<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://www.hackerposts.org/en/blog/bitget-crypto-hack-387m-zero-day-security-appliance</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>Bitget blames $387M crypto theft on zero-days in security appliances</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/chatgpt-custom-gpt-clickfix-rat-huntress</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>Malicious custom GPT &apos;Plus 5.6&apos; funnels users into ClickFix RAT</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/dgfip-impots-data-theft-350000-anssi</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>France&apos;s DGFiP breach: 350k+ people hit via stolen passwords</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/kiteworks-advanced-forms-critical-flaw-9-5-1</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>Kiteworks patches critical Advanced Forms flaw in release 9.5.1</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/microsoft-entra-id-csp-block-script-injection</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>Microsoft Entra ID to enforce CSP, blocking sign-in script injection</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/openssl-cve-2026-84782-dtls-heap-leak</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>OpenSSL patches DTLS heap-disclosure flaw CVE-2026-84782</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/star-blizzard-redflick-cosmicpulse-100-orgs</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>Star Blizzard hits 100+ orgs with RedFlick, CosmicPulse backdoor</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/teamviewer-cve-2026-92370-full-client-rce</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>TeamViewer patches CVE-2026-92370 access-control bypass (CVSS 8.8)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/watchguard-fireware-cve-2026-86131-bovpn-rce</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>WatchGuard patches critical Fireware OS RCE (CVE-2026-86131)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/fr/blog/dgfip-impots-data-theft-350000-anssi</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>fr</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>Fuite DGFiP : 350 000 particuliers exposés via mots de passe volés</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/fr/blog/hpe-aruba-instant-on-cve-2026-76721-rce</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>fr</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>HPE Aruba Instant On : RCE critique non authentifiée (CVE-2026-76721)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/fr/blog/mongodb-certfr-2026-avi-1234-cinq-cve</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>fr</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>MongoDB : cinq CVE corrigées, l&apos;ANSSI publie CERTFR-2026-AVI-1234</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/fr/blog/openssl-cve-2026-84782-dtls-heap-leak</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>fr</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>OpenSSL corrige une faille DTLS qui fuit la mémoire (CVE-2026-84782)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/fr/blog/oracle-peoplesoft-cve-2026-35273-waf-bypass-shinyhunters</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>fr</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:00:00.000Z</news:publication_date>
      <news:title>ShinyHunters contourne le WAF PeopleSoft (CVE-2026-35273) : reprise</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/apple-cve-2026-86950-coregraphics-zero-day</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T00:00:00.000Z</news:publication_date>
      <news:title>Apple patches exploited CoreGraphics zero-day (CVE-2026-86950)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/citrix-netscaler-cve-2026-88771-zero-day</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T00:00:00.000Z</news:publication_date>
      <news:title>Citrix patches exploited NetScaler zero-days (CVE-2026-88771, CVSS 9.5)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/npm-phantomsub-101-baileys-whatsapp-abuse</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T00:00:00.000Z</news:publication_date>
      <news:title>101 npm packages abuse Baileys to hijack WhatsApp accounts (PhantomSub)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/en/blog/spectre-v2-btr-branch-target-reuse-jit</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T00:00:00.000Z</news:publication_date>
      <news:title>Spectre-v2 BTR attack leaks Linux root hash on patched Intel CPUs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/fr/blog/apple-cve-2026-86950-coregraphics-zero-day</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>fr</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T00:00:00.000Z</news:publication_date>
      <news:title>Apple corrige un zero-day CoreGraphics exploité (CVE-2026-86950)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.hackerposts.org/fr/blog/citrix-netscaler-cve-2026-88771-zero-day</loc>
    <news:news>
      <news:publication>
        <news:name>Hacker Posts</news:name>
        <news:language>fr</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T00:00:00.000Z</news:publication_date>
      <news:title>Citrix NetScaler : deux zero-days exploités corrigés (CVE-2026-88771)</news:title>
    </news:news>
  </url>
</urlset>
