<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/building-an-attack-surface-recon-script-with-criminal-ips-aitem-api</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-15T00:00:00.000Z</news:publication_date>
      <news:title>Building an Attack Surface Recon Script with Criminal IP’s AITEM API</news:title>
      <news:keywords>cybersecurity, attack-surface-management, api, automation</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/cve-2020-24932-a-sorting-parameter-a-missing-check-and-a-critical-sqli</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-15T00:00:00.000Z</news:publication_date>
      <news:title>CVE-2020-24932: A Sorting Parameter, a Missing Check, and a Critical SQLi</news:title>
      <news:keywords>cve-2020-24932, sql-injection, vulnerability-analysis, application-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/defending-nodejs-monitoring-against-the-wazuh-alert-tampering-flaw</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-15T00:00:00.000Z</news:publication_date>
      <news:title>Defending Node.js Monitoring Against the Wazuh Alert Tampering Flaw</news:title>
      <news:keywords>nodejs, wazuh, security-monitoring, incident-response</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/dissecting-the-winrar-ads-attack-how-malware-hides-in-file-streams-and-what-to-do-about-it</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-15T00:00:00.000Z</news:publication_date>
      <news:title>Dissecting the WinRAR ADS Attack: How Malware Hides in File Streams and What to Do About It</news:title>
      <news:keywords>cybersecurity, winrar, ntfs, malware</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/from-ai-generated-exploit-to-code-defense-the-google-zero-day-takedown-explained</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-15T00:00:00.000Z</news:publication_date>
      <news:title>From AI-Generated Exploit to Code Defense: The Google Zero-Day Takedown Explained</news:title>
      <news:keywords>cybersecurity, zero-day, ai-security, incident-response</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/what-the-murray-county-ransomware-breach-teaches-about-backup-isolation-and-segmentation</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-15T00:00:00.000Z</news:publication_date>
      <news:title>What the Murray County Ransomware Breach Teaches About Backup Isolation and Segmentation</news:title>
      <news:keywords>ransomware, backup-isolation, network-segmentation, cybersecurity</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/37m-for-ai-attack-path-hunting-how-to-start-mapping-your-own-infrastructure</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>$37M for AI Attack Path Hunting: How to Start Mapping Your Own Infrastructure</news:title>
      <news:keywords>cybersecurity, attack-path-analysis, cloud-security, iam</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/a-javascript-developers-hardening-checklist-for-the-chrome-cve-2026-11645-0-day</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>A JavaScript Developer’s Hardening Checklist for the Chrome CVE-2026-11645 0-Day</news:title>
      <news:keywords>javascript, chrome, security, cve, hardening</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/ai-model-unavailability-attacks-practical-defenses-after-anthropics-fable-5-outage</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>AI Model Unavailability Attacks: Practical Defenses After Anthropic&apos;s Fable 5 Outage</news:title>
      <news:keywords>ai-security, prompt-injection, model-fallbacks, availability</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/auditing-ai-platform-dependencies-after-the-claude-fable-5-shutdown</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>Auditing AI Platform Dependencies After the Claude Fable 5 Shutdown</news:title>
      <news:keywords>ai-security, vendor-risk, dependency-audit, cloud-infrastructure</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/auditing-your-ai-stack-for-single-provider-lock-in-after-anthropics-access-cut</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>Auditing Your AI Stack for Single-Provider Lock-In After Anthropic’s Access Cut</news:title>
      <news:keywords>ai-ops, vendor-lock-in, llm-routing, resilience</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/from-red-team-to-ban-practical-prompt-injection-defenses-after-the-claude-fable-case</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>From Red Team to Ban: Practical Prompt Injection Defenses After the Claude Fable Case</news:title>
      <news:keywords>prompt-injection, ai-security, red-teaming, anthropic-claude, secure-ai-design</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/from-router-to-cloud-analyzing-fancy-bears-infrastructure-takeovers-and-what-developers-must-lock-down</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>From Router to Cloud: Analyzing Fancy Bear’s Infrastructure Takeovers and What Developers Must Lock Down</news:title>
      <news:keywords>fancy-bear, edgerouter, cloud-security, threat-analysis, infrastructure-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/hardening-npm-install-practical-script-isolation-and-provenance-validation-with-npm-12</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>Hardening npm Install: Practical Script Isolation and Provenance Validation with NPM 12</news:title>
      <news:keywords>npm, javascript-supply-chain, package-management, devsecops</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/how-to-audit-your-ai-model-supply-chain-after-the-anthropic-directive</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>How to Audit Your AI Model Supply Chain After the Anthropic Directive</news:title>
      <news:keywords>ai-security, supply-chain, model-governance, anthropic</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/how-to-harden-your-ai-agent-after-the-mythos-and-fable-prompt-injection-breach</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>How to Harden Your AI Agent After the Mythos and Fable Prompt Injection Breach</news:title>
      <news:keywords>ai-security, prompt-injection, llm-agents, application-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/how-to-write-resilient-ai-model-fallbacks-lessons-from-the-anthropic-mythos-5-ban</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>How to Write Resilient AI Model Fallbacks: Lessons from the Anthropic Mythos 5 Ban</news:title>
      <news:keywords>ai-infrastructure, fallback-strategies, model-routing, llm-ops</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/oracle-peoplesoft-under-fire-auditing-your-erp-for-the-server-side-bugs-that-matter</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>Oracle PeopleSoft Under Fire: Auditing Your ERP for the Server-Side Bugs That Matter</news:title>
      <news:keywords>oracle-peoplesoft, erp-security, server-side-vulnerabilities, application-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/securing-your-game-build-pipeline-against-argamal-style-supply-chain-attacks</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>Securing Your Game Build Pipeline Against Argamal-Style Supply Chain Attacks</news:title>
      <news:keywords>supply-chain-security, game-dev, ci-cd, malware</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/testing-anthropics-claude-fable-5-for-automated-detection-rule-generation</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-14T00:00:00.000Z</news:publication_date>
      <news:title>Testing Anthropic&apos;s Claude Fable 5 for Automated Detection Rule Generation</news:title>
      <news:keywords>cybersecurity, ai-security, detection-engineering, anthropic</news:keywords>
    </news:news>
  </url>
</urlset>
