<?xml version="1.0" encoding="UTF-8"?>
<!--generator='jetpack-15.9'-->
<!--Jetpack_Sitemap_Buffer_News_XMLWriter-->
<?xml-stylesheet type="text/xsl" href="//sra.io/news-sitemap.xsl"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd">
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fnvd.nist.gov%2Fvuln%2Fdetail%2FCVE-2026-11645&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7Ccca26e92e8bc4a1e5d2f08dec709dbaa%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639167042352902963%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=nYUT5pczHiwRz1Hmn4HEl5Uq7t%2FDtRzKz%2FJqIFYkSps%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-06-10T20:47:57Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Google Patches Actively Exploited Chrome V8 Zero-Day Allowing Arbitrary Code Execution</news:title>
   <news:publication_date>2026-06-10T20:47:57Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.bleepingcomputer.com%2Fnews%2Fsecurity%2Fservicenow-discloses-security-incident-exposing-customer-data%2F&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C3ab19d10ea7e4b9bf37c08dec709db07%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639167042344347500%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=%2BrDbGQuDe4%2FEU10PMhRvxPgWSWaPUM1khONWnyZGNTU%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-06-10T20:46:50Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>ServiceNow confirms active exploitation of unauthenticated API flaw enabling unauthorized data access in customer instances.</news:title>
   <news:publication_date>2026-06-10T20:46:50Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.bleepingcomputer.com%2Fnews%2Fsecurity%2Fivanti-max-severity-sentry-flaw-allows-code-execution-as-root%2F&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C79bab380d9b7481a168708dec709d972%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639167042317086612%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=iE7Oq5mRLxPk5GLOlhSm8YLZRtJJTrWHb5S5fzjPFVE%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-06-10T20:45:29Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Ivanti patches critical Sentry vulnerabilities that could enable root-level remote code execution and unauthorized administrative access.</news:title>
   <news:publication_date>2026-06-10T20:45:29Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://sra.io/wp-content/uploads/2026/06/TB20260609-June-2026-Microsoft-Patch-Tuesday.pdf#new_tab</loc>
  <lastmod>2026-06-09T20:05:59Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>TB20260609 – Microsoft Patch Tuesday</news:title>
   <news:publication_date>2026-06-09T20:05:23Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.trendmicro.com%2Fen_us%2Fresearch%2F26%2Ff%2Fold-winrar-flaw-fuels-attacks-on-ukraine.html&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7C4db23aba1804453cd87308dec655ce0a%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639166268983984155%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=wsVc8%2FXYH5ujPmkoXCjGLy4NqGBrkv9DPnfhTZV01SA%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-06-09T19:20:22Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Patched WinRAR Vulnerability CVE-2025-8088 Continues to Be Exploited by Multiple Russia-Aligned Threat Actors Against Ukrainian Government and Military Organizations</news:title>
   <news:publication_date>2026-06-09T19:20:22Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.veeam.com%2Fkb4869&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7Ce5d058f6840240cd9e5108dec655cb04%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639166268972480998%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=ANWvTqPnaqqY5l9RJSHvifmt6fBxKpORnSAMB7wNivM%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-06-09T19:19:27Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Critical Veeam Backup &amp;amp; Replication Vulnerability Enables Authenticated RCE on Domain-Joined Backup Servers</news:title>
   <news:publication_date>2026-06-09T19:19:27Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsocket.dev%2Fblog%2Fshai-hulud-descends-to-hades-miasma-pypi-wave&amp;#038;data=05%7C02%7Ckimberly.kaleta%40sra.io%7Ca3ee0c09d0004b5513f608dec655cce0%7C9bdee6ea21c54c1ca6c941dc3d08c310%7C0%7C0%7C639166268970789772%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;#038;sdata=mhYF6D44lUBsO0%2BGt2T%2FXHQfzkPwGvLNB7AgtJIdDKE%3D&amp;#038;reserved=0#new_tab</loc>
  <lastmod>2026-06-09T19:18:26Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 Shai-Hulud/Miasma Supply Chain Campaign Expands to PyPI with 37 Malicious Packages Targeting Developer Credentials, CI/CD Secrets, and Cloud Infrastructure Tokens.</news:title>
   <news:publication_date>2026-06-09T19:18:26Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://cybersecuritynews.com/unc3753-attacking-us-law-firms/#google_vignette#new_tab</loc>
  <lastmod>2026-06-08T20:43:35Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 UNC3753 Targets US Law Firms With Vishing, RMM Tools, Data Theft, and Physical Intrusion Attempts</news:title>
   <news:publication_date>2026-06-08T20:43:35Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://bishopfox.com/blog/popping-root-on-unifi-os-server-unauthenticated-rce-chain-detection-analysis#new_tab</loc>
  <lastmod>2026-06-08T20:42:38Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Critical UniFi OS vulnerability chain enables unauthenticated root access to network, camera, and physical access management systems</news:title>
   <news:publication_date>2026-06-08T20:42:38Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://www.fortinet.com/blog/threat-research/inside-cross-platform-propagation-of-new-gafgyt-variant-c0xmo#new_tab</loc>
  <lastmod>2026-06-08T20:41:41Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Security Risk Advisors</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>🚩 C0XMO botnet exploits vulnerable DD-WRT routers to build a cross-platform DDoS army and eliminate competing malware</news:title>
   <news:publication_date>2026-06-08T20:41:41Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
</urlset>