<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/dbab77a6-bbbe-41a2-8eb7-cd7468a2ea27/npm-worm-now-spreads-through-stolen-tokens</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>npm Worm Now Spreads Through Stolen Tokens</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/6327595b-f3e7-4930-b2ef-e76d83bc256d/imported-agents-become-server-commands-in-paperclip</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Imported Agents Become Server Commands in Paperclip</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/780d4288-38cf-47c2-80d9-b6fbad518a2c/omada-onboarding-flaws-can-hand-over-entire-fleets</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Omada Onboarding Flaws Can Hand Over Entire Fleets</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/47752458-795e-452c-84da-8a286173f029/local-linux-users-can-reach-root-through-ovs-datapath</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Local Linux Users Can Reach Root Through OVS Datapath</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/066f2b57-b743-48ae-a29a-c09e1a74aa95/sma1000-access-turned-into-ransomware-fuel</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>SMA1000 Access Turned Into Ransomware Fuel</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/3dd4f761-984f-43d8-8759-1d7d900c2a91/quickfox-loader-targets-only-chosen-windows-hosts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>QuickFox Loader Targets Only Chosen Windows Hosts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/0fcf6412-bbb2-4fe3-bc6b-8df7aae1273e/ai-security-breaks-at-conversation-and-api-layers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>AI Security Breaks at Conversation and API Layers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/217ea00e-308c-48cd-acd6-ec3d1329edae/device-code-phishing-goes-industrial-and-bypasses-passkeys</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Device-Code Phishing Goes Industrial and Bypasses Passkeys</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/303ff29b-3c28-4225-862c-56f1b142afe7/postal-phishing-bypasses-email-defenses</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Postal Phishing Bypasses Email Defenses</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/3ce55ae5-cc17-4a17-ae12-fc70b2349d5d/chrome-passkeys-become-reusable-after-windows-malware</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Chrome Passkeys Become Reusable After Windows Malware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/ddc5f061-b19c-4ce2-beea-8703c6f98634/agent-testing-now-reaches-real-maintainers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Agent Testing Now Reaches Real Maintainers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/5813015e-0095-4fc1-9157-e46aba4bc320/ai-agents-leave-reusable-deception-trails-online</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>AI Agents Leave Reusable Deception Trails Online</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/fedb81b2-31ac-4215-ad6a-e39457de2036/enclave-attestation-still-depends-on-client-code</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Enclave Attestation Still Depends on Client Code</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/3f8e2de3-ca0e-4879-b9db-4d5b9ad70242/cloaked-mac-lures-beat-content-based-detection</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Cloaked Mac Lures Beat Content-Based Detection</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/7a33e9c4-bfc3-467a-a3f9-6eeac516614a/management-planes-are-exposing-the-keys-themselves</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Management Planes Are Exposing the Keys Themselves</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/86a535d3-a2f8-481d-8cc3-23bd4332c2eb/leaked-n8n-tokens-became-live-access-keys</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>Leaked n8n Tokens Became Live Access Keys</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-05/1dd10d10-dd91-4bd4-ad13-bf6eed5ed2b2/ai-security-turns-toward-rapid-response</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T20:31:36Z</news:publication_date>
      <news:title>AI Security Turns Toward Rapid Response</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/b41afe6c-e77f-4672-835c-d36050de8e4b/microsoft-confirmation-turns-hotel-wi-fi-into-attack-surface</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>Microsoft Confirmation Turns Hotel Wi‑Fi Into Attack Surface</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/c9a0bb58-06dc-40d1-b911-a0791189dbb3/bmcs-stay-crackable-before-login</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>BMCs Stay Crackable Before Login</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/4c699f51-3d35-4deb-8f30-ac45d110dd34/operator-trust-opens-tenable-sensor-proxy-to-code-execution</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>Operator Trust Opens Tenable Sensor Proxy to Code Execution</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/e8110123-1990-4b15-a500-3418f475d6c6/coldcard-patch-leaves-old-seeds-exposed</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>Coldcard Patch Leaves Old Seeds Exposed</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/977198e1-32cb-4059-aa21-fa7098a43007/beneficial-ownership-register-breach-hits-aml-control-point</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>Beneficial Ownership Register Breach Hits AML Control Point</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/57b3bc2d-4376-4c21-945c-cf2efb66714a/published-staff-contacts-raise-the-value-of-phishing</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>Published Staff Contacts Raise the Value of Phishing</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/8438fa5a-0d01-41e1-9e5a-977d516dce8b/react2shell-exploitation-now-turns-into-credential-theft-fast</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>React2Shell Exploitation Now Turns Into Credential Theft Fast</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/b1264c20-9b0b-47e0-8daf-e0639de1ed2c/ad-sdk-defaults-leak-location-beyond-app-controls</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>Ad SDK Defaults Leak Location Beyond App Controls</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/ef4a8b8b-73f4-4833-8316-f3f1fd290d8f/public-pocs-turn-gl-mt3000-bugs-into-edge-footholds</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>Public PoCs Turn GL-MT3000 Bugs Into Edge Footholds</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-04/2c389046-c769-417c-bf50-fef23e54a208/ai-eval-misconfigurations-reached-real-production-systems</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-05T02:58:07Z</news:publication_date>
      <news:title>AI Eval Misconfigurations Reached Real Production Systems</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-03/f2755dc3-0582-4ffd-af72-b2c57c9b81bd/plc-access-reaches-past-disruption-into-lockout</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-04T02:21:56Z</news:publication_date>
      <news:title>PLC Access Reaches Past Disruption Into Lockout</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-03/56e0f8af-85bf-4216-8a7f-ff67fb72f95a/model-repos-now-behave-like-code-in-diffusers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-04T02:21:56Z</news:publication_date>
      <news:title>Model Repos Now Behave Like Code in Diffusers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-03/c77ab059-7340-4f2c-88be-150fa6cca71c/water-ot-campaign-reaches-seven-states</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-04T02:21:56Z</news:publication_date>
      <news:title>Water OT Campaign Reaches Seven States</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-03/4dc4baa7-13db-4f99-acc0-4334cfa192b1/chrome-bug-discovery-is-outrunning-release-cadence</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-04T02:21:56Z</news:publication_date>
      <news:title>Chrome Bug Discovery Is Outrunning Release Cadence</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-03/5ca1f557-874b-4037-a78e-be3cb6ff4267/android-tv-boxes-now-double-as-residential-proxies</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-04T02:21:56Z</news:publication_date>
      <news:title>Android TV Boxes Now Double as Residential Proxies</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-03/00abde80-d718-45e7-8458-36c9d17b00fd/repo-trust-can-run-code-before-the-first-prompt</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-04T02:21:56Z</news:publication_date>
      <news:title>Repo Trust Can Run Code Before the First Prompt</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-03/28becf13-a88c-4625-87a5-8666acebad09/cloud-repositories-widen-amgen-breach-blast-radius</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-04T02:21:56Z</news:publication_date>
      <news:title>Cloud Repositories Widen Amgen Breach Blast Radius</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/briefings/2026-08-03/a9cd0ee3-f8ec-4969-a123-ab755f430024/hardcoded-backdoor-gives-wordpress-sites-away</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-04T02:21:56Z</news:publication_date>
      <news:title>Hardcoded Backdoor Gives WordPress Sites Away</news:title>
    </news:news>
  </url>
</urlset>
