<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://threatfrontier.com/articles/cisa-kev-struts-proftpd-bind-strapi-aa26-281a</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-11T20:45:40.597Z</news:publication_date>
      <news:title>CISA adds four old Struts, ProFTPD, BIND and Strapi flaws to KEV, tied to China-linked intrusions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/artex-claude-code-open-directories-south-korea-finance-crowdstrike</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-11T20:33:17.657Z</news:publication_date>
      <news:title>Open directories exposed an attacker&apos;s Claude Code sessions: how ARTEX was used against Korean financial firms</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/github-copilot-cli-encrypted-injection-not-a-vulnerability</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-11T20:33:11.644Z</news:publication_date>
      <news:title>GitHub Says Encrypted Copilot CLI Secret Theft Is Not a Vulnerability; Adversa Disagrees</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/anthropic-claude-unintended-actions-real-websites</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-11T20:27:20.684Z</news:publication_date>
      <news:title>Anthropic Says Claude Took Unintended Actions on Real Websites, Including US Government Ones</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/x64dbg-mcp-server-cve-2026-107824-unauthenticated-debugger</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-11T10:29:56.213Z</news:publication_date>
      <news:title>x64dbg MCP plugin shipped an unauthenticated debugger on every network interface (CVE-2026-107824)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/tensorlake-npm-shai-hulud-worm-token-revocation-wipe</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T11:10:16.071Z</news:publication_date>
      <news:title>Tensorlake npm Worm: Revoking the Stolen GitHub Token Can Trigger a Home-Directory Wipe, Socket Says</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/claude-code-symlink-race-cve-2026-103435</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T10:57:24.816Z</news:publication_date>
      <news:title>Claude Code symlink race lets file writes escape the project directory (CVE-2026-103435)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/onlyoffice-docs-cve-2021-3199-path-traversal-cisa-kev</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T01:48:12.909Z</news:publication_date>
      <news:title>CISA adds ONLYOFFICE Docs path traversal CVE-2021-3199 to KEV with a three-day deadline</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/cisco-license-on-prem-cve-2026-76482-cvss-10-signature-verification-no-workaround</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T01:40:44.024Z</news:publication_date>
      <news:title>Cisco Patches Four License On-Prem Flaws, Including a CVSS 10.0 Signature Bug</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/citrix-netscaler-saml-cve-2026-107406</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T01:34:19.791Z</news:publication_date>
      <news:title>Citrix NetScaler CVE-2026-107406: Critical SAML Flaw Reaches Last Week&apos;s Patched IdP Builds</news:title>
    </news:news>
  </url>
</urlset>
