<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://test.threatfrontier.com/articles/wso2-api-manager-cve-2026-5430-jwt-bypass-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:06:11.824Z</news:publication_date>
      <news:title>WSO2 API Manager JWT Bypass Exploited 133 Days After the Fix</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/mythos-rejetto-hfs-cve-2026-61500-math-random-admin-cookie</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:06:09.858Z</news:publication_date>
      <news:title>Mythos Cracked Rejetto HFS Sessions From 12 Leaked Math.random() Values</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/f5-big-ip-apm-cve-2026-94127-unauthenticated-rce</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:06:07.265Z</news:publication_date>
      <news:title>F5 BIG-IP APM: An Oversized Bearer Token Is Enough for Unauthenticated RCE</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/apple-coregraphics-zero-day-cve-2026-86950</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:06:02.570Z</news:publication_date>
      <news:title>Apple Patches CoreGraphics Zero-Day Used Against Targeted iPhone Users</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/ollama-agent-mode-cve-2026-102697-approval-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:06:00.441Z</news:publication_date>
      <news:title>Ollama&apos;s Agent Mode Approved Bash Commands by Prefix, So Prompt Injection Could Chain Its Own (CVE-2026-102697)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/wordpress-core-cve-2026-87902-path-traversal-rce-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:58.661Z</news:publication_date>
      <news:title>WordPress Core Flaw CVE-2026-87902 Drew Exploit Attempts on Patch Day</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/check-point-cve-2026-93616-cve-2026-85102-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:56.909Z</news:publication_date>
      <news:title>Check Point Management Servers Were a Zero-Day for Two Months Before the Fix</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/mcp-atlassian-cve-2026-77244-unauthenticated-operator-access</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:55.155Z</news:publication_date>
      <news:title>MCP Atlassian Server Let Anyone on the Network Act as the Operator in Jira and Confluence</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/cisco-sd-wan-manager-cve-2026-76504-hex-encoding-auth-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:52.832Z</news:publication_date>
      <news:title>Cisco SD-WAN Manager Zero-Day CVE-2026-76504: One Encoded Character Unlocks the Admin API</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/fortimail-cve-2026-104286-exploited-no-patch</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:50.188Z</news:publication_date>
      <news:title>Exploited FortiMail Flaw Has No Patch Yet: Disable IBE Now</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/memtensor-openclaw-plugin-memoryos-sckit-worm</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:42.195Z</news:publication_date>
      <news:title>MemTensor&apos;s OpenClaw Plugin and MemoryOS Shipped the sckit Credential Worm</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/stolen-chatgpt-logins-358-of-482-companies-socradar</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:39.887Z</news:publication_date>
      <news:title>Stolen ChatGPT Logins Turned Up at 358 of 482 Big Companies</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/xing4-0-29b-a4b-china-telecom-swe-bench-coding-model</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:36.258Z</news:publication_date>
      <news:title>Xing4.0-29B-A4B: China Telecom&apos;s Open Coding Model Claims SWE-bench 75 on One GPU</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/github-copilot-retires-six-models-october-19</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:33.050Z</news:publication_date>
      <news:title>GitHub Copilot Drops Six Models on Oct 19: What Replaces GPT-5.5, GPT-5.4 and Grok 4.5</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/openai-moonshot-encrypted-reasoning-replay-distillation</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:30.800Z</news:publication_date>
      <news:title>OpenAI Says Moonshot-Linked Accounts Replayed Encrypted Reasoning to Distill Its Models</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/carbonato-botnet-docker-hermes-agent-ai-api-keys</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:29.029Z</news:publication_date>
      <news:title>CARBONATO Botnet Turns Exposed Docker Hosts Into Hermes Agent Bots That Hunt AI Keys</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/pixelleak-ai-coding-agents-leaked-13000-screenshots-to-public-github</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:27.280Z</news:publication_date>
      <news:title>PixelLeak: AI Coding Agents Pushed 13,000 Internal Screenshots to Public GitHub Repos</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/openai-pauses-tool-use-after-training-agent-escaped-through-dns</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:25.441Z</news:publication_date>
      <news:title>OpenAI Pauses Tool Use on Its Most Capable Models After a Training Agent Escaped Through DNS</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/plugin4shell-pinned-sha-bypass-claude-code-codex-copilot-gemini-cli</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:23.446Z</news:publication_date>
      <news:title>Plugin4Shell: A Pinned Commit SHA Didn&apos;t Stop Repo Owners Swapping Plugin Code in Claude Code, Codex, Copilot and Gemini CLI</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/claude-sonnet-4-5-retirement-sonnet-5-5-migration</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T12:05:20.490Z</news:publication_date>
      <news:title>Claude Sonnet 4.5 Retires Nov 30: Six Requests That Return a 400 on Sonnet 5.5</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/mcp-python-sdk-oauth-credential-theft-issuer-fix</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T11:33:51.820Z</news:publication_date>
      <news:title>Official MCP Python SDK Let Malicious Servers Steal OAuth Secrets, and Upgrading Isn&apos;t Enough</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/ai-agent-breaches-divd-zammad-zero-days</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-02T11:33:33.999Z</news:publication_date>
      <news:title>AI Agent Breached Bug-Hunting Nonprofit DIVD by Chaining Two Zammad Zero-Days</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/tensorfold-local-llm-server-unauthenticated-api</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T18:56:36.421Z</news:publication_date>
      <news:title>TensorFold Speeds Up Local LLMs but Leaves Its API Unauthenticated</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/gemini-4-argon-vs-gpt-6-astra-vs-claude-opus-5-5</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-01T06:02:39.034Z</news:publication_date>
      <news:title>Gemini 4 Argon vs GPT-6 Astra vs Claude Opus 5.5: Is Google&apos;s New Model Actually Better?</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/ling-3-1-flash-vs-glm-5-3-flash-vs-qwen-3-8-flash-next</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T17:45:07.508Z</news:publication_date>
      <news:title>Ling 3.1 Flash vs GLM 5.3 Flash vs Qwen 3.8 Flash Next: Three Bets on Cheap Agent Models</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://test.threatfrontier.com/articles/ling-3-1-flash-ant-group-best-flash-model-yet-cybergym</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-09-30T17:44:31.719Z</news:publication_date>
      <news:title>Ling-3.1-flash Is Ant Group&apos;s Best Flash Model Yet, and It Scores 87.9 on CyberGym</news:title>
    </news:news>
  </url>
</urlset>
