z</news:publication_date>
      <news:title>Bitget’s Backend Became the Thief</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6b6348ca-ba20-472e-a045-0f023ed6324e/bitget-wallet-theft-exposes-custody-risk</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T12:33:52Z</news:publication_date>
      <news:title>Bitget, il backend che approva i prelievi è stato tradito</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/53596929-d845-44e4-be3c-643c2b7baf1d/fake-payroll-apps-hand-over-the-machine</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T19:04:26Z</news:publication_date>
      <news:title>Fake Payroll Apps Hand Over the Machine</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/53596929-d845-44e4-be3c-643c2b7baf1d/fake-payroll-apps-hand-over-the-machine</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T19:04:26Z</news:publication_date>
      <news:title>Un falso desktop per paghe apre la strada alla diversione degli stipendi</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/7f25fb45-0c0c-4854-ada0-cff21e458c5e/gemini-test-escaped-into-real-company-systems</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Gemini Test Escaped Into Real Company Systems</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/7f25fb45-0c0c-4854-ada0-cff21e458c5e/gemini-test-escaped-into-real-company-systems</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Gemini esce dal test e tocca sistemi reali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4b18fa0e-f2f7-4c55-9aee-160a24ea2465/proofpoint-finds-teamfiltration-on-forgotten-microsoft-365-accounts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Proofpoint Finds TeamFiltration on Forgotten Microsoft 365 Accounts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/4b18fa0e-f2f7-4c55-9aee-160a24ea2465/proofpoint-finds-teamfiltration-on-forgotten-microsoft-365-accounts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Account di servizio dimenticati aprono Microsoft 365</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/bb7a3201-07b7-4aae-ab88-b2bf36fc6252/remcontrol-uses-iptv-ads-to-reach-android-users</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>RemControl Uses Fake TVTap to Disarm Android Safety Checks</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/bb7a3201-07b7-4aae-ab88-b2bf36fc6252/remcontrol-uses-iptv-ads-to-reach-android-users</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Play Protect viene aggirato dal falso TVTap di RemControl</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/58e87901-8cec-4476-9466-a8e839e0dfc3/rapid7-finds-zimbra-can-rewrite-collaboration-trust</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T08:21:20Z</news:publication_date>
      <news:title>Rapid7 Finds Zimbra Can Rewrite Collaboration Trust</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/58e87901-8cec-4476-9466-a8e839e0dfc3/rapid7-finds-zimbra-can-rewrite-collaboration-trust</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T08:21:20Z</news:publication_date>
      <news:title>Zimbra trasforma la casella in una fabbrica di falsi</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9982227b-5bb6-44f4-928e-914b2ba3ee04/carbonato-turns-exposed-docker-daemons-into-botnet-hosts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Carbonato Turns Exposed Docker Daemons into Botnet Hosts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/9982227b-5bb6-44f4-928e-914b2ba3ee04/carbonato-turns-exposed-docker-daemons-into-botnet-hosts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Docker esposti trasformati in controllo remoto per botnet</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/35ab93e1-9a0f-4c2d-8500-d4822c5a58b3/storm-3168-used-azure-identities-to-wreck-tenants</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T19:04:26Z</news:publication_date>
      <news:title>Storm-3168 Used Azure Identities to Wreck Tenants</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/35ab93e1-9a0f-4c2d-8500-d4822c5a58b3/storm-3168-used-azure-identities-to-wreck-tenants</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T19:04:26Z</news:publication_date>
      <news:title>Azure: due service principal compromessi aprono la strada alla distruzione</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/7e26529a-fe3e-46d2-b804-e007573e55ac/rydox-guilty-plea-confirms-a-disrupted-market</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T15:50:02Z</news:publication_date>
      <news:title>Rydox Plea Confirms a Real Marketplace Takedown</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/7e26529a-fe3e-46d2-b804-e007573e55ac/rydox-guilty-plea-confirms-a-disrupted-market</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T15:50:02Z</news:publication_date>
      <news:title>Rydox finisce in aula: il sequestro chiude il market</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/004970be-ebe8-4f70-97ad-b875568247f3/solarwinds-fixes-two-unauthenticated-rce-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T06:25:37Z</news:publication_date>
      <news:title>SolarWinds Fixes Two Unauthenticated RCE Flaws</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/004970be-ebe8-4f70-97ad-b875568247f3/solarwinds-fixes-two-unauthenticated-rce-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T06:25:37Z</news:publication_date>
      <news:title>SolarWinds corregge due RCE, ma non ovunque conta allo stesso modo</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3316d19a-f376-4966-bb55-3e0207e11f8b/recorded-future-sees-russia-blending-cyber-and-physical-pressure</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T10:34:37Z</news:publication_date>
      <news:title>Recorded Future Sees Russia Blending Cyber and Physical Pressure</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3316d19a-f376-4966-bb55-3e0207e11f8b/recorded-future-sees-russia-blending-cyber-and-physical-pressure</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T10:34:37Z</news:publication_date>
      <news:title>La guerra ibrida russa si sposta su cyber, droni e disinformazione</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/00c76ee4-6c5f-4b41-a349-510b1ac7644e/doj-says-oxygen-forensics-hid-russian-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>DOJ Says Oxygen Forensics Hid Russian Control</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/00c76ee4-6c5f-4b41-a349-510b1ac7644e/doj-says-oxygen-forensics-hid-russian-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>La fiducia nel vendor cade quando l’owner è nascosto</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d8541b5e-cc98-4380-a046-b13389151ac9/hugging-face-study-shows-agents-chain-access-into-lateral-movement</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T12:33:52Z</news:publication_date>
      <news:title>Gemini Test Shows Prompts Don’t Stop Actions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d8541b5e-cc98-4380-a046-b13389151ac9/hugging-face-study-shows-agents-chain-access-into-lateral-movement</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T12:33:52Z</news:publication_date>
      <news:title>I prompt non bastano quando l’agente può agire</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6721938a-41a4-4c5c-96fc-0e4c5bf0b126/macsync-swaps-scripts-for-native-macos-binaries</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>MacSync Swaps Scripts for Native macOS Binaries</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6721938a-41a4-4c5c-96fc-0e4c5bf0b126/macsync-swaps-scripts-for-native-macos-binaries</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>MacSync cambia pelle e sfugge ai controlli statici</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d710f008-35b8-4b54-984b-66bc27ba98be/cisa-flags-certification-barriers-in-election-patching</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T16:30:54Z</news:publication_date>
      <news:title>CISA Flags Certification Barriers in Election Patching</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d710f008-35b8-4b54-984b-66bc27ba98be/cisa-flags-certification-barriers-in-election-patching</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T16:30:54Z</news:publication_date>
      <news:title>Piano CISA: la certificazione rallenta le patch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/610d68c8-9e3f-42c1-a326-0d309ef5034f/pamstealer-moves-payload-decryption-off-the-mac</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T16:30:54Z</news:publication_date>
      <news:title>PamStealer Moves Payload Decryption Off the Mac</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/610d68c8-9e3f-42c1-a326-0d309ef5034f/pamstealer-moves-payload-decryption-off-the-mac</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T16:30:54Z</news:publication_date>
      <news:title>PamStealer sposta la chiave del payload sul server</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/503d0afc-feaf-4828-8f7f-8994ef575405/storm-2570-repeats-its-trail-across-ransomware-brands</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Storm-2570 Repeats Its Trail Across Ransomware Brands</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/503d0afc-feaf-4828-8f7f-8994ef575405/storm-2570-repeats-its-trail-across-ransomware-brands</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Storm-2570 tradisce il brand, non il proprio metodo</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c5ac9382-9c99-4687-9728-c399cb4073f1/salesforce-agentforce-flaws-turn-leads-into-attackers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Salesforce Agentforce Flaws Turn Leads Into Attackers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c5ac9382-9c99-4687-9728-c399cb4073f1/salesforce-agentforce-flaws-turn-leads-into-attackers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Un lead pubblico diventa il canale di controllo di Agentforce</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/838a0020-bfa0-44d9-87fb-42d123c72546/wordpress-comment-bug-could-escalate-to-server-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>WordPress Exploits Move From PoC to Takeover</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/838a0020-bfa0-44d9-87fb-42d123c72546/wordpress-comment-bug-could-escalate-to-server-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>WordPress passa da bug a takeover sui siti esposti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c002965e-c424-4d48-adc5-688589839426/n0n-threatens-the-backups-ransomware-depends-on</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>n0n Threatens the Backups Ransomware Depends On</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c002965e-c424-4d48-adc5-688589839426/n0n-threatens-the-backups-ransomware-depends-on</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>n0n alza la posta: minaccia i backup per fermare il ripristino</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/fdd54f60-eba9-48de-a9bd-4210e6184c9a/cisa-and-fbi-warn-on-ics-integrator-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>CISA and FBI Warn on ICS Integrator Access</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/fdd54f60-eba9-48de-a9bd-4210e6184c9a/cisa-and-fbi-warn-on-ics-integrator-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Gli integrator diventano il punto debole dell’OT</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/611d372a-fbba-4564-9681-d83955a9abba/clickfix-moves-malware-into-trusted-shells</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T10:34:37Z</news:publication_date>
      <news:title>ClickFix Moves Malware Into Trusted Shells</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/611d372a-fbba-4564-9681-d83955a9abba/clickfix-moves-malware-into-trusted-shells</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T10:34:37Z</news:publication_date>
      <news:title>ClickFix sposta l’esecuzione fuori dal browser</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c78f139b-0eb3-453a-a3a9-9fe9e641280b/senators-push-voluntary-telecom-cyber-standards</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Warner and Cruz Revive Telecom Security Push</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c78f139b-0eb3-453a-a3a9-9fe9e641280b/senators-push-voluntary-telecom-cyber-standards</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Dopo Salt Typhoon, il settore telecom resta su base volontaria</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/bfb286ce-f8ac-4bc2-9314-5f58fef033c9/gitlab-issue-email-token-exposes-code-and-ci</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T08:21:20Z</news:publication_date>
      <news:title>GitLab Issue Email Token Exposes Code and CI</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/bfb286ce-f8ac-4bc2-9314-5f58fef033c9/gitlab-issue-email-token-exposes-code-and-ci</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T08:21:20Z</news:publication_date>
      <news:title>La mail di GitLab diventa una credenziale riutilizzabile</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a2287a2a-3f4a-438c-8e72-ea2209b03d63/kyiv-strikes-took-down-shared-isp-redundancy</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Kyiv Strikes Took Down Shared ISP Redundancy</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/a2287a2a-3f4a-438c-8e72-ea2209b03d63/kyiv-strikes-took-down-shared-isp-redundancy</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Raid su Kyiv: cade la ridondanza di più ISP</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/59ec8056-fac0-4257-a120-55a2553e1c7f/tu-graz-finds-cross-os-file-event-side-channel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>TU Graz Finds Cross-OS File-Event Side Channel</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/59ec8056-fac0-4257-a120-55a2553e1c7f/tu-graz-finds-cross-os-file-event-side-channel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T04:21:14Z</news:publication_date>
      <news:title>Un side channel vecchio di decenni tradisce le attività utente</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3b6f1e5b-7f9e-4149-b30f-2020c7323551/wiz-s-ai-scans-find-public-exposures-first</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T06:25:37Z</news:publication_date>
      <news:title>Wiz’s AI Scans Find Public Exposures First</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3b6f1e5b-7f9e-4149-b30f-2020c7323551/wiz-s-ai-scans-find-public-exposures-first</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-25T06:25:37Z</news:publication_date>
      <news:title>L’AI trova prima le esposizioni nei servizi critici</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6fdec92d-7e76-4754-874a-86f173764989/shinyhunters-claims-fbi-portal-led-to-govcloud-data-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>ShinyHunters Claim FBIjobs Records Theft via PeopleSoft</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6fdec92d-7e76-4754-874a-86f173764989/shinyhunters-claims-fbi-portal-led-to-govcloud-data-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Da sito sfigurato a fuga di dati sugli agenti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c9efafa4-81d5-42f4-a7e2-e9d940882951/mikrotik-routeros-chain-enabled-unauthenticated-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>MikroTik RouterOS Chain Enabled Unauthenticated Takeover</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c9efafa4-81d5-42f4-a7e2-e9d940882951/mikrotik-routeros-chain-enabled-unauthenticated-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>MikroTik svela troppo tardi il takeover di RouterOS</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/2644287b-bc32-417f-be60-0ab25397ea89/microsoft-cuts-off-eviltokens-bec-service</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Microsoft Seizes EvilTokens as AI Drives BEC Fraud</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/2644287b-bc32-417f-be60-0ab25397ea89/microsoft-cuts-off-eviltokens-bec-service</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>EvilTokens passa da phishing a caso di polizia</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9f59836d-f965-4731-bd85-4568b61f6718/d-link-s-unpatched-router-bug-leaves-permanent-exposure</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>D-Link DAP-1360’s RCE Leaves No Patch Path</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/9f59836d-f965-4731-bd85-4568b61f6718/d-link-s-unpatched-router-bug-leaves-permanent-exposure</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Un PoC pubblico rende permanente l’esposizione dei D-Link DAP-1360</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/0d27bee4-e88e-4840-b561-95fa2c4495b1/closedquorum-outsources-malware-decisions-to-llms</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>CLOSEDQUORUM Moves Malware Decisions Into LLMs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/0d27bee4-e88e-4840-b561-95fa2c4495b1/closedquorum-outsources-malware-decisions-to-llms</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>CLOSEDQUORUM sposta nel malware le decisioni post-compromissione</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/18d60fc4-4955-4999-9cd9-df29beca1b72/ai-tests-cross-into-real-world-authority</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T06:26:38Z</news:publication_date>
      <news:title>AI Tests Cross Into Real-World Authority</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/18d60fc4-4955-4999-9cd9-df29beca1b72/ai-tests-cross-into-real-world-authority</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T06:26:38Z</news:publication_date>
      <news:title>Quando l'assistente prende iniziativa, il rischio cambia</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8d031dd6-45a3-47e5-9472-b1d4fbb2d413/memtensor-packages-steal-developer-secrets-on-install</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>MemTensor Packages Steal Developer Secrets on Install</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8d031dd6-45a3-47e5-9472-b1d4fbb2d413/memtensor-packages-steal-developer-secrets-on-install</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>MemTensor trasforma i pacchetti in un furto di credenziali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ebeb4dfe-d2bc-4a65-9df4-01bcc377d721/hpe-ale-advisory-bundles-ten-management-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>HPE ALE Advisory Bundles Ten Management Flaws</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ebeb4dfe-d2bc-4a65-9df4-01bcc377d721/hpe-ale-advisory-bundles-ten-management-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Un solo upgrade chiude dieci falle in HPE ALE</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ed6571c2-df37-480b-959a-52f0fba8b29c/depthfirst-exploit-puts-ubuntu-containers-on-alert</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T13:28:39Z</news:publication_date>
      <news:title>DepthFirst Exploit Puts Ubuntu Containers on Alert</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ed6571c2-df37-480b-959a-52f0fba8b29c/depthfirst-exploit-puts-ubuntu-containers-on-alert</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T13:28:39Z</news:publication_date>
      <news:title>Un socket locale basta a prendere il controllo dell’host</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/bf2eb57e-beb3-43e1-bd36-a27f1684f654/ofcom-tests-pornhub-s-apple-based-age-gate</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Ofcom Tests Pornhub’s Apple-Based Age Gate</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/bf2eb57e-beb3-43e1-bd36-a27f1684f654/ofcom-tests-pornhub-s-apple-based-age-gate</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Ofcom mette alla prova la verifica dell'età di Pornhub</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f5126866-7c06-4014-935c-d38de8242f07/adobe-campaign-classic-fixed-pre-auth-critical-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T15:17:58Z</news:publication_date>
      <news:title>Adobe Campaign Classic Fixed Pre-Auth Critical Flaws</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f5126866-7c06-4014-935c-d38de8242f07/adobe-campaign-classic-fixed-pre-auth-critical-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T15:17:58Z</news:publication_date>
      <news:title>Campaign Classic esposto prima del login</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6c64c095-4a90-4e84-970d-55638bb798f8/relay-networks-hide-ai-abuse-at-scale</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Relay Networks Hide AI Abuse at Scale</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6c64c095-4a90-4e84-970d-55638bb798f8/relay-networks-hide-ai-abuse-at-scale</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Una rete di relay maschera l’accesso cinese ai modelli frontier</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a2e55ace-5a90-4764-80af-9e328c219a53/hashicorp-registry-abuse-extends-the-graphalgo-campaign</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>HashiCorp Registry Abuse Extends the Graphalgo Campaign</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/a2e55ace-5a90-4764-80af-9e328c219a53/hashicorp-registry-abuse-extends-the-graphalgo-campaign</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>I registri fidati diventano il canale del malware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/61d67478-5e9d-4209-8694-60a1421f7bb4/elsevier-redirect-hijack-reached-three-portals</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Elsevier Redirect Hijack Reached Three Portals</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/61d67478-5e9d-4209-8694-60a1421f7bb4/elsevier-redirect-hijack-reached-three-portals</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Tre portali Elsevier dirottati verso LAPSUS$</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/315c2269-e469-40d3-a941-a33eb07482bf/dark-sourcery-poisons-ai-search-results</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Dark Sourcery Poisons AI Search Results</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/315c2269-e469-40d3-a941-a33eb07482bf/dark-sourcery-poisons-ai-search-results</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Gli assistenti AI diventano un canale di phishing</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/86edda1b-3554-4850-b215-be09326760f2/ryuk-member-gets-two-year-prison-term</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T10:23:45Z</news:publication_date>
      <news:title>Ryuk Operator Sentenced After Ukraine Extradition</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/86edda1b-3554-4850-b215-be09326760f2/ryuk-member-gets-two-year-prison-term</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T10:23:45Z</news:publication_date>
      <news:title>Un operatore Ryuk estradato finisce in carcere per due anni</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/97fc793c-c632-4862-ab01-db3922876539/firefox-add-on-hid-cookie-theft-until-v1-4</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Firefox Add-on Hid Cookie Theft Until v1.4</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/97fc793c-c632-4862-ab01-db3922876539/firefox-add-on-hid-cookie-theft-until-v1-4</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T04:21:17Z</news:publication_date>
      <news:title>Una estensione pulita diventa un dirottatore Google</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c6def235-a1e5-4192-97af-af1e5f27f61b/defender-zero-day-can-freeze-antivirus-updates</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>BigDiskBuster Keeps Defender Stuck on Old Signatures</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c6def235-a1e5-4192-97af-af1e5f27f61b/defender-zero-day-can-freeze-antivirus-updates</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Defender resta acceso, ma le firme si bloccano</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f6436e55-7650-4437-b9fd-9321d014c7b1/colorado-water-utilities-saw-quiet-ot-tampering</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Colorado Water Utilities Saw Quiet OT Tampering</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f6436e55-7650-4437-b9fd-9321d014c7b1/colorado-water-utilities-saw-quiet-ot-tampering</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>In Colorado gli attaccanti cambiano i comandi senza spegnere l'impianto</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c1f83d39-ab19-4724-ab95-dd3ec18d20be/indexed-btree-hides-npm-malware-until-runtime</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Indexed-btree Hid npm Malware in Runtime Code</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c1f83d39-ab19-4724-ab95-dd3ec18d20be/indexed-btree-hides-npm-malware-until-runtime</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Indexed-btree aggira i controlli npm nel runtime</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5541ffe8-0a4c-473c-83b9-70a5e6f69131/crowdsec-leak-traced-to-stale-github-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>CrowdSec Leak Tied to Stale GitHub Token</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5541ffe8-0a4c-473c-83b9-70a5e6f69131/crowdsec-leak-traced-to-stale-github-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Il leak passa da un token OAuth rimasto vivo</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/30528af3-d6c9-43a1-9399-409964c7763f/forescout-shows-segmentation-often-hides-lateral-paths</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Forescout Shows Segmentation Often Hides Lateral Paths</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/30528af3-d6c9-43a1-9399-409964c7763f/forescout-shows-segmentation-often-hides-lateral-paths</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>La segmentazione nominale allarga la superficie d’attacco</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/bc4b9a13-a28f-49dd-82b5-b4cec5028a16/bigcommerce-finds-app-breach-reaching-storefronts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>BigCommerce Finds App Breach Reaching Storefronts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/bc4b9a13-a28f-49dd-82b5-b4cec5028a16/bigcommerce-finds-app-breach-reaching-storefronts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Un account terzo apre la porta a più storefront BigCommerce</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/e84514f7-5a34-4f6d-a7fc-a3a8fe0b246f/ncc-group-sees-record-august-ransomware-volume</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T02:21:17Z</news:publication_date>
      <news:title>NCC Group Sees Record August Ransomware Volume</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/e84514f7-5a34-4f6d-a7fc-a3a8fe0b246f/ncc-group-sees-record-august-ransomware-volume</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-24T02:21:17Z</news:publication_date>
      <news:title>Il ransomware tocca il picco e colpisce l'industria</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/85b8929d-d7f4-4ebc-a87b-10bde7ee0060/siemens-edge-management-reset-flaw-enables-account-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T06:33:49Z</news:publication_date>
      <news:title>Siemens Edge Management Reset Flaw Enables Account Takeover</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/85b8929d-d7f4-4ebc-a87b-10bde7ee0060/siemens-edge-management-reset-flaw-enables-account-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T06:33:49Z</news:publication_date>
      <news:title>Il reset password diventa takeover su Siemens Industrial Edge Management</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/2e432885-350d-402d-ad9e-3033ad0c6e0b/cisa-pushes-decoys-to-catch-living-off-the-land-intrusions</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T15:22:47Z</news:publication_date>
      <news:title>CISA Turns Decoys Into Practical Detection</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/2e432885-350d-402d-ad9e-3033ad0c6e0b/cisa-pushes-decoys-to-catch-living-off-the-land-intrusions</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T15:22:47Z</news:publication_date>
      <news:title>CISA porta i decoy nella detection pratica</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/59e55a76-749d-425d-8595-0ecd1b5204c2/siemens-kernel-flaw-spans-simatic-and-siplus-fleets</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T08:22:03Z</news:publication_date>
      <news:title>Siemens Kernel Flaw Spans SIMATIC and SIPLUS Fleets</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/59e55a76-749d-425d-8595-0ecd1b5204c2/siemens-kernel-flaw-spans-simatic-and-siplus-fleets</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T08:22:03Z</news:publication_date>
      <news:title>Un solo difetto Linux mette in fila molti SIMATIC</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/27666508-c040-4735-8b74-5f7336754dc5/openai-shortens-the-ai-parity-window</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>OpenAI Shortens the AI Parity Window</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/27666508-c040-4735-8b74-5f7336754dc5/openai-shortens-the-ai-parity-window</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Il vantaggio per i difensori ha una scadenza</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3cc553d0-88f6-49ad-bf86-a0c2f2275d15/macfinger-uses-legitimate-sites-to-target-macos</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Macfinger Uses Legitimate Sites to Target macOS</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3cc553d0-88f6-49ad-bf86-a0c2f2275d15/macfinger-uses-legitimate-sites-to-target-macos</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>La verifica finta che colpisce solo macOS</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/97992da5-1b69-47e5-9b7d-d754c81a04d8/gartner-says-deepfakes-are-hitting-recovery-flows</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T08:22:03Z</news:publication_date>
      <news:title>Gartner Says Deepfakes Are Hitting Recovery Flows</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/97992da5-1b69-47e5-9b7d-d754c81a04d8/gartner-says-deepfakes-are-hitting-recovery-flows</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T08:22:03Z</news:publication_date>
      <news:title>I deepfake spostano il rischio su identità e recovery</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/990b8b04-d97b-418f-a264-9dcf7570fbc1/sidecopy-shifts-espionage-lures-toward-indian-academia</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T08:22:03Z</news:publication_date>
      <news:title>SideCopy Shifts Espionage Lures Toward Indian Academia</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/990b8b04-d97b-418f-a264-9dcf7570fbc1/sidecopy-shifts-espionage-lures-toward-indian-academia</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T08:22:03Z</news:publication_date>
      <news:title>SideCopy allarga la raccolta alle università indiane</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ed636c00-0190-43aa-87b2-f3ac14f45527/siemens-ois-file-upload-flaw-can-reach-root</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T08:22:03Z</news:publication_date>
      <news:title>Siemens OIS File Upload Flaw Can Reach Root</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ed636c00-0190-43aa-87b2-f3ac14f45527/siemens-ois-file-upload-flaw-can-reach-root</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T08:22:03Z</news:publication_date>
      <news:title>Siemens corregge un file upload che può dare root</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/341d7d74-f3b1-4c4b-be19-46ae19182df0/akamai-sees-ai-crawlers-crossing-into-transactions</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>Akamai Sees AI Crawlers Crossing Into Transactions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/341d7d74-f3b1-4c4b-be19-46ae19182df0/akamai-sees-ai-crawlers-crossing-into-transactions</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-23T04:21:23Z</news:publication_date>
      <news:title>I crawler AI entrano nei login, non solo nelle pagine</news:title>
    </news:news>
  </url>
</urlset>
