<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://plainsec.com/stories/ba5d992c-2716-4d20-a5c2-616b4283c327/wordpress-exploit-hit-government-sites-through-default-logins</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>WordPress Exploit Hit Government Sites Through Default Logins</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ba5d992c-2716-4d20-a5c2-616b4283c327/wordpress-exploit-hit-government-sites-through-default-logins</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>WordPress compromesso, i default account ampliano il furto</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6a683fb7-0b18-429f-969c-9dd07f009b83/cloudsek-finds-trusted-publishing-was-abused</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>CloudSEK Finds Trusted Publishing Was Abused</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6a683fb7-0b18-429f-969c-9dd07f009b83/cloudsek-finds-trusted-publishing-was-abused</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>Provenance pulita, release malevola in GitHub Actions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/907383b2-a30a-40dc-97ec-b70b0f994ee2/redis-tls-bug-is-already-being-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Redis TLS Bug Is Already Being Exploited</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/907383b2-a30a-40dc-97ec-b70b0f994ee2/redis-tls-bug-is-already-being-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>TLS non basta: Redis espone RCE remota</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/46f7c7f5-04d4-4c0a-814c-350df2c3c57e/openai-forum-flaw-opened-employee-account-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T06:21:40Z</news:publication_date>
      <news:title>OpenAI Forum Bug Bridged Into Staff Accounts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/46f7c7f5-04d4-4c0a-814c-350df2c3c57e/openai-forum-flaw-opened-employee-account-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T06:21:40Z</news:publication_date>
      <news:title>Un forum pubblico ha aperto la strada agli account staff</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/e1a7954b-0feb-4b24-bd1e-e98a34ce708d/fake-lastpass-authenticator-repos-push-rapuncel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>Fake LastPass Authenticator Repos Push Rapuncel</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/e1a7954b-0feb-4b24-bd1e-e98a34ce708d/fake-lastpass-authenticator-repos-push-rapuncel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>GitHub search diventa il canale per un falso LastPass</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/815f58ba-2b2b-4a6d-ab67-2fef171bccaf/nighteagle-reuses-credentials-and-github-tooling</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>NightEagle Reuses Credentials and GitHub Tooling</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/815f58ba-2b2b-4a6d-ab67-2fef171bccaf/nighteagle-reuses-credentials-and-github-tooling</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>NightEagle riusa credenziali rubate e tooling pubblico</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5541ffe8-0a4c-473c-83b9-70a5e6f69131/crowdsec-leak-traced-to-stale-github-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>CrowdSec Leak Traced to Stale GitHub Access</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5541ffe8-0a4c-473c-83b9-70a5e6f69131/crowdsec-leak-traced-to-stale-github-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Un token lasciato attivo svuota 170 repository privati</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/66106359-466b-4c74-87e7-a359f32dff02/gyazo-leak-exposes-passwords-and-image-links</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Gyazo Leak Exposes Passwords and Image Links</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/66106359-466b-4c74-87e7-a359f32dff02/gyazo-leak-exposes-passwords-and-image-links</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Gyazo espone link privati che restano aperti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c30bb42a-2b0c-4284-9c25-adb14b84c088/openai-logs-six-agent-misalignment-incidents</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>OpenAI Logs Six Agent Misalignment Incidents</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c30bb42a-2b0c-4284-9c25-adb14b84c088/openai-logs-six-agent-misalignment-incidents</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>Gli agenti AI imparano a nascondere i propri fallimenti</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9de7e56a-a8b2-40fc-9b8c-bb3767779e62/orkes-conductor-bug-turns-workflows-into-shell-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Orkes Conductor Bug Turns Workflows Into Shell Access</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/9de7e56a-a8b2-40fc-9b8c-bb3767779e62/orkes-conductor-bug-turns-workflows-into-shell-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Conductor esposto in rete diventa un runner di comandi</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1428c2a6-762f-436b-af42-95d6202e32f2/browser-extensions-broke-the-ai-trust-boundary</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Malicious Extensions Can Steer Chromium AI Assistants</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/1428c2a6-762f-436b-af42-95d6202e32f2/browser-extensions-broke-the-ai-trust-boundary</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Un’estensione sola può prendere il controllo di più AI nel browser</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3bcc0c95-0867-46ec-9daf-d117655762b3/jade-sleet-used-terraform-to-reach-developer-macs</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T08:24:22Z</news:publication_date>
      <news:title>Jade Sleet Used Terraform to Reach Developer Macs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3bcc0c95-0867-46ec-9daf-d117655762b3/jade-sleet-used-terraform-to-reach-developer-macs</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T08:24:22Z</news:publication_date>
      <news:title>Terraform diventa il varco verso i developer endpoint</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6e9c3f4e-3cf4-4bbe-ae3a-ef51cf493d60/phantomraven-hides-stealer-in-npm-installs</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>PhantomRaven Hides Stealer in npm Installs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/6e9c3f4e-3cf4-4bbe-ae3a-ef51cf493d60/phantomraven-hides-stealer-in-npm-installs</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>PhantomRaven trasforma l’installazione npm nel punto d’ingresso</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a65c82b5-4657-4e84-a847-93404e023661/payload-used-active-directory-to-extort-a-whole-fleet</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:38:58Z</news:publication_date>
      <news:title>PAYLOAD Used Active Directory to Extort a Whole Fleet</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/a65c82b5-4657-4e84-a847-93404e023661/payload-used-active-directory-to-extort-a-whole-fleet</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:38:58Z</news:publication_date>
      <news:title>Active Directory diventa la piattaforma dell'estorsione</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c6267c55-c285-4302-a78d-b3d787293f96/chainscript-hides-c2-behind-polygon-lookups</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:24:35Z</news:publication_date>
      <news:title>ChainScript Hides C2 Behind Polygon Lookups</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c6267c55-c285-4302-a78d-b3d787293f96/chainscript-hides-c2-behind-polygon-lookups</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:24:35Z</news:publication_date>
      <news:title>ChainScript sposta il C2 su Polygon e aggira i blocchi fissi</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4e159b5d-50d4-479e-bf41-f831846e3a30/irish-regulator-fines-google-over-location-data</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:31:00Z</news:publication_date>
      <news:title>Irish Regulator Hits Google Over Location Profiling</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/4e159b5d-50d4-479e-bf41-f831846e3a30/irish-regulator-fines-google-over-location-data</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:31:00Z</news:publication_date>
      <news:title>La profilazione della posizione costa a Google 403 milioni</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c866be5a-9529-4210-96d3-d3ff600daa58/rathat-uses-android-accessibility-as-control-surface</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>RatHat Uses Android Accessibility as Control Surface</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/c866be5a-9529-4210-96d3-d3ff600daa58/rathat-uses-android-accessibility-as-control-surface</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>RatHat trasforma il telefono in una console per rubare credenziali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/0809d688-56a4-454e-9b88-e6b9ac503bd9/manufacturing-ransomware-carries-past-the-factory-floor</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Manufacturing Keeps Drawing Ransomware Pressure</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/0809d688-56a4-454e-9b88-e6b9ac503bd9/manufacturing-ransomware-carries-past-the-factory-floor</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>La fabbrica resta il bersaglio preferito del ransomware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5ae82533-46b5-4a54-aeb6-b8567a617730/oracle-s-september-bulletin-spans-the-enterprise-stack</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T06:21:40Z</news:publication_date>
      <news:title>Oracle’s September Bulletin Spans the Enterprise Stack</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5ae82533-46b5-4a54-aeb6-b8567a617730/oracle-s-september-bulletin-spans-the-enterprise-stack</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T06:21:40Z</news:publication_date>
      <news:title>Una patch wave Oracle attraversa identità, BI e banking</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/b98d71ad-cbd4-40fa-8514-1ebe46eaf640/synology-dsm-fix-spans-four-release-branches</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T22:21:13Z</news:publication_date>
      <news:title>Synology DSM Fix Spans Four Release Branches</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/b98d71ad-cbd4-40fa-8514-1ebe46eaf640/synology-dsm-fix-spans-four-release-branches</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T22:21:13Z</news:publication_date>
      <news:title>Synology DSM, fix su quattro rami dopo otto falle</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/243468da-fa2d-4a98-ac7e-eb4a04b42fc7/gemini-s-test-access-broke-the-sandbox</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>Gemini’s Test Access Broke the Sandbox</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/243468da-fa2d-4a98-ac7e-eb4a04b42fc7/gemini-s-test-access-broke-the-sandbox</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>Gemini trasforma un test in tre accessi reali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/17b80de6-42e5-4f13-a2ed-5ab797888379/settra-hides-ransomware-in-legitimate-rmm</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Settra Hides Ransomware in Legitimate RMM</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/17b80de6-42e5-4f13-a2ed-5ab797888379/settra-hides-ransomware-in-legitimate-rmm</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Settra si nasconde dietro RMM legittimi e log cancellati</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/05dcb2d4-6ad3-4a82-a5b9-e2117715ed50/shinyhunters-hits-clops-leak-site-trust</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T20:24:01Z</news:publication_date>
      <news:title>ShinyHunters Turns Clop's Leak Site Inside Out</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/05dcb2d4-6ad3-4a82-a5b9-e2117715ed50/shinyhunters-hits-clops-leak-site-trust</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T20:24:01Z</news:publication_date>
      <news:title>Clop perde fiducia: ShinyHunters può esporre i suoi operatori</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/91455b0a-d241-405b-ad07-ddcb7c29dec2/task-stomp-survives-partial-cleanup-on-windows</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:31:00Z</news:publication_date>
      <news:title>TASK#STOMP Survives Partial Cleanup on Windows</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/91455b0a-d241-405b-ad07-ddcb7c29dec2/task-stomp-survives-partial-cleanup-on-windows</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:31:00Z</news:publication_date>
      <news:title>TASK#STOMP resiste alla rimozione parziale</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/dc24d856-ff75-41fc-a5fe-52457f15ecdd/waterplum-turns-job-interviews-into-intrusion</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>WaterPlum Turns Hiring into Corporate Access</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/dc24d856-ff75-41fc-a5fe-52457f15ecdd/waterplum-turns-job-interviews-into-intrusion</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>I colloqui finti diventano un accesso stabile alle aziende</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ad826068-40c6-42f9-be7b-c1ebf42c8194/exvicy-s-wordpress-loader-has-a-rival-s-blueprint</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>Exvicy’s WordPress Loader Has a Rival’s Blueprint</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/ad826068-40c6-42f9-be7b-c1ebf42c8194/exvicy-s-wordpress-loader-has-a-rival-s-blueprint</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:27:25Z</news:publication_date>
      <news:title>Exvicy industrializza il ClickFix su WordPress compromessi</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/e2a8639a-6e9e-42c5-bc67-159949c9237c/rust-crate-owners-face-recruiter-style-account-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:38:58Z</news:publication_date>
      <news:title>Rust Crate Owners Face Recruiter-Style Account Theft</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/e2a8639a-6e9e-42c5-bc67-159949c9237c/rust-crate-owners-face-recruiter-style-account-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:38:58Z</news:publication_date>
      <news:title>Rust: i finti colloqui puntano alla supply chain</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/0d6c77c4-1460-49a2-9b0b-880100d4374a/terminalfix-hid-a-dll-inside-valid-pngs</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:38:58Z</news:publication_date>
      <news:title>TerminalFix Hid a DLL Inside Valid PNGs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/0d6c77c4-1460-49a2-9b0b-880100d4374a/terminalfix-hid-a-dll-inside-valid-pngs</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:38:58Z</news:publication_date>
      <news:title>PNG validi usati per nascondere un DLL</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/2c6e5f1a-f92a-47b6-ab1c-be92d8d10a8f/agentcore-harness-shell-leaks-vaulted-credentials</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>AgentCore Harness Shell Leaks Vaulted Credentials</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/2c6e5f1a-f92a-47b6-ab1c-be92d8d10a8f/agentcore-harness-shell-leaks-vaulted-credentials</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>AgentCore Harness espone credenziali in chiaro a runtime</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/7f25fb45-0c0c-4854-ada0-cff21e458c5e/gemini-test-escaped-into-real-company-systems</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T08:24:22Z</news:publication_date>
      <news:title>Gemini Test Escaped Into Real Company Systems</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/7f25fb45-0c0c-4854-ada0-cff21e458c5e/gemini-test-escaped-into-real-company-systems</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T08:24:22Z</news:publication_date>
      <news:title>Gemini esce dal test e tocca sistemi reali</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/b232c42a-decc-4540-9ae3-1fd4d085ffe3/siemens-scalance-flaws-can-cascade-to-ot-root-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Siemens SCALANCE Flaws Can Cascade to OT Root Access</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/b232c42a-decc-4540-9ae3-1fd4d085ffe3/siemens-scalance-flaws-can-cascade-to-ot-root-access</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Il patching del box non basta più su SCALANCE LPE9403</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3287f0e3-8a57-43ac-967d-3aada0cf8559/public-linux-kernel-root-exploits-raise-the-stakes</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T10:31:22Z</news:publication_date>
      <news:title>CISA Puts Three Linux Kernel Flaws on KEV</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/3287f0e3-8a57-43ac-967d-3aada0cf8559/public-linux-kernel-root-exploits-raise-the-stakes</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T10:31:22Z</news:publication_date>
      <news:title>Tre kernel Linux in KEV, patch d’emergenza entro tre giorni</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5dadd5d5-63d6-479e-a260-fb64c9da99a7/chrome-patch-closes-42-security-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T10:31:22Z</news:publication_date>
      <news:title>Chrome and Firefox Ship Large Security Batches</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/5dadd5d5-63d6-479e-a260-fb64c9da99a7/chrome-patch-closes-42-security-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T10:31:22Z</news:publication_date>
      <news:title>Chrome e Firefox chiudono decine di falle, ma i conteggi ingannano</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/7a3568f5-e346-41ec-a472-ff0794797fc3/hypr-survey-finds-hiring-fraud-starts-before-access-checks</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>HYPR Survey Finds Hiring Fraud Starts Before Access Checks</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/7a3568f5-e346-41ec-a472-ff0794797fc3/hypr-survey-finds-hiring-fraud-starts-before-access-checks</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Le credenziali arrivano prima della verifica dell’identità</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/228f2930-9483-496a-a695-a0d4b273563d/microsoft-cloud-flaws-were-fixed-server-side</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T06:21:40Z</news:publication_date>
      <news:title>Microsoft Cloud Flaws Were Fixed Server-Side</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/228f2930-9483-496a-a695-a0d4b273563d/microsoft-cloud-flaws-were-fixed-server-side</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T06:21:40Z</news:publication_date>
      <news:title>Solo un fix cliente nel nuovo giro Microsoft</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1f78152a-697d-44b8-8f37-aa8c78c4139a/check-point-login-overflow-reaches-root-on-management-servers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Check Point Login Overflow Reaches Root on Management Servers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/1f78152a-697d-44b8-8f37-aa8c78c4139a/check-point-login-overflow-reaches-root-on-management-servers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Il server che governa i firewall è diventato il bersaglio</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/cf82bf19-3c7c-49cb-a2f9-dca760419332/authorities-seize-nightmarestresser-in-wider-ddos-takedown</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>NightmareStresser Disruption Shifts DDoS Capacity</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/cf82bf19-3c7c-49cb-a2f9-dca760419332/authorities-seize-nightmarestresser-in-wider-ddos-takedown</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>Sparisce un booter enorme, non la domanda di DDoS</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/a52aa543-6db6-4a42-a92b-c66b24ff5a1a/wordpress-7-1-1-fixes-silent-theme-install-bug</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>WordPress 7.1.1 Fixes Silent Theme Install Bug</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/a52aa543-6db6-4a42-a92b-c66b24ff5a1a/wordpress-7-1-1-fixes-silent-theme-install-bug</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T04:21:19Z</news:publication_date>
      <news:title>WordPress installa temi da un link e può arrivare al code execution</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/b956f654-72fc-4cb3-809b-4e1bad334662/google-s-mole-shrinks-teampcp-s-supply-chain-blast-radius</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T12:21:10Z</news:publication_date>
      <news:title>Google’s Mole Shrinks TeamPCP’s Supply-Chain Blast Radius</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/b956f654-72fc-4cb3-809b-4e1bad334662/google-s-mole-shrinks-teampcp-s-supply-chain-blast-radius</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T12:21:10Z</news:publication_date>
      <news:title>Dentro TeamPCP, Google ha visto e fermato la campagna</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/fe616320-27ef-4948-99c2-8c2c4fbfdb5c/solarwinds-arm-patch-fixes-hard-coded-key-rce</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T04:27:15Z</news:publication_date>
      <news:title>SolarWinds ARM Patch Fixes Hard-Coded Key RCE</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/it/stories/fe616320-27ef-4948-99c2-8c2c4fbfdb5c/solarwinds-arm-patch-fixes-hard-coded-key-rce</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>it</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T04:27:15Z</news:publication_date>
      <news:title>SolarWinds corregge un RCE senza login in ARM</news:title>
    </news:news>
  </url>
</urlset>
