<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/analyzing-the-usbliter8-securerom-bypass-a-hardware-vulnerability-that-cant-be-patched</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-20T00:00:00.000Z</news:publication_date>
      <news:title>Analyzing the usbliter8 SecureROM Bypass: A Hardware Vulnerability That Can&apos;t Be Patched</news:title>
      <news:keywords>apple-security, securerom, hardware-vulnerability, ios-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/auditing-oauth-integrations-after-the-icarus-groups-breach-of-klue</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-20T00:00:00.000Z</news:publication_date>
      <news:title>Auditing OAuth Integrations After the Icarus Group’s Breach of Klue</news:title>
      <news:keywords>oauth, cybersecurity, saas-security, incident-response</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/gravity-smtps-api-key-leak-how-it-happened-and-how-to-lock-down-smtp-credentials</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-20T00:00:00.000Z</news:publication_date>
      <news:title>Gravity SMTP&apos;s API Key Leak: How It Happened and How to Lock Down SMTP Credentials</news:title>
      <news:keywords>wordpress, smtp, api-keys, vulnerability, cybersecurity</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/texas-tpwd-vendor-breach-how-one-third-party-integration-exposed-3-million-records</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-20T00:00:00.000Z</news:publication_date>
      <news:title>Texas TPWD Vendor Breach: How One Third-Party Integration Exposed 3 Million Records</news:title>
      <news:keywords>cybersecurity, data-breach, third-party-risk, vendor-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/when-the-bootrom-is-broken-hardening-your-ios-apps-sensitive-data-without-trusting-the-hardware</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-20T00:00:00.000Z</news:publication_date>
      <news:title>When the Bootrom Is Broken: Hardening Your iOS App’s Sensitive Data Without Trusting the Hardware</news:title>
      <news:keywords>ios-security, bootrom, mobile-security, data-protection</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/hardening-splunk-enterprise-against-cve-2026-20253-a-developers-blueprint</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-19T00:00:00.000Z</news:publication_date>
      <news:title>Hardening Splunk Enterprise Against CVE-2026-20253: A Developer&apos;s Blueprint</news:title>
      <news:keywords>splunk, cve-2026-20253, cybersecurity, rce, incident-response</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/spotting-oracle-weblogic-zero-day-exploitation-patterns-with-a-nodejs-detection-script</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-19T00:00:00.000Z</news:publication_date>
      <news:title>Spotting Oracle WebLogic Zero-Day Exploitation Patterns with a Node.js Detection Script</news:title>
      <news:keywords>oracle-weblogic, zero-day, cybersecurity, nodejs, detection</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/the-beats-studio-buds-microphone-flaw-is-a-bluetooth-authorization-problemnot-an-apple-only-one</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-19T00:00:00.000Z</news:publication_date>
      <news:title>The Beats Studio Buds microphone flaw is a Bluetooth authorization problem—not an Apple-only one</news:title>
      <news:keywords>bluetooth, cybersecurity, apple, beats-studio-buds</news:keywords>
    </news:news>
  </url>
</urlset>
