<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/auditing-cloud-workloads-for-grid-impact-the-bit2watt-attack-and-developer-defenses</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-21T00:00:00.000Z</news:publication_date>
      <news:title>Auditing Cloud Workloads for Grid Impact: The Bit2Watt Attack and Developer Defenses</news:title>
      <news:keywords>cybersecurity, cloud-security, power-grid, incident-response</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/auditing-gemini-35-flash-cybers-auto-patches-before-they-hit-production</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-21T00:00:00.000Z</news:publication_date>
      <news:title>Auditing Gemini 3.5 Flash Cyber&apos;s Auto-Patches Before They Hit Production</news:title>
      <news:keywords>gemini-3-5-flash-cyber, vulnerability-detection, auto-patching, application-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/trusted-domain-abuse-in-practice-what-the-20-hijacked-government-sites-tell-us-about-link-based-threats</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-21T00:00:00.000Z</news:publication_date>
      <news:title>Trusted Domain Abuse in Practice: What the 20+ Hijacked Government Sites Tell Us About Link-Based Threats</news:title>
      <news:keywords>cybersecurity, malware, phishing, trusted-links, government-websites</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/from-advisory-to-production-how-to-automate-the-vulnerability-to-fix-pipeline</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-20T00:00:00.000Z</news:publication_date>
      <news:title>From Advisory to Production: How to Automate the Vulnerability-to-Fix Pipeline</news:title>
      <news:keywords>devsecops, vulnerability-management, patch-management, automation</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/how-ottercookie-used-svg-files-as-a-delivery-vector-to-backdoor-developer-environments</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-20T00:00:00.000Z</news:publication_date>
      <news:title>How OTTERCOOKIE Used SVG Files as a Delivery Vector to Backdoor Developer Environments</news:title>
      <news:keywords>cybersecurity, malware, svg, developer-security, north-korea</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/how-ransomware-reload-attacks-exploit-law-firm-document-management-systems</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-20T00:00:00.000Z</news:publication_date>
      <news:title>How Ransomware Reload Attacks Exploit Law Firm Document Management Systems</news:title>
      <news:keywords>ransomware, cybersecurity, law-firms, document-management-systems</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/lessons-from-the-hugging-face-ai-agent-breach-locking-down-model-access</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-20T00:00:00.000Z</news:publication_date>
      <news:title>Lessons from the Hugging Face AI Agent Breach: Locking Down Model Access</news:title>
      <news:keywords>hugging-face, ai-security, model-access, cybersecurity</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/when-wordpress-patches-arent-enough-incident-response-for-live-exploitation-of-recent-bugs</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-20T00:00:00.000Z</news:publication_date>
      <news:title>When WordPress Patches Aren’t Enough: Incident Response for Live Exploitation of Recent Bugs</news:title>
      <news:keywords>wordpress, incident-response, cybersecurity, vulnerability-management</news:keywords>
    </news:news>
  </url>
</urlset>
