<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/auditing-jira-confluence-and-bitbucket-data-center-for-cve-2026-21589-exposure</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T00:00:00.000Z</news:publication_date>
      <news:title>Auditing Jira, Confluence, and Bitbucket Data Center for CVE-2026-21589 Exposure</news:title>
      <news:keywords>atlassian, cve-2026-21589, jira, vulnerability-management, security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/porting-government-software-to-sovereign-infrastructure-cloudstack-stackit-and-meeseva</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T00:00:00.000Z</news:publication_date>
      <news:title>Porting Government Software to Sovereign Infrastructure: CloudStack, STACKIT, and MeeSeva</news:title>
      <news:keywords>sovereign-cloud, open-source, apache-cloudstack, stackit, public-sector</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/rebuilding-routing-thresholds-and-rag-fan-out-for-claude-haiku-55s-new-pricing</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T00:00:00.000Z</news:publication_date>
      <news:title>Rebuilding Routing Thresholds and RAG Fan-Out for Claude Haiku 5.5&apos;s New Pricing</news:title>
      <news:keywords>claude-haiku, llm-pricing, rag, model-routing, anthropic</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/testing-npm-provenance-and-ignore-scripts-against-a-real-install-time-rat-payload</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-08T00:00:00.000Z</news:publication_date>
      <news:title>Testing npm Provenance and ignore-scripts Against a Real Install-Time RAT Payload</news:title>
      <news:keywords>npm, supply-chain-security, nodejs, provenance, ignore-scripts</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/copilot-cli-prompt-injection-encrypted-payloads-and-developer-secret-theft</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T00:00:00.000Z</news:publication_date>
      <news:title>Copilot CLI Prompt Injection: Encrypted Payloads and Developer Secret Theft</news:title>
      <news:keywords>github-copilot, prompt-injection, mcp-security, developer-tooling, supply-chain-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/planning-node-and-edge-capacity-around-2027-chip-supply-amd-rapidus-2nm-and-infineon-signals</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T00:00:00.000Z</news:publication_date>
      <news:title>Planning Node and Edge Capacity Around 2027 Chip Supply: AMD, Rapidus 2nm, and Infineon Signals</news:title>
      <news:keywords>semiconductors, supply-chain, node, edge-computing, hardware</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/reproducing-the-cve-2026-106016-path-traversal-bypass-in-fastifystatic</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T00:00:00.000Z</news:publication_date>
      <news:title>Reproducing the CVE-2026-106016 Path Traversal Bypass in @fastify/static</news:title>
      <news:keywords>fastify, nodejs, security, path-traversal, cve</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/where-embeddinggemma-2-breaks-down-in-a-real-rag-pipeline</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-07T00:00:00.000Z</news:publication_date>
      <news:title>Where EmbeddingGemma 2 Breaks Down in a Real RAG Pipeline</news:title>
      <news:keywords>embeddinggemma, rag, vector-search, on-device-ai, multimodal-embeddings</news:keywords>
    </news:news>
  </url>
</urlset>
