<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/openais-ai-testers-broke-hugging-faces-sandbox-defensive-patterns-for-ml-isolation</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-22T00:00:00.000Z</news:publication_date>
      <news:title>OpenAI’s AI Testers Broke Hugging Face’s Sandbox: Defensive Patterns for ML Isolation</news:title>
      <news:keywords>ai-security, hugging-face, sandboxing, mlops</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/oracle-july-2026-cpu-a-practical-triage-guide-for-rce-vulnerabilities-that-expose-enterprise-servers</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-22T00:00:00.000Z</news:publication_date>
      <news:title>Oracle July 2026 CPU: A Practical Triage Guide for RCE Vulnerabilities That Expose Enterprise Servers</news:title>
      <news:keywords>oracle, cybersecurity, rce, patch-management</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/picking-apart-refluxfs-what-went-wrong-in-xfs-and-how-to-harden-kernel-code-against-it</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-22T00:00:00.000Z</news:publication_date>
      <news:title>Picking Apart RefluXFS: What Went Wrong in XFS and How to Harden Kernel Code Against It</news:title>
      <news:keywords>linux, kernel, xfs, vulnerability, security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/the-ai-ot-attack-surface-after-forescouts-51-vulnerability-increase</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-22T00:00:00.000Z</news:publication_date>
      <news:title>The AI-OT Attack Surface After Forescout&apos;s 51% Vulnerability Increase</news:title>
      <news:keywords>cybersecurity, iot, ot-security, supply-chain, ai-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/what-wp2shell-cve-2026-63030-actually-exploits-and-how-to-detect-it-in-your-wordpress-stack</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-22T00:00:00.000Z</news:publication_date>
      <news:title>What WP2Shell (CVE-2026-63030) Actually Exploits and How to Detect It in Your WordPress Stack</news:title>
      <news:keywords>wordpress, cve, vulnerability-management, web-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/auditing-cloud-workloads-for-grid-impact-the-bit2watt-attack-and-developer-defenses</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-21T00:00:00.000Z</news:publication_date>
      <news:title>Auditing Cloud Workloads for Grid Impact: The Bit2Watt Attack and Developer Defenses</news:title>
      <news:keywords>cybersecurity, cloud-security, power-grid, incident-response</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/auditing-gemini-35-flash-cybers-auto-patches-before-they-hit-production</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-21T00:00:00.000Z</news:publication_date>
      <news:title>Auditing Gemini 3.5 Flash Cyber&apos;s Auto-Patches Before They Hit Production</news:title>
      <news:keywords>gemini-3-5-flash-cyber, vulnerability-detection, auto-patching, application-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/trusted-domain-abuse-in-practice-what-the-20-hijacked-government-sites-tell-us-about-link-based-threats</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-21T00:00:00.000Z</news:publication_date>
      <news:title>Trusted Domain Abuse in Practice: What the 20+ Hijacked Government Sites Tell Us About Link-Based Threats</news:title>
      <news:keywords>cybersecurity, malware, phishing, trusted-links, government-websites</news:keywords>
    </news:news>
  </url>
</urlset>
