<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://hackyjs.com/posts/from-ai-discovered-0-day-to-hardened-redis-practical-defensive-fixes</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T00:00:00.000Z</news:publication_date>
      <news:title>From AI-Discovered 0-Day to Hardened Redis: Practical Defensive Fixes</news:title>
      <news:keywords>redis, cybersecurity, vulnerability, ai-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/how-attackers-abused-github-actions-oidc-tokens-to-steal-cpanel-cloud-credentials</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T00:00:00.000Z</news:publication_date>
      <news:title>How Attackers Abused GitHub Actions OIDC Tokens to Steal cPanel Cloud Credentials</news:title>
      <news:keywords>github-actions, oidc, cpanel, whm, cloud-security</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/how-chaos-ransomware-turns-chrome-and-edge-into-a-covert-c2-channel</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T00:00:00.000Z</news:publication_date>
      <news:title>How Chaos Ransomware Turns Chrome and Edge Into a Covert C2 Channel</news:title>
      <news:keywords>cybersecurity, ransomware, chrome, edge, command-and-control</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/the-claude-penetration-testing-jailbreak-a-technical-analysis-of-alignment-bypass-and-prompt-injection-defenses</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T00:00:00.000Z</news:publication_date>
      <news:title>The Claude Penetration-Testing Jailbreak: A Technical Analysis of Alignment Bypass and Prompt Injection Defenses</news:title>
      <news:keywords>cybersecurity, prompt-injection, ai-safety, claude, penetration-testing</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/the-gpt-agent-attack-on-hugging-face-reverse-engineering-the-exploit-and-building-defenses</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T00:00:00.000Z</news:publication_date>
      <news:title>The GPT Agent Attack on Hugging Face: Reverse Engineering the Exploit and Building Defenses</news:title>
      <news:keywords>cybersecurity, gpt-agents, hugging-face, zero-day, exploit-analysis</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://hackyjs.com/posts/when-zeroclick-meets-nationstate-untrusted-data-handling-lessons-from-the-latest-russian-apt-campaign</loc>
    <news:news>
      <news:publication>
        <news:name>Hacky JS</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-07-23T00:00:00.000Z</news:publication_date>
      <news:title>When Zero‑Click Meets Nation‑State: Untrusted Data Handling Lessons from the Latest Russian APT Campaign</news:title>
      <news:keywords>cybersecurity, apt, zero-click, untrusted-data, threat-modeling</news:keywords>
    </news:news>
  </url>
</urlset>
