<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://pulse.adyog.com/insights/mastra-npm-supply-chain-north-korea-sapphire-sleet-ai-framework</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-26</news:publication_date>
      <news:title>North Korea Hijacked an AI Agent Framework With 8M Weekly Downloads. It Took 88 Minutes.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/klue-breach-oauth-cascade-hackerone-snyk-recorded-future</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-26</news:publication_date>
      <news:title>The Cybersecurity Industry Got Breached Through a Sales Tool. OAuth Tokens Are the New Skeleton Keys.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/gravity-smtp-wordpress-api-keys-leaked-17m-attacks</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-26</news:publication_date>
      <news:title>A Permission Callback That Returns True. 100,000 WordPress Sites Leaked Live API Keys. 17 Million Attacks Followed.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/gpt-55-cyber-ai-vulnerability-hunting-patch-the-planet</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-26</news:publication_date>
      <news:title>GPT-5.5-Cyber Scores 85.6% on Vulnerability Detection. Your Framework Just Got a New Dimension: AI-Defensibility.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/fortibleed-86000-devices-110m-credentials-perimeter-is-dead</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-26</news:publication_date>
      <news:title>FortiBleed: 86,000 Firewalls Compromised, 110 Million Credentials Harvested. Your Perimeter Just Became the Attack.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/difytap-dify-ai-platform-cross-tenant-data-exposure-cvss-9-4</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-26</news:publication_date>
      <news:title>DifyTap: The AI Platform Powering 1 Million Apps Was Leaking Private Chats Between Tenants. CVSS 9.4.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/cordyceps-cicd-300-repos-microsoft-google-supply-chain-hijack</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-26</news:publication_date>
      <news:title>Cordyceps: 300+ GitHub Repos at Microsoft, Google, Cloudflare Exploitable via CI/CD Flaws. Your Framework Is Only as Secure as Its Build Pipeline.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/autojack-one-web-page-hijacks-microsoft-autogen-ai-agent</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-26</news:publication_date>
      <news:title>AutoJack: An AI Agent Visited a Web Page. That Web Page Took Over the Machine.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/wordpress-epss-098-highest-exploit-probability-any-framework</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-25</news:publication_date>
      <news:title>WordPress Has a 98% Exploit Probability Score. No Other Framework Comes Close.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/ubiquiti-unifi-triple-zero-day-cisa-kev-ransomware-edge</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-25</news:publication_date>
      <news:title>Three CVSS 9.5 Vulnerabilities in Ubiquiti UniFi. CISA Says Patch by Tomorrow. Ransomware Operators Are Already Inside.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/trapdoor-supply-chain-poisons-cursor-claude-code-ai-assistants</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-25</news:publication_date>
      <news:title>TrapDoor Plants Instructions Inside Your AI Coding Assistant. It Follows Them.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/thirty-critical-cves-zero-percent-patched-at-disclosure</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-25</news:publication_date>
      <news:title>30 Critical CVEs Disclosed in 24 Hours. Zero Patches Available. The Gap Is Getting Worse.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/supply-chain-attacks-outrunning-cve-system-shai-hulud-miasma-hades</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-25</news:publication_date>
      <news:title>100+ npm and PyPI Packages Compromised. Zero CVEs Filed. The Supply Chain Is Outrunning the Vulnerability System.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/squidbleed-29-year-old-proxy-bug-ai-discovered</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-25</news:publication_date>
      <news:title>Squidbleed: A 29-Year-Old Bug That AI Found and Humans Missed. The Audit Landscape Just Changed.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/shapedplugin-wordpress-supply-chain-400k-sites-backdoored</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-25</news:publication_date>
      <news:title>ShapedPlugin Backdoor: 400K WordPress Sites Exposed Through a Compromised Build Pipeline.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/gemini-cli-cvss-10-google-own-ai-tool-cicd-rce</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-25</news:publication_date>
      <news:title>Gemini CLI Scored CVSS 10.0. A GitHub Issue Could Execute Arbitrary Commands on Your Build Server.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/three-frameworks-zero-github-releases-release-transparency-divide</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>3 Frameworks Ship Zero GitHub Releases. 8 Ship 50+. The Release Transparency Divide Is a Security Signal.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/spring-6-82-avg-cvss-enterprise-java-severity-crisis</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>Spring's 6.82 Average CVSS: Enterprise Java's Severity Problem</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/magento-6767-commits-288-cves-most-active-framework-losing</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>Magento: 6,767 Commits/Year, 288 CVEs. The Most Active Framework Is Still Losing.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/japan-87-percent-wordpress-g7-most-vulnerable-web</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>Japan's 87.2% WordPress Dependency: The G7's Most Vulnerable Web</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/flask-56-commits-186-cves-good-enough-framework-silent-risk</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>Flask: 56 Commits/Year, 71K Stars. 'Lightweight' Pushes Risk Where Nobody Is Looking.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/five-eyes-ai-cyber-threat-months-not-years-legacy-first-target</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>Five Eyes: AI-Powered Cyber Attacks Are Months Away. Legacy Systems Are the First Target.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/commits-per-contributor-framework-engineering-efficiency-ranking</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>Magento Ships 26 Commits per Contributor. Vue Ships 0.9. Engineering Efficiency Varies 29x Across Frameworks.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/angular-376-contributors-100k-stars-enterprise-sustainability-advantage</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>Angular Has 376 Contributors per 100K Stars. React Has 167. That Ratio Decides Who Survives.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/ai-readiness-gap-70-points-framework-divide</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>The AI Readiness Gap: 70 Points Separate the Best From the Worst</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/273-day-issue-close-time-framework-responsiveness-gap</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-24</news:publication_date>
      <news:title>The 273-Day Wait: How Long Frameworks Take to Close Issues</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/wordpress-zero-github-releases-closed-door-development</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>WordPress Ships Zero GitHub Releases. Every Other Framework Ships 40–50.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/wordpress-89-contributors-vs-nextjs-427-contributor-cliff</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>WordPress Has 89 Contributors. Next.js Has 427. SvelteKit Has 452.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/vibe-coding-322-percent-more-privilege-escalation-paths</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>AI-Generated Code Contains 322% More Privilege Escalation Paths</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/three-vpn-vendors-breached-one-month-perimeter-collapse</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Three VPN Vendors Breached in One Month. The Perimeter Has Collapsed.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/seven-frameworks-zero-cves-last-year-common-pattern</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Seven Frameworks Recorded Zero CVEs Last Year. The Pattern Is Architectural.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/prinz-eugen-ransomware-encrypts-recent-files-first</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Prinz Eugen Ransomware Encrypts Your Most Recent Files First</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/nextjs-5706-commits-per-year-velocity-at-scale</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Next.js Averages 5,706 Commits Per Year. Velocity Compounds.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/ncsc-warns-vibe-coding-security-disaster-35-cves</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>NCSC Warns Vibe Coding Is a Security Disaster. 35 CVEs Prove It.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/lovable-6-6b-vibe-coding-platform-source-code-exposed-48-days</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Lovable: A $6.6B Vibe Coding Platform Exposed Every User's Source Code</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/joomla-644-commits-1313-cves-activity-not-security</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Joomla Ships 644 Commits Per Year. It Still Carries 1,313 CVEs.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/global-schools-foundation-4-8tb-breach-plaintext-passwords</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>4.8TB Breach: 33,088 Passport Numbers, Plaintext Passwords, Hardcoded Keys</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/drupal-50-contributors-1376-cves-thinnest-maintenance-ratio</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Drupal: 50 Contributors Maintaining 1,376 CVEs of Attack Surface</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/django-zero-cves-vs-rails-12-python-security-advantage</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Django: Zero New CVEs. Rails: 12. Same Era, Different Security Outcomes.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/dashlane-vault-theft-totp-brute-force-mathematical-ceiling</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Dashlane Vaults Stolen via TOTP Brute-Force. 2FA Has a Ceiling.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/contact-form-7-hubspot-cvss-9-8-php-object-injection</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>CVSS 9.8: Contact Form 7 HubSpot Plugin Allows Unauthenticated RCE</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/check-point-vpn-zero-day-qilin-ransomware-cve-2026-50751</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>Check Point VPN Zero-Day: Qilin Ransomware Had the Key Before the Patch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/bitwarden-cli-supply-chain-targeted-claude-cursor-codex</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>A Fake Bitwarden CLI Package Hunted Credentials for Claude, Cursor, and Codex</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/ai-discovers-more-vulnerabilities-than-humans-can-patch</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-23</news:publication_date>
      <news:title>AI Is Finding Vulnerabilities Faster Than Organizations Can Patch</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/zero-kev-frameworks-12-frameworks-no-exploited-vulnerabilities</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-22</news:publication_date>
      <news:title>The Zero-KEV Frameworks: 12 Platforms With No Exploited Vulnerabilities</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/zero-cve-migration-targets-hugo-htmx-attack-surface-free</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-22</news:publication_date>
      <news:title>The Zero-CVE Migration Target: Why Hugo and HTMX Have No Vulnerability History</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/wordpress-plugin-tax-18321-cves-cost-of-free</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-22</news:publication_date>
      <news:title>The WordPress Plugin Tax: 18,321 CVEs and the Cost of 'Free'</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/white-house-ai-executive-order-cybersecurity-clearinghouse</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-22</news:publication_date>
      <news:title>Executive Order 14409: AI Cybersecurity Clearinghouse, No Mandatory Licensing</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/vue-3-vapor-mode-no-virtual-dom-framework-convergence</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-22</news:publication_date>
      <news:title>Vue, React, Angular Are Converging. The Framework Choice Just Changed.</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://pulse.adyog.com/insights/three-framework-enterprise-consolidation-tax</loc>
    <news:news>
      <news:publication>
        <news:name>adyog WebPulse</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-22</news:publication_date>
      <news:title>The 3-Framework Enterprise: Migration Is Not Replacement, It Is Consolidation</news:title>
    </news:news>
  </url>
</urlset>