<?xml version="1.0" encoding="UTF-8"?>
<!--generator='jetpack-16.3-a.1'-->
<!--Jetpack_Sitemap_Buffer_News_XMLWriter-->
<?xml-stylesheet type="text/xsl" href="//sra.io/news-sitemap.xsl"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd">
 <url>
  <loc>https://unit42.paloaltonetworks.com/atomic-macos-amos-stealer-activity/#new_tab</loc>
  <lastmod>2026-09-16T20:33:34Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 AMOS Stealer Uses Terminal-Based Social Engineering to Harvest macOS Credentials, Wallets, and Cloud Data</news:title>
   <news:publication_date>2026-09-16T20:33:34Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://jfrog.com/blog/parallels-desktop-turns-appliance-install-into-root-shell/#new_tab</loc>
  <lastmod>2026-09-16T20:32:41Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Parallels Desktop Local Privilege Escalation Allows Any Unprivileged User to Execute Code as Root via Appliance Installation</news:title>
   <news:publication_date>2026-09-16T20:32:41Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX#new_tab</loc>
  <lastmod>2026-09-16T20:31:42Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Cisco patches critical SQL injection in Secure Email Gateway enabling unauthenticated remote code execution as root.</news:title>
   <news:publication_date>2026-09-16T20:31:42Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://www.microsoft.com/en-us/security/blog/2026/09/10/protecting-organizations-ai-assisted-executive-impersonation-invoice-fraud/#new_tab</loc>
  <lastmod>2026-09-16T20:30:49Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 AI-Assisted Executive Impersonation Campaign Sends 1M+ Invoice Fraud Emails Through Trusted Infrastructure</news:title>
   <news:publication_date>2026-09-16T20:30:49Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://www.ic3.gov/CSA/2026/260915-2.pdf#new_tab</loc>
  <lastmod>2026-09-16T20:29:53Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Iranian State Cyber Actors Use CHOSEN BRICK Malware to Target Dissidents, Activists, and Journalists</news:title>
   <news:publication_date>2026-09-16T20:29:53Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>http://cisa.gov/resources-tools/resources/detecting-and-mitigating-active-directory-compromises?utm_source=ActiveDirectoryCompromises&amp;#038;utm_medium=GovDelivery#new_tab</loc>
  <lastmod>2026-09-16T20:28:51Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISA and International Partners Release Guidance for Detecting and Mitigating Active Directory Compromise</news:title>
   <news:publication_date>2026-09-16T20:28:51Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://sra.io/blog/the-reason-you-failed-at-soar-is-why-youll-fail-at-ai/</loc>
  <lastmod>2026-09-16T16:54:43Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Learn from SOAR Mistakes to Succeed at SOC AI</news:title>
   <news:publication_date>2026-09-16T14:03:02Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://www.acronis.com/en/tru/posts/red-heron-exploits-gitea-n-day-flaw-in-multinational-campaign-exposing-new-linux-rootkit/#new_tab</loc>
  <lastmod>2026-09-15T12:40:24Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Red Heron Exploits Gitea CVE-2026-60004 to Deploy JITTERLY and SIXZUT Linux Rootkit</news:title>
   <news:publication_date>2026-09-15T12:40:24Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://unit42.paloaltonetworks.com/behavioral-clustering-map-to-cloud-identities/#new_tab</loc>
  <lastmod>2026-09-15T12:39:19Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Unit 42 Maps Cloud Identity Behavior to Detect Role Masquerading and Anomalous Activity</news:title>
   <news:publication_date>2026-09-15T12:39:19Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://hunt.io/blog/thai-broadband-fortigate-sslvpn-meshcentral-intrusion#new_tab</loc>
  <lastmod>2026-09-15T12:38:28Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 FortiGate Exploitation Against Thai Broadband Provider Leads to MeshCentral Persistence, Credential Theft, and Internal Lateral Movement</news:title>
   <news:publication_date>2026-09-15T12:38:28Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
</urlset>