<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/auditing-ai-agent-trust-boundaries-ciscos-approach-to-preventing-agent-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-04T00:00:00.000Z</news:publication_date>
      <news:title>Auditing AI Agent Trust Boundaries: Cisco’s Approach to Preventing Agent Takeover</news:title>
      <news:keywords>ai-security, cisco, agentic-ai, cybersecurity</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/auditing-oauth-flows-in-okta-and-max-messenger-to-stop-phaas-token-theft</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-04T00:00:00.000Z</news:publication_date>
      <news:title>Auditing OAuth Flows in Okta and MAX Messenger to Stop PhaaS Token Theft</news:title>
      <news:keywords>okta, oauth, phishing, token-theft</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/cisas-actively-exploited-android-framework-bug-a-practical-fix-guide-for-app-developers</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-04T00:00:00.000Z</news:publication_date>
      <news:title>CISA’s Actively Exploited Android Framework Bug: A Practical Fix Guide for App Developers</news:title>
      <news:keywords>android, cybersecurity, cisa, mobile-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/kernel-mode-dos-in-comodo-internet-security-a-reminder-that-your-defensive-code-can-become-the-attack-surface</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-04T00:00:00.000Z</news:publication_date>
      <news:title>Kernel-Mode DoS in Comodo Internet Security: A Reminder That Your Defensive Code Can Become the Attack Surface</news:title>
      <news:keywords>cybersecurity, windows, kernel-mode, denial-of-service, comodo-internet-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/mitigating-the-acer-wave-7-zero-day-with-firewall-rules-and-segmentation</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-04T00:00:00.000Z</news:publication_date>
      <news:title>Mitigating the Acer Wave 7 Zero-Day with Firewall Rules and Segmentation</news:title>
      <news:keywords>cybersecurity, network-security, firewall, segmentation, router-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/unusual-c2-channels-analyzing-the-steam-community-page-abuse-in-a-wordpress-malware-campaign</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-04T00:00:00.000Z</news:publication_date>
      <news:title>Unusual C2 Channels: Analyzing the Steam Community Page Abuse in a WordPress Malware Campaign</news:title>
      <news:keywords>cybersecurity, malware, wordpress, command-and-control, steam</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/ai-security-tool-unearths-two-year-old-redis-flaw-that-allows-full-server-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-03T00:00:00.000Z</news:publication_date>
      <news:title>AI Security Tool Unearths Two-Year-Old Redis Flaw That Allows Full Server Takeover</news:title>
      <news:keywords>redis, security, vulnerability-management, ai-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/auditing-github-oauth-implementations-for-single-click-token-exposure</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-03T00:00:00.000Z</news:publication_date>
      <news:title>Auditing GitHub OAuth Implementations for Single-Click Token Exposure</news:title>
      <news:keywords>github, oauth, security, tokens</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/countering-ai-driven-attacks-with-exposure-management-developer-takeaways</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-03T00:00:00.000Z</news:publication_date>
      <news:title>Countering AI-Driven Attacks with Exposure Management: Developer Takeaways</news:title>
      <news:keywords>cybersecurity, ai-security, exposure-management, devsecops</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/dissecting-the-githubdev-vulnerability-that-leaks-oauth-tokens-in-one-click</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-03T00:00:00.000Z</news:publication_date>
      <news:title>Dissecting the GitHub.dev Vulnerability That Leaks OAuth Tokens in One Click</news:title>
      <news:keywords>github, oauth, vulnerability, web-security, cybersecurity</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/hardening-windows-against-search-uri-ntlmv2-credential-theft</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-03T00:00:00.000Z</news:publication_date>
      <news:title>Hardening Windows Against Search URI NTLMv2 Credential Theft</news:title>
      <news:keywords>windows-security, ntlmv2, credential-theft, hardening, vulnerability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/when-attackers-use-ai-to-evade-edr-hardening-build-agents-against-lateral-movement</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-03T00:00:00.000Z</news:publication_date>
      <news:title>When Attackers Use AI to Evade EDR: Hardening Build Agents Against Lateral Movement</news:title>
      <news:keywords>cybersecurity, active-directory, edr, build-agents, lateral-movement</news:keywords>
    </news:news>
  </url>
</urlset>
