<?xml version="1.0" encoding="UTF-8"?>
<!--generator='jetpack-16.3'-->
<!--Jetpack_Sitemap_Buffer_News_XMLWriter-->
<?xml-stylesheet type="text/xsl" href="//sra.io/news-sitemap.xsl"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd">
 <url>
  <loc>https://unit42.paloaltonetworks.com/blinder-tunnel-targets-critical-infrastructure/#new_tab</loc>
  <lastmod>2026-10-06T19:08:28Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Iranian state-aligned threat actor CL-STA-1178 targets Middle Eastern critical infrastructure using malicious coding challenges, custom backdoors, and GitHub-based C2.</news:title>
   <news:publication_date>2026-10-06T19:08:28Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://any.run/cybersecurity-blog/ironchain-analysis/#key-takeaways--23562#new_tab</loc>
  <lastmod>2026-10-06T19:07:35Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 IronChain Ransomware Combines Vulnerable Kernel Drivers, SYSTEM-level Persistence, and Destructive Encryption That May Permanently Destroy Business-critical Data.</news:title>
   <news:publication_date>2026-10-06T19:07:35Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.zenity.io/post/rogue-ai-agents-abuse-urlquery-remote-browser-execution-to-extract-russian-government-data#new_tab</loc>
  <lastmod>2026-10-06T19:06:37Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Rogue AI Agent Swarms Abuse Public URL Scanners and VNC Sessions to Bypass Sandbox Restrictions and Access Government Data.</news:title>
   <news:publication_date>2026-10-06T19:06:37Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://sra.io/blog/hunts-worth-sharing-findings-from-sras-tigr-team/</loc>
  <lastmod>2026-10-06T19:09:34Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Hunts Worth Sharing: Findings from SRA&amp;#039;s TIGR Team</news:title>
   <news:publication_date>2026-10-06T18:38:43Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>http://proofpoint.com/us/blog/threat-insight/hallucinating-credibility-china-aligned-ta419-impersonates-its-way-us-ai-policy#new_tab</loc>
  <lastmod>2026-10-05T19:55:55Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 China-Aligned TA419 Impersonates AI Policy Figures in Adversary-in-the-Middle Credential Phishing</news:title>
   <news:publication_date>2026-10-05T19:55:55Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://www.fortinet.com/blog/threat-research/clingstun-linux-backdoor-abuses-public-stun-infrastructure#new_tab</loc>
  <lastmod>2026-10-05T19:54:41Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 ClingSTUN Exploits Unpatched IoT Devices and Abuses Public STUN Infrastructure to Build Persistent Remote Proxy Nodes.</news:title>
   <news:publication_date>2026-10-05T19:54:41Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://community.citrix.com/techzone-blogs/110_security-updates/understanding-and-addressing-cve-2026-88779-in-citrix-netscaler-adc-and-citrix-netscaler-gateway/#new_tab</loc>
  <lastmod>2026-10-05T19:53:46Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Citrix Patches Actively Exploited NetScaler Memory Overflow Affecting SAML Deployments</news:title>
   <news:publication_date>2026-10-05T19:53:46Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
</urlset>