<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/gitlab-cve-2026-85706-patch-order-triage-steps-and-ioc-hunting-for-self-hosted-installs</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
      <news:title>GitLab CVE-2026-85706: Patch Order, Triage Steps, and IoC Hunting for Self-Hosted Installs</news:title>
      <news:keywords>gitlab, cve-2026-85706, rce, self-hosted, ioc-hunting</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/why-long-lived-registry-tokens-fail-once-agents-can-publish-packages</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
      <news:title>Why Long-Lived Registry Tokens Fail Once Agents Can Publish Packages</news:title>
      <news:keywords>supply-chain-security, ai-agents, package-registry, devsecops</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/from-exposed-rdp-to-domain-encryption-auditing-your-stack-against-the-conti-playbook</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
      <news:title>From Exposed RDP to Domain Encryption: Auditing Your Stack Against the Conti Playbook</news:title>
      <news:keywords>cybersecurity, ransomware, rdp, active-directory, incident-response</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/testing-your-detection-pipeline-against-ai-reconstructed-malware-fragments</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
      <news:title>Testing Your Detection Pipeline Against AI-Reconstructed Malware Fragments</news:title>
      <news:keywords>cybersecurity, malware-detection, ai-security, threat-detection</news:keywords>
    </news:news>
  </url>
</urlset>
