<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/cve-2026-58231-and-the-post-patch-exploitation-window-runtime-checks-for-sap-commerce-cloud-teams</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-15T00:00:00.000Z</news:publication_date>
      <news:title>CVE-2026-58231 and the Post-Patch Exploitation Window: Runtime Checks for SAP Commerce Cloud Teams</news:title>
      <news:keywords>sap-commerce-cloud, cve-2026-58231, exploitation-attempts, runtime-checks</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/the-litellm-cicd-hijack-credential-harvesting-and-the-github-actions-settings-that-allowed-it</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-15T00:00:00.000Z</news:publication_date>
      <news:title>The LiteLLM CI/CD Hijack: Credential Harvesting and the GitHub Actions Settings That Allowed It</news:title>
      <news:keywords>cybersecurity, github-actions, supply-chain, litellm</news:keywords>
    </news:news>
  </url>
</urlset>
