<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://plainsec.com/stories/cb2da9ce-7bfa-4ddb-be42-bd1cc380c923/fortinet-fortimail-path-traversal-is-actively-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T10:38:09Z</news:publication_date>
      <news:title>Fortinet FortiMail path traversal is actively exploited</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/cb2da9ce-7bfa-4ddb-be42-bd1cc380c923/fortinet-fortimail-path-traversal-is-actively-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T10:38:09Z</news:publication_date>
      <news:title>FortiMail espone il gateway mail con uno zero-day attivo</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3de74f1b-37c0-4c9f-8ff2-ed7c9d0af181/poellm-hides-its-c2-in-github-poetry</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>PoeLLM Hides Its C2 in GitHub Poetry</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3de74f1b-37c0-4c9f-8ff2-ed7c9d0af181/poellm-hides-its-c2-in-github-poetry</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>PoeLLM trasforma i server esposti in una rete che si autoalimenta</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4f9a1776-a93d-4e7d-ba9a-d20cbe417da6/fortibleed-locks-out-fortinet-defenders</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T14:48:57Z</news:publication_date>
      <news:title>FortiBleed Turns Fortinet Logins Into Brokered Access</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/4f9a1776-a93d-4e7d-ba9a-d20cbe417da6/fortibleed-locks-out-fortinet-defenders</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T14:48:57Z</news:publication_date>
      <news:title>FortiBleed passa dal furto all’accesso rivenduto</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/e334c599-5406-4fb6-87eb-f1aa858658e8/tensorlake-npm-release-carried-a-self-spreading-worm</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T08:34:54Z</news:publication_date>
      <news:title>Tensorlake npm release carried a self-spreading worm</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/e334c599-5406-4fb6-87eb-f1aa858658e8/tensorlake-npm-release-carried-a-self-spreading-worm</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T08:34:54Z</news:publication_date>
      <news:title>Tensorlake diventa un worm che ruba e ripubblica package</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/881e70a6-b1cf-4541-bda9-c03da75d29d1/arizona-courts-breach-exposed-protection-orders</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T20:52:24Z</news:publication_date>
      <news:title>Arizona Courts Breach Exposed Protection Orders</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/881e70a6-b1cf-4541-bda9-c03da75d29d1/arizona-courts-breach-exposed-protection-orders</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T20:52:24Z</news:publication_date>
      <news:title>I record dei tribunali esposti oltre le semplici tasse arretrate</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5ae62da1-328e-4883-b2ec-c913a72e4650/forescout-finds-pqc-bottleneck-in-medical-hardware</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>Forescout Finds PQC Bottleneck in Medical Hardware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5ae62da1-328e-4883-b2ec-c913a72e4650/forescout-finds-pqc-bottleneck-in-medical-hardware</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>La migrazione PQC nelle strutture sanitarie dipende dall’hardware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/668551ad-ae5a-46d8-95b7-0984bc8f0a19/asos-app-alert-turned-extortion-channel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>ASOS App Alert Turned Extortion Channel</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/668551ad-ae5a-46d8-95b7-0984bc8f0a19/asos-app-alert-turned-extortion-channel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>L’app ASOS diventa il mezzo del ricatto</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9ac21280-7134-499a-8765-e4ac850ad81a/cve-2026-106197-google-chrome</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Chrome 155 Patches Four Critical Memory Bugs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/9ac21280-7134-499a-8765-e4ac850ad81a/cve-2026-106197-google-chrome</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Chrome chiude 247 falle, quattro sono critiche</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5e86adae-3e24-4e3d-b925-a485e61ae37f/lmcache-routable-cache-server-enables-remote-code-execution</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T22:59:50Z</news:publication_date>
      <news:title>LMCache Routable Cache Server Enables Remote Code Execution</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5e86adae-3e24-4e3d-b925-a485e61ae37f/lmcache-routable-cache-server-enables-remote-code-execution</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T22:59:50Z</news:publication_date>
      <news:title>LMCache espone l’LLM serving a RCE senza patch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/868ee69d-c93b-4201-bcd2-1336210ed1b2/monstercloud-charged-over-fake-ransomware-recovery</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T10:38:09Z</news:publication_date>
      <news:title>MonsterCloud charged over fake ransomware recovery</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/868ee69d-c93b-4201-bcd2-1336210ed1b2/monstercloud-charged-over-fake-ransomware-recovery</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T10:38:09Z</news:publication_date>
      <news:title>Il recupero ransomware finisce in frode da 19 milioni</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/692fad1d-27cf-4dec-b454-ac709a0dd725/16-firefox-extensions-impersonate-wallets-to-steal-seeds</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T10:38:09Z</news:publication_date>
      <news:title>16 Firefox Extensions Impersonate Wallets to Steal Seeds</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/692fad1d-27cf-4dec-b454-ac709a0dd725/16-firefox-extensions-impersonate-wallets-to-steal-seeds</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T10:38:09Z</news:publication_date>
      <news:title>Sedici estensioni Firefox clonano wallet e rubano seed phrase</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c26cf471-2a71-4e93-a855-f21259e9c5a2/coalition-pushes-cisa-to-assign-ot-ownership</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>Coalition Pushes CISA to Assign OT Ownership</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c26cf471-2a71-4e93-a855-f21259e9c5a2/coalition-pushes-cisa-to-assign-ot-ownership</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>Cisa sotto pressione per colmare il vuoto sull’ot federale</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/86cb38ca-398c-4a9c-8567-5a4f5a3f4163/pwn2own-ireland-opens-with-mobile-focus</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Pwn2Own Day One Put AI Tools in Scope</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/86cb38ca-398c-4a9c-8567-5a4f5a3f4163/pwn2own-ireland-opens-with-mobile-focus</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Pwn2Own mostra che l’AI espone bug più pesanti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/234f0bb1-bd09-4bba-b395-61c3f36f7bdc/x-org-patched-dozen-display-server-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T10:38:09Z</news:publication_date>
      <news:title>X.Org Patched Dozen Display-Server Flaws</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/234f0bb1-bd09-4bba-b395-61c3f36f7bdc/x-org-patched-dozen-display-server-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T10:38:09Z</news:publication_date>
      <news:title>X.Org corregge 12 falle che espongono il display server</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d2f6b172-7996-4ff8-b60d-5c365d321943/google-blocks-counterfeit-certificates-after-registry-breach</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>Registry Hijack Minted Valid Google Certificates</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d2f6b172-7996-4ff8-b60d-5c365d321943/google-blocks-counterfeit-certificates-after-registry-breach</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>La fiducia del browser è stata dirottata a monte</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f8170250-1a0c-4b34-8949-0d3944b37cec/sonicwall-sma1000-series-appliances-affected-by-multiple-vulnerabilities</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T10:49:14Z</news:publication_date>
      <news:title>SonicWall’s SMA1000 Fix Still Needs One More Step</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f8170250-1a0c-4b34-8949-0d3944b37cec/sonicwall-sma1000-series-appliances-affected-by-multiple-vulnerabilities</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T10:49:14Z</news:publication_date>
      <news:title>SonicWall SMA1000 richiede un secondo hotfix</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/62eacc39-8c66-4a4f-817d-a1419e7ad580/outlook-blocks-msix-installer-attachments</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>Microsoft Outlook Drops MSIX Email Delivery</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/62eacc39-8c66-4a4f-817d-a1419e7ad580/outlook-blocks-msix-installer-attachments</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>Outlook blocca gli installer MSIX via email</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a8a78f7a-d407-424b-b395-5cedce59c074/ransomware-goes-after-the-recovery-path</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>Ransomware Goes After the Recovery Path</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/a8a78f7a-d407-424b-b395-5cedce59c074/ransomware-goes-after-the-recovery-path</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T17:12:53Z</news:publication_date>
      <news:title>I backup sono il nuovo bersaglio del ransomware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/cb9ccec1-c319-4538-9fc1-167b6269c6cd/malfex-npm-packages-put-build-hosts-at-risk</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T04:35:11Z</news:publication_date>
      <news:title>MALFEX npm Packages Put Build Hosts at Risk</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/cb9ccec1-c319-4538-9fc1-167b6269c6cd/malfex-npm-packages-put-build-hosts-at-risk</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T04:35:11Z</news:publication_date>
      <news:title>Pacchetti npm live infettano le macchine Windows di sviluppo</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/29c27f06-1e36-48da-84ee-727451c72de1/cisco-splits-apic-and-meraki-fixes-across-the-stack</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>Cisco NX-OS and Meraki widen the patch queue</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/29c27f06-1e36-48da-84ee-727451c72de1/cisco-splits-apic-and-meraki-fixes-across-the-stack</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T19:01:58Z</news:publication_date>
      <news:title>Cisco allarga il patching da NX-OS a Meraki</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/eab710d4-576c-4c0c-9f66-6a3b5fe60c54/wikimedia-says-openai-agents-strained-wikipedia-operations</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Wikimedia Agents Shifted From Edits to Proxy Abuse</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/eab710d4-576c-4c0c-9f66-6a3b5fe60c54/wikimedia-says-openai-agents-strained-wikipedia-operations</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Gli agenti OpenAI trasformano i tool Wikimedia in proxy</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d302451d-e498-482c-88b8-237d7d9962ef/github-copilot-cli-leaks-secrets-through-encrypted-pages</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>GitHub Copilot CLI Leaks Secrets Through Encrypted Pages</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d302451d-e498-482c-88b8-237d7d9962ef/github-copilot-cli-leaks-secrets-through-encrypted-pages</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T13:07:27Z</news:publication_date>
      <news:title>Copilot CLI può trasformare una pagina web in furto di segreti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8c424ac7-5508-47a0-acee-f5703abee3a0/hfs-cookie-flaw-opens-a-remote-code-execution-path</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>HFS Cookie Flaw Opens a Remote Code Execution Path</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8c424ac7-5508-47a0-acee-f5703abee3a0/hfs-cookie-flaw-opens-a-remote-code-execution-path</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>HFS trasforma un cookie bug in esecuzione remota</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8af5a865-a929-43cf-95df-666a4771993c/fbi-breach-traces-to-a-missed-peoplesoft-patch</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>FBI Breach Followed a Missed PeopleSoft Patch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8af5a865-a929-43cf-95df-666a4771993c/fbi-breach-traces-to-a-missed-peoplesoft-patch</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Un patch mancata apre il varco al breach FBI</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5b78305e-1230-44d2-9416-6ba26adcca85/gentlemen-affiliate-broke-the-raas-money-flow</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Gentlemen Affiliate Broke the RaaS Money Flow</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5b78305e-1230-44d2-9416-6ba26adcca85/gentlemen-affiliate-broke-the-raas-money-flow</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Un affiliato di The Gentlemen rompe la filiera del ransomware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c3f4a1d8-c2e7-491c-8801-3d62b8628f91/langflow-exploitation-turns-ai-builders-into-secret-vaults</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>Langflow Exploitation Turns AI Builders Into Secret Vaults</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c3f4a1d8-c2e7-491c-8801-3d62b8628f91/langflow-exploitation-turns-ai-builders-into-secret-vaults</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>Langflow trasforma un bug in furto di credenziali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f9853266-dd0d-4c5a-be77-9fe3ddf056cf/wordpress-plugin-xss-leaves-backdoors-behind</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T00:31:07Z</news:publication_date>
      <news:title>WordPress Plugin XSS Leaves Backdoors Behind</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f9853266-dd0d-4c5a-be77-9fe3ddf056cf/wordpress-plugin-xss-leaves-backdoors-behind</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T00:31:07Z</news:publication_date>
      <news:title>Lo stored XSS diventa accesso amministratore persistente su WordPress</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8a41536b-98fb-4bd8-a929-28ce5015fb86/mcp-marketplaces-sell-trust-without-governance</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>MCP Marketplaces Sell Trust Without Governance</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8a41536b-98fb-4bd8-a929-28ce5015fb86/mcp-marketplaces-sell-trust-without-governance</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>La fiducia cieca nei server MCP apre una superficie d’attacco</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/63f5118c-46d9-4cc8-b6df-9ae94486446b/crowdstrike-finds-a-blind-spot-in-llm-guards</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T02:26:11Z</news:publication_date>
      <news:title>CrowdStrike Finds a Blind Spot in LLM Guards</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/63f5118c-46d9-4cc8-b6df-9ae94486446b/crowdstrike-finds-a-blind-spot-in-llm-guards</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T02:26:11Z</news:publication_date>
      <news:title>I filtri per request saltano quando i prompt si sommano</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ef3ef51e-f0d9-4c4f-9b08-32250f9eb0bf/fake-ai-sites-steal-ad-account-logins</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>Fake ChatGPT Sites Steal Ad Accounts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ef3ef51e-f0d9-4c4f-9b08-32250f9eb0bf/fake-ai-sites-steal-ad-account-logins</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T21:11:26Z</news:publication_date>
      <news:title>Le frodi su ChatGPT e Gemini bucano la MFA degli account adv</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/fc69f824-6c1c-4467-8d88-1ea68084d0e1/blinder-tunnel-hides-iranian-intrusions-in-github</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Blinder Tunnel Hides Iranian Intrusions in GitHub</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/fc69f824-6c1c-4467-8d88-1ea68084d0e1/blinder-tunnel-hides-iranian-intrusions-in-github</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Blinder Tunnel nasconde il C2 in GitHub</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/967db37d-8a9d-49fb-8b4c-0009cfb74b55/ploutus-arrest-could-link-atm-jackpotting-crews</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Ploutus Arrest Could Link ATM Jackpotting Crews</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/967db37d-8a9d-49fb-8b4c-0009cfb74b55/ploutus-arrest-could-link-atm-jackpotting-crews</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Arrestato il presunto ideatore di Ploutus</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ab4951de-f526-43a5-be8e-1f11c17e2588/risolte-vulnerabilit-nei-chipset-mediatek</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>MediaTek Bulletin Pushes Risk to OEM Rollouts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ab4951de-f526-43a5-be8e-1f11c17e2588/risolte-vulnerabilit-nei-chipset-mediatek</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>La patch MediaTek vale solo quando arriva sugli OEM</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5efe9ff0-419a-480a-b002-5ec2db841896/hpe-ilo-7-bypass-exposes-remote-management</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>HPE iLO 7 Bypass Exposes Remote Management</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5efe9ff0-419a-480a-b002-5ec2db841896/hpe-ilo-7-bypass-exposes-remote-management</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>HPE iLO 7 accetta accessi senza credenziali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/51f37da7-dda4-415c-8a38-95b1a35b1445/dell-dsu-cli-flaw-can-hand-out-root</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Dell DSU CLI Flaw Can Hand Out Root</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/51f37da7-dda4-415c-8a38-95b1a35b1445/dell-dsu-cli-flaw-can-hand-out-root</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T18:53:39Z</news:publication_date>
      <news:title>Un tool di deployment porta a root su Linux</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/8c531b9f-56f7-41e9-b259-abea4bdcabab/datadog-spots-bedrock-checks-in-stolen-aws-keys</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Datadog Spots Bedrock Checks in Stolen AWS Keys</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/8c531b9f-56f7-41e9-b259-abea4bdcabab/datadog-spots-bedrock-checks-in-stolen-aws-keys</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>Le AWS key rubate valgono di più se aprono Bedrock</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/d8d656f2-2fec-4735-87b9-fde3161a093b/malfex-malware-still-slips-past-npm-cleanup</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>MALFEX Malware Still Slips Past npm Cleanup</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/d8d656f2-2fec-4735-87b9-fde3161a093b/malfex-malware-still-slips-past-npm-cleanup</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T15:53:55Z</news:publication_date>
      <news:title>MALFEX resta dentro npm nonostante le rimozioni</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f7000aeb-4eed-45d0-bf03-2991a5c86040/langflow-mehrere-schwachstellen</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T16:55:48Z</news:publication_date>
      <news:title>Langflow PoCs Expose Header Trust and MCP RCE</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/f7000aeb-4eed-45d0-bf03-2991a5c86040/langflow-mehrere-schwachstellen</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T16:55:48Z</news:publication_date>
      <news:title>Langflow espone l’AI workflow con un header falsificato</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/0b09ca51-64d9-4d64-8845-410016e53d15/action1-rmm-hides-inside-a-phishing-loader</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>Action1 RMM Hides Inside a Phishing Loader</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/0b09ca51-64d9-4d64-8845-410016e53d15/action1-rmm-hides-inside-a-phishing-loader</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-10-06T12:45:09Z</news:publication_date>
      <news:title>Action1 usato come canale invisibile per il controllo remoto</news:title>
    </news:news>
  </url>
</urlset>
