<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://pulse.adyog.com/insights/devalue-buffer-shared-memory-leak-ssr</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T21:10:47+00:00</news:publication_date>
      <news:title>A devalue bug can copy other users' request data into public web pages</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/kiteworks-epg-cve-2026-54154-max-severity</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T20:10:40+00:00</news:publication_date>
      <news:title>Kiteworks patches a max-severity flaw in its Email Protection Gateway</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/cloudsyncd-macos-fake-zoom-installer</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T19:20:11+00:00</news:publication_date>
      <news:title>Jamf found a fake Zoom installer for Mac that uses the user's password as a key</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/verizon-bis-2026-breach-cost-claims-data</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T16:17:18+00:00</news:publication_date>
      <news:title>Verizon's claims data: the typical paid cyber claim is $83,000, with a long tail</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/acer-nitrosense-cve-2026-50610-system-access</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T16:14:02+00:00</news:publication_date>
      <news:title>Acer NitroSense component lets a standard Windows user become SYSTEM</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/microsoft-rust-tier-1-shared-compiler-backend</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T15:10:25+00:00</news:publication_date>
      <news:title>Microsoft makes Rust a Tier-1 internal language, sharing a Windows C++ back end</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/cheap-ai-checkers-agent-oversight-cost</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T13:14:40+00:00</news:publication_date>
      <news:title>Cheap AI checkers could make reviewing every agent action affordable</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/openai-distillation-model-decrypted-own-reasoning</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T12:20:08+00:00</news:publication_date>
      <news:title>Attackers asked OpenAI's model to unlock its own protected reasoning</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/cloudflare-agentic-web-blocking-is-pricing</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T12:13:06+00:00</news:publication_date>
      <news:title>Cloudflare: over half of traffic is not human, so blocking is a pricing choice</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/claude-opus-5-5-em-dash-ai-writing-tells</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T11:12:55+00:00</news:publication_date>
      <news:title>Claude Opus 5.5 dropped the em dash, but 2,548 AI writing tells remain</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/sc-wordpress-malware-self-healing-mesh</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T10:10:19+00:00</news:publication_date>
      <news:title>Sucuri: SC WordPress malware hides in at least 8 places and rebuilds itself</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/mediaflow-proxy-ssrf-cve-2026-100391</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T10:09:16+00:00</news:publication_date>
      <news:title>MediaFlow Proxy bug lets outsiders make the server fetch internal pages</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/openai-dots-agents-permissions</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T09:26:05+00:00</news:publication_date>
      <news:title>OpenAI's Dots agents reach more than 4,000 apps, so permissions matter most</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/bitget-zero-day-security-appliances-387m</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T09:21:48+00:00</news:publication_date>
      <news:title>Bitget says zero-day attacks on two security appliances led to $387.5M theft</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/angular-ssr-numeric-matrix-parameter-dos</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T09:18:18+00:00</news:publication_date>
      <news:title>Crafted URLs can crash Angular server rendering on Node.js, advisory says</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/gemini-4-argon-ties-astra-fewer-guesses</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T08:09:04+00:00</news:publication_date>
      <news:title>Google's Gemini 4 Argon ties GPT-6 Astra on score but guesses far less often</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/snyk-evo-ads-mcp-governance-agent-tools</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T07:10:13+00:00</news:publication_date>
      <news:title>Developers add AI agent tools in seconds, often with no security review</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/astro-netlify-image-allowlist-ssrf</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T06:08:56+00:00</news:publication_date>
      <news:title>Astro's Netlify adapter let image allowlists be bypassed</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/nextjs-september-2026-cache-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T05:16:57+00:00</news:publication_date>
      <news:title>Next.js fixes seven flaws; four involve caches serving the wrong content</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/astro-node-adapter-host-header-crash</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T05:15:23+00:00</news:publication_date>
      <news:title>One bad header can crash Astro servers that use a specific option</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/sql-copilot-cve-2026-65669-sysadmin</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T04:12:45+00:00</news:publication_date>
      <news:title>Researcher: Copilot in SSMS let a db_owner become a sysadmin</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/ai-safeguards-flag-routine-developer-work</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T03:14:21+00:00</news:publication_date>
      <news:title>Developers say AI safeguards slow routine aerospace, robotics and security work</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/dmdc-military-records-breach-file-sharing</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T02:12:52+00:00</news:publication_date>
      <news:title>A file-sharing flaw put unencrypted military records of 3 million people at risk</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/gpt6-astra-aisi-unauthorized-supply-chain-attacks</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T00:25:17+00:00</news:publication_date>
      <news:title>Safeguards off, GPT-6 Astra ran simulated supply-chain attacks in 29% of runs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/github-543699-live-credentials-revocation</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T00:24:20+00:00</news:publication_date>
      <news:title>Scan of public GitHub code finds 543,699 leaked credentials that still work</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/cloudflare-monetization-gateway-http-402-agents</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T00:23:05+00:00</news:publication_date>
      <news:title>Cloudflare tests a paywall for AI agents that charges per request</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/wiz-helm-chart-supply-chain-research</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T23:09:49+00:00</news:publication_date>
      <news:title>Wiz found confirmed supply chain risks in 61 of 814 Helm chart source projects</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/deepfake-abuse-sites-mainstream-infrastructure</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T22:09:25+00:00</news:publication_date>
      <news:title>Study: 88 deepfake abuse sites run on mainstream web infrastructure</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/gtig-ai-found-vulnerabilities-rce-2026</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T21:12:43+00:00</news:publication_date>
      <news:title>Google: half of likely AI-found flaws let attackers run code remotely</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/cisco-sd-wan-manager-cve-2026-76504-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T21:11:51+00:00</news:publication_date>
      <news:title>Cisco SD-WAN Manager flaw lets attackers skip login; Cisco says it is exploited</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/browser-attacks-past-login-push-security-2026</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T21:10:30+00:00</news:publication_date>
      <news:title>Push Security: attackers are moving into the browser, past login and email</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/zimbra-cve-2026-73570-probed-before-disclosure</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T20:13:34+00:00</news:publication_date>
      <news:title>Attackers probed a Zimbra mail flaw before it was public, Microsoft reports</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/entra-id-csp-script-injection-block</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T20:12:17+00:00</news:publication_date>
      <news:title>Entra ID browser sign-ins will block non-Microsoft scripts from mid-October</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/watchguard-fireware-cve-2026-86131-vpn-rce</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T19:13:30+00:00</news:publication_date>
      <news:title>WatchGuard firewall flaw lets a rogue VPN server run commands as root</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/ai-agents-probed-public-sites-routine-tasks</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T19:12:17+00:00</news:publication_date>
      <news:title>AI agents on routine data tasks probed three public sites for flaws</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/teamviewer-15-82-five-flaws-session-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T18:10:52+00:00</news:publication_date>
      <news:title>TeamViewer fixes five flaws; one lets authenticated attackers bypass permissions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/chrome-154-firefox-157-patch-100-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T18:10:18+00:00</news:publication_date>
      <news:title>Chrome, Firefox patch over 100 flaws; neither vendor mentions exploitation</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/waterisac-exposed-plcs-among-easiest-way-in</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T17:11:05+00:00</news:publication_date>
      <news:title>Internet-exposed controllers at water utilities are among the easiest ways in</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/openinfra-artifactory-breach-found-sept-15</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T17:10:08+00:00</news:publication_date>
      <news:title>OpenInfra Europe's package server was hit Aug 31 and found Sept 15</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/uat-11587-antino-spoofed-email-dmarc-none</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T16:13:56+00:00</news:publication_date>
      <news:title>A spoofed email failed DMARC and still reached the inbox in an Asia spy campaign</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/mythos-rejetto-hfs-weak-randomness-admin-access</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T16:10:53+00:00</news:publication_date>
      <news:title>Horizon3 says AI proved a kind of flaw its team used to abandon</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/star-blizzard-redflick-one-action-backdoor</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T15:15:55+00:00</news:publication_date>
      <news:title>Star Blizzard's backdoor needs one click after the reply, Microsoft says</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/property-based-testing-ai-agents-consistency</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T15:10:50+00:00</news:publication_date>
      <news:title>One way to test AI without an answer key: check that meaning-preserving changes change nothing</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/atns-ransomware-malware-air-traffic-ot-network</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T14:15:41+00:00</news:publication_date>
      <news:title>South Africa's air traffic provider found ransomware-linked malware</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/openssl-14-fixes-small-inputs-large-resource-use</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T13:15:27+00:00</news:publication_date>
      <news:title>Several of OpenSSL's 14 fixes let a peer force outsized memory or CPU use</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/ipsec-quantum-downgrade-cloudflare</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T13:12:14+00:00</news:publication_date>
      <news:title>Cloudflare: IPsec flaw could let a future quantum attacker sidestep upgrades</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/owasp-noir-endpoint-inventory-shadow-apis</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T12:13:28+00:00</news:publication_date>
      <news:title>Free OWASP tool lists routes in code, including undocumented ones</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/china-model-hubs-modelscope-moark-hf</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T12:12:29+00:00</news:publication_date>
      <news:title>China's 2023 Hugging Face block opened a market for home-grown AI hubs</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/eu-cra-container-kubernetes-five-year-duty</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T11:09:38+00:00</news:publication_date>
      <news:title>EU cyber law requires five years of updates for covered container products</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/wsl-containers-ga-windows-admin-controls</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T10:12:20+00:00</news:publication_date>
      <news:title>Microsoft launches Linux containers on Windows with admin controls alongside</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/detectify-open-critical-flaws-older-than-90-days</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T10:10:57+00:00</news:publication_date>
      <news:title>At Detectify customers, most open serious flaws are over three months old</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/cisco-survey-security-controls-six-months</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T09:09:57+00:00</news:publication_date>
      <news:title>Cisco survey: 21% of firms can add a control within 6 months of approval</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/pyjwt-nested-header-recursionerror-500</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T07:14:57+00:00</news:publication_date>
      <news:title>PyJWT flaw lets one crafted token turn logins into server errors</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/openclaw-enterprise-agent-control-plane</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T07:09:50+00:00</news:publication_date>
      <news:title>OpenClaw says IT teams block AI agents; it launches a free control plane</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/copilot-cowork-poisoned-skill-file-exfiltration</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T06:11:07+00:00</news:publication_date>
      <news:title>Researchers got Copilot Cowork to leak files using a poisoned skill file</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/openbao-vault-four-flaw-rce-chain</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T04:11:50+00:00</news:publication_date>
      <news:title>Four OpenBao flaws chain into code execution; Vault fix still awaited</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/anthropic-ai-rebuilds-malware-when-detected</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T04:10:42+00:00</news:publication_date>
      <news:title>Anthropic: one actor built AI agents to rebuild malware whenever it is flagged</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/storm-3068-azure-devops-pipeline-kubeconfig</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T03:10:34+00:00</news:publication_date>
      <news:title>Attackers built a malicious pipeline to collect Kubernetes keys, Microsoft says</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/ai-model-price-cuts-failed-max-thinking-run</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T02:10:00+00:00</news:publication_date>
      <news:title>New Claude and GPT models launched cheaper, yet a failed request cost $2.56</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/upm-package-manager-secure-defaults</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T01:29:37+00:00</news:publication_date>
      <news:title>upm package manager skips install scripts and delays new releases by default</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/toptech-tms7-tophat-ten-flaws-release-7-8</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T01:27:40+00:00</news:publication_date>
      <news:title>Toptech says version 7.8 fixes ten flaws in TMS7 and TopHAT</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/shopify-drops-react-native-agents-cost</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T01:23:34+00:00</news:publication_date>
      <news:title>Shopify drops React Native, saying AI agents cut the cost of native apps</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/mikrotik-routeros-preauth-web-flaw-cisa</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T01:19:10+00:00</news:publication_date>
      <news:title>MikroTik RouterOS flaw lets attackers run code as root with one request</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/lantronix-g520-update-path-root-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T01:17:06+00:00</news:publication_date>
      <news:title>Two flaws in Lantronix gateways let attackers run root code through updates</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/baicells-nova-430h-no-fix-cve-2026-96274</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T01:13:06+00:00</news:publication_date>
      <news:title>CISA lists no fix for a Baicells cell radio flaw; vendor did not reply to CISA</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/pixelleak-ai-agents-public-github-screenshots</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T00:09:52+00:00</news:publication_date>
      <news:title>Glow Labs says AI agents left 13,000+ internal images on public GitHub</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/spectre-btr-jit-linux-memory-leak</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T23:19:55+00:00</news:publication_date>
      <news:title>New Spectre flaw leaks Linux memory; CPU makers say software must fix it</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/darpa-xint-ai-military-messaging-apps</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T23:16:06+00:00</news:publication_date>
      <news:title>DARPA selects Xint to research AI security checks for military messaging apps</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/star-blizzard-redflick-single-interaction</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T22:14:57+00:00</news:publication_date>
      <news:title>Microsoft says Star Blizzard's RedFlick needs a single user interaction</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/divd-ai-agent-breach-messy-trail</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T22:12:05+00:00</news:publication_date>
      <news:title>DIVD says a flaw let an intruder in, then an AI agent ran the attack</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/phantomsub-npm-baileys-whatsapp-follow-campaign</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T21:15:55+00:00</news:publication_date>
      <news:title>OX Security: 101 npm packages make developers' WhatsApp accounts follow channels</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/meta-muse-agent-shared-home-address</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T21:12:56+00:00</news:publication_date>
      <news:title>Meta's Muse AI agent gave out a user's home address, he says</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/aws-agentcore-sdk-package-name-flaws</loc>
    <news:news>
      <news:publication>
        <news:name>WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-29T21:10:04+00:00</news:publication_date>
      <news:title>AgentCore SDK flaw: a package name could run commands, and the first fix failed</news:title>
    </news:news>
  </url>
</urlset>