<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/the-chaindrop-npm-worm-reproducing-the-oidc-trust-boundary-that-allowed-mass-package-publication</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T00:00:00.000Z</news:publication_date>
      <news:title>The ChainDrop npm Worm: Reproducing the OIDC Trust Boundary That Allowed Mass Package Publication</news:title>
      <news:keywords>security, npm, github-actions, oidc, supply-chain</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/tracing-the-encrochat-compromise-through-github-delivered-malware</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-17T00:00:00.000Z</news:publication_date>
      <news:title>Tracing the EncroChat Compromise Through GitHub-Delivered Malware</news:title>
      <news:keywords>cybersecurity, encrochat, malware, github, espionage</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/code-level-indicators-for-messiahgpt-generated-malicious-javascript-in-package-supply-chains</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-16T00:00:00.000Z</news:publication_date>
      <news:title>Code-Level Indicators for MessiahGPT-Generated Malicious JavaScript in Package Supply Chains</news:title>
      <news:keywords>javascript, supply-chain-security, malware-analysis, cybersecurity, ai-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/what-the-delta-in-flight-wi-fi-incident-reveals-about-captive-portal-trust-boundaries</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-16T00:00:00.000Z</news:publication_date>
      <news:title>What the Delta In-Flight Wi-Fi Incident Reveals About Captive Portal Trust Boundaries</news:title>
      <news:keywords>cybersecurity, captive-portal, in-flight-wifi, trust-boundaries, delta-air-lines</news:keywords>
    </news:news>
  </url>
</urlset>
