<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://plainsec.com/stories/d0bb0dba-bd0c-43bb-b9f6-28c7e9c3c0e6/plc-campaign-spreads-beyond-one-utility-outage</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>PLC Campaign Spreads Beyond One Utility Outage</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/2f0a3d34-928b-43a0-8bf4-444d251cacfe/ai-agents-can-break-out-without-prompt-help</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>AI Agents Can Break Out Without Prompt Help</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/66113343-331a-4720-b836-b24c50dc33c1/imported-npm-betas-can-hand-over-node-hosts</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Imported npm Betas Can Hand Over Node Hosts</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5343420b-1402-4b79-8fcc-eddfd150d548/gitea-writers-can-reach-rce-on-default-installs</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Gitea Writers Can Reach RCE on Default Installs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/21eb343a-50a2-4d97-bc9d-4700cfecf151/public-exploit-turns-vbulletin-into-a-server-foothold</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Public Exploit Turns vBulletin Into a Server Foothold</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/1a29e2d0-bae1-4f89-8dad-c9cdf263afee/spring-boot-fat-jars-stay-exposed-after-fastjson-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Spring Boot Fat-JARs Stay Exposed After Fastjson Bypass</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/5976dbff-58c8-4abf-a25e-282a52970a11/windchill-patch-window-became-cl0ps-entry-point</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Windchill Patch Window Became Cl0p's Entry Point</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/32cc2a7e-ab45-4c4c-949a-ae53af85d687/billing-vendor-breach-spreads-to-seven-providers</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Billing Vendor Breach Spreads to Seven Providers</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/702e3d90-0c2f-4422-b33d-0aa9cc5e31e9/infected-hosts-become-covert-operator-relays</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Infected Hosts Become Covert Operator Relays</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ab82e01c-2593-4929-9030-7f5d301b7c7d/origin-breach-puts-millions-at-fraud-risk</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Origin Breach Puts Millions at Fraud Risk</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/bd3753cc-6eb8-4c87-9417-9b8fca8a328a/llms-now-find-new-crypto-flaws-before-launch</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>LLMs Now Find New Crypto Flaws Before Launch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/bcf6cc60-52ca-4825-8c1b-c02f4f42a42e/teamcity-s-agent-channel-becomes-the-entry-point</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>TeamCity’s Agent Channel Becomes the Entry Point</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/9594d2ad-5226-4051-8b5a-0e1ad47936be/public-android-rat-builder-expands-china-credential-theft</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Public Android RAT Builder Expands China Credential Theft</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/c9a0bb58-06dc-40d1-b911-a0791189dbb3/bmcs-stay-crackable-before-login</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>BMCs Stay Crackable Before Login</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/fc8f8a38-b290-447e-af7a-73f7db610f09/remote-kernel-bug-makes-apple-patch-set-more-serious</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Remote Kernel Bug Makes Apple Patch Set More Serious</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/3dcefb92-c96a-4274-b036-bcec26da3657/artifactory-patch-lands-but-the-exploit-path-is-unclear</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T10:22:09Z</news:publication_date>
      <news:title>Artifactory Patch Lands, But the Exploit Path Is Unclear</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6cbbb1f9-6522-4182-a2ae-55c2721d3c68/ai-agent-became-the-intruders-hands-on-operator</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T02:20:50Z</news:publication_date>
      <news:title>AI Agent Became the Intruder's Hands-On Operator</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/57ca723f-e6d1-4019-8ef2-2c97d99495bc/kernel-version-alone-misses-this-local-root-exposure</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T02:20:50Z</news:publication_date>
      <news:title>Kernel Version Alone Misses This Local-Root Exposure</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/40756b8b-7c05-486b-9e21-a53a504c45e6/ad-cs-trust-check-hands-users-domain-controller-power</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T02:20:50Z</news:publication_date>
      <news:title>AD CS Trust Check Hands Users Domain Controller Power</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/aab3dc80-382e-4c61-8afd-ff8217a0a410/blockchain-relays-make-botnet-takedowns-harder</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T02:20:50Z</news:publication_date>
      <news:title>Blockchain Relays Make Botnet Takedowns Harder</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/ee7d1c7a-1fc6-4817-854b-c2fc0a451682/dependabot-slows-the-poisoned-release-window</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T02:20:50Z</news:publication_date>
      <news:title>Dependabot Slows the Poisoned-Release Window</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/f897bc70-c8a4-474b-9c65-162aedb8e596/crype-service-turns-stealth-into-a-commodity</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-29T02:20:50Z</news:publication_date>
      <news:title>Crype service turns stealth into a commodity</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/35e78d9c-ee10-4e09-b54b-1e1db1e3018e/lockbit-fell-when-its-trust-broke</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T02:21:59Z</news:publication_date>
      <news:title>LockBit Fell When Its Trust Broke</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/53e20727-6905-4de3-a2f9-33c9b90bb6d9/heapdump-scans-can-leak-backend-secrets</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T02:21:59Z</news:publication_date>
      <news:title>Heapdump Scans Can Leak Backend Secrets</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/001d3707-990e-4a62-aa46-ce92a813609e/ransomware-now-kills-edr-first</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T02:21:59Z</news:publication_date>
      <news:title>Ransomware Now Kills EDR First</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/0545c365-6fc8-4984-bbc3-faa33b504381/linux-rootkits-can-lie-to-live-response-tools</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T02:21:59Z</news:publication_date>
      <news:title>Linux Rootkits Can Lie to Live-Response Tools</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/6fbbb85a-5a23-4a04-b571-78b46790d95c/serv-u-admin-roles-do-not-contain-blast-radius</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T02:21:59Z</news:publication_date>
      <news:title>Serv-U Admin Roles Do Not Contain Blast Radius</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/4ac08445-cac2-4bbc-991b-e3ab9ae2bcdb/public-wi-fi-gateways-become-cross-tenant-phishing-points</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T02:21:59Z</news:publication_date>
      <news:title>Public Wi‑Fi Gateways Become Cross-Tenant Phishing Points</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/86a00d8e-c876-4479-ae07-7a5d5450aa24/dependency-automation-gets-a-time-lock</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T02:21:59Z</news:publication_date>
      <news:title>Dependency Automation Gets a Time Lock</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://plainsec.com/stories/0695a6e2-05bc-4cfa-b64d-e661612404e6/open-ai-security-moves-toward-self-hosted-control</loc>
    <news:news>
      <news:publication>
        <news:name>PlainSec</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-28T02:21:59Z</news:publication_date>
      <news:title>Open AI Security Moves Toward Self-Hosted Control</news:title>
    </news:news>
  </url>
</urlset>
