<?xml version="1.0" encoding="UTF-8"?>
<urlset
  xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
  xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"
>
  <url>
    <loc>https://invaders.ie/resources/blog/cloud-and-application-security/vishing-sso-abuse-rapid-saas-extortion</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-05T08:16:55.960Z</news:publication_date>
      <news:title>Vishing and SSO abuse are accelerating rapid SaaS extortion</news:title>
      <news:keywords>vishing SaaS extortion, SSO abuse cybercrime, Cordial Spider Snarky Spider, identity provider attack path, SaaS data theft extortion</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://invaders.ie/resources/blog/cloud-and-application-security/consentfix-v3-azure-oauth-token-theft-risk</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-04T08:04:43.447Z</news:publication_date>
      <news:title>ConsentFix v3 turns Azure OAuth phishing into a scalable token theft risk</news:title>
      <news:keywords>ConsentFix v3, Azure OAuth phishing, Microsoft authorization code phishing, FOCI refresh token abuse, identity attack surface</news:keywords>
    </news:news>
  </url>
</urlset>