<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/from-simplehelp-rce-to-data-theft-technical-analysis-of-the-cve-2026-48558-campaign-and-its-payloads</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T00:00:00.000Z</news:publication_date>
      <news:title>From SimpleHelp RCE to Data Theft: Technical Analysis of the CVE-2026-48558 Campaign and Its Payloads</news:title>
      <news:keywords>cybersecurity, simplehelp, cve-2026-48558, taskweaver, djinn-stealer</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/when-apples-security-advisories-name-ai-as-a-threat-what-developers-should-do-next</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T00:00:00.000Z</news:publication_date>
      <news:title>When Apple’s Security Advisories Name AI as a Threat: What Developers Should Do Next</news:title>
      <news:keywords>apple-security, cybersecurity, artificial-intelligence, developer-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/why-your-ai-coding-agent-trusts-terminal-output-it-shouldnt-and-what-to-fix</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T00:00:00.000Z</news:publication_date>
      <news:title>Why Your AI Coding Agent Trusts Terminal Output It Shouldn’t — and What to Fix</news:title>
      <news:keywords>security, ai-coding-agents, bash, supply-chain</news:keywords>
    </news:news>
  </url>
</urlset>
