<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/auditing-plugin4shell-auto-load-paths-in-claude-code-codex-copilot-and-gemini-cli</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T00:00:00.000Z</news:publication_date>
      <news:title>Auditing Plugin4Shell Auto-Load Paths in Claude Code, Codex, Copilot, and Gemini CLI</news:title>
      <news:keywords>security, ai-coding-agents, rce, supply-chain, developer-tools</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/why-a-github-repo-is-not-a-trust-signal-the-rapuncel-lastpass-campaign</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T00:00:00.000Z</news:publication_date>
      <news:title>Why a GitHub Repo Is Not a Trust Signal: The Rapuncel LastPass Campaign</news:title>
      <news:keywords>security, malware, github, supply-chain, lastpass</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/docker-sandboxes-macos-host-escape-what-guest-code-can-read-and-modify</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-18T00:00:00.000Z</news:publication_date>
      <news:title>Docker Sandboxes macOS Host Escape: What Guest Code Can Read and Modify</news:title>
      <news:keywords>docker, container-security, macos, sandbox-escape, devsecops</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/reverse-engineering-the-brevo-clickfix-injection-how-a-trusted-marketing-script-became-a-dropper</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-18T00:00:00.000Z</news:publication_date>
      <news:title>Reverse-Engineering the Brevo ClickFix Injection: How a Trusted Marketing Script Became a Dropper</news:title>
      <news:keywords>supply-chain-attack, clickfix, third-party-scripts, content-security-policy, brevo</news:keywords>
    </news:news>
  </url>
</urlset>
