<?xml version="1.0" encoding="UTF-8"?>
<!--generator='jetpack-15.9-a.5'-->
<!--Jetpack_Sitemap_Buffer_News_XMLWriter-->
<?xml-stylesheet type="text/xsl" href="//sra.io/news-sitemap.xsl"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd">
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ic3.gov%2FPSA%2F2026%2FPSA260521&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C449b410a12a841e7580b08debc1be8ca%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639155025252497374%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=S80wREnoTlRk0T5SnrUJ6wrE8bOdklpABtmSMtO5guA%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-27T19:00:46Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Kali365 Phishing Platform Enables OAuth Token Theft to Bypass MFA in Microsoft 365</news:title>
   <news:publication_date>2026-05-27T19:00:46Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fcloud.google.com%2Fblog%2Ftopics%2Fthreat-intelligence%2Fknowledgedeliver-viewstate-deserialization-vulnerability&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C63890175ea8c4d77733a08debc1be7d6%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639155025235250237%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=5xISElCH6Kt3En3qiVHvwrTFVsjLHBtDUNb2dGV98Wk%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-27T18:59:43Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Critical KnowledgeDeliver RCE (CVE-2026-5426) abused via shared ASP.NET machine keys to deliver web shells and Cobalt Strike</news:title>
   <news:publication_date>2026-05-27T18:59:43Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.watchguard.com%2Fwgrd-security-hub%2Fsecplicity-blog%2Fgrandoreiro-malware-campaign-targets-europe-and-latin-america&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C3e505c449af148763c1608debc1be6d8%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639155025235160315%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=YBV82aWZMVpOVLZWCKD4eJbttjs8hBPKAJ4O1mfURZw%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-27T18:58:35Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩Grandoreiro banking trojan continues active campaigns targeting financial institutions and customers across Portugal, Spain, Mexico, and Latin America</news:title>
   <news:publication_date>2026-05-27T18:58:35Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsocket.dev%2Fblog%2Flaravel-lang-compromise&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C04c3af8c56324a26510908debb516e5b%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639154155569178638%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=9ccqAkIuBU6GV6BK9K8vEjfuAeH1jcQSwqMKTXUfBE8%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-26T18:32:12Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Laravel-Lang supply chain compromise rewrites 700+ package versions to silently deliver RCE and mass credential theft.</news:title>
   <news:publication_date>2026-05-26T18:32:12Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Ffalconfeeds.io%2Fblogs%2Fgithub-under-siege-teampcp-lapsus-lazarus-developer-ecosystem-abuse%2F&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C2f873f15510044745e1608debb516d40%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639154155551399392%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=iDDjMJDgR%2BdsvQZdOOQyQNkD09m%2BZfrnQ04FQn7WG0M%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-26T18:31:09Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 TeamPCP and LAPSUS$ weaponize VS Code extensions to breach GitHub and steal thousands of internal repositories.</news:title>
   <news:publication_date>2026-05-26T18:31:09Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.sentinelone.com%2Fvulnerability-database%2Fcve-2026-26980%2F&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C2bcb72536ea8499e350308debb516c2b%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639154155552046634%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=rSpGxUbmJDLgzfhIPLTYrC94qUTLuDGcWe%2BI6Mu%2BC%2Fw%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-05-26T18:29:37Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Ghost CMS vulnerability fuels mass ClickFix campaign compromising 700+ websites with fake Cloudflare verification lures.</news:title>
   <news:publication_date>2026-05-26T18:29:37Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
</urlset>