<?xml version="1.0" encoding="UTF-8"?>
<!--generator='jetpack-15.8'-->
<!--Jetpack_Sitemap_Buffer_News_XMLWriter-->
<?xml-stylesheet type="text/xsl" href="//sra.io/news-sitemap.xsl"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd">
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.openwall.com%2Flists%2Foss-security%2F2026%2F05%2F07%2F8&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C57c838c3a2d144bf9e4e08dead3725c1%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639138649551459620%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=n35o0%2FXrtkIbg9nFhr1v0yasrbesbZ0biQrgFr6GVng%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-08T22:10:26Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Dirty Frag Linux Kernel Vulnerability Chain Enables Local Root Privilege Escalation Across Major Distributions</news:title>
   <news:publication_date>2026-05-08T22:10:26Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.microsoft.com%2Fen-us%2Fsecurity%2Fblog%2F2026%2F05%2F07%2Fprompts-become-shells-rce-vulnerabilities-ai-agent-frameworks%2F&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C1444be2b72f9483d123f08dead372333%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639138649476986945%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=hgvZt%2B7P61v6kOTb%2Fijh453OiaCrYGs4%2BSVUlM9U2Ss%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-08T22:09:28Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Semantic Kernel Vulnerabilities Could Allow Prompt Injection to Become Remote Code Execution</news:title>
   <news:publication_date>2026-05-08T22:09:28Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.welivesecurity.com%2Fen%2Feset-research%2Ffake-call-logs-real-payments-how-callphantom-tricks-android-users%2F&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C89ca06c0a5014b01daa308dead371f5d%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639138649433326808%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=Mz7kU5mAswbtV7dbmhil%2FuHQHvYps3bZG0R5k2znBAA%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-08T22:07:58Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 CallPhantom Fraudulent Apps Scam Over 7 Million Android Users with Fake Call Log Services</news:title>
   <news:publication_date>2026-05-08T22:07:58Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.rapid7.com%2Fblog%2Fpost%2Ftr-muddying-tracks-state-sponsored-shadow-behind-chaos-ransomware%2F&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7Cab8825a8448b48bb5e2708deac639a46%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639137740957413725%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=09lYq3Iy2AMaAxE1XO2YX%2BswlXrHN5TMAkHiFZQGU48%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-07T20:45:54Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 State-backed MuddyWater masquerades as Chaos ransomware to enable stealthy espionage and data exfiltration</news:title>
   <news:publication_date>2026-05-07T20:45:54Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsocket.dev%2Fblog%2F5-malicious-nuget-packages-impersonate-chinese-ui-libraries&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7Cbf175d1de03a476d623708deac639826%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639137740932620842%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=rSG2cOTDA%2Fi0MNwOjbywmAnecG1B%2FlUUQCP37Swq8H4%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-07T20:44:55Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Five Malicious NuGet Packages Impersonate Chinese .NET Libraries to Steal Developer Credentials, SSH Keys, and Cryptocurrency Wallets</news:title>
   <news:publication_date>2026-05-07T20:44:55Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.microsoft.com%2Fen-us%2Fsecurity%2Fblog%2F2026%2F05%2F06%2Fclickfix-campaign-uses-fake-macos-utilities-lures-deliver-infostealers%2F&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C94597ab0f48841777ddb08deac6399ac%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639137740932216871%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=xKd6Q5qHJa79QIPPJsQz4Mp4mrP3aI%2FZ54xGd3LuE4U%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-07T20:43:43Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩ClickFix Campaign Targets macOS Users With Fake Utility Lures to Deliver Infostealers and Cryptocurrency Wallet Trojans</news:title>
   <news:publication_date>2026-05-07T20:43:43Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
</urlset>