<?xml version="1.0" encoding="UTF-8"?>
<urlset
  xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
  xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"
>
  <url>
    <loc>https://invaders.ie/resources/blog/vulnerability/cve-2024-12802-sonicwall-gen6-vpn-mfa-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-21T08:11:11.612Z</news:publication_date>
      <news:title>CVE-2024-12802 leaves SonicWall Gen6 VPNs exposed after incomplete patching</news:title>
      <news:keywords>CVE-2024-12802, SonicWall SSL VPN MFA bypass, SonicWall Gen6 incomplete patching, VPN initial access, patched but not protected</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://invaders.ie/resources/blog/cloud-and-application-security/cve-2026-45829-chromadb-pre-auth-rce-risk-in-ai-stacks</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-20T08:11:09.495Z</news:publication_date>
      <news:title>CVE-2026-45829: ChromaDB Pre-Auth RCE Risk in AI Stacks</news:title>
      <news:keywords>CVE-2026-45829, ChromaDB vulnerability, ChromaDB pre-auth RCE, AI security, vector database security, trust_remote_code, Hugging Face model loading</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://invaders.ie/resources/blog/vulnerability/cve-2026-41615-microsoft-authenticator-token-theft-risk</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-05-19T16:29:55.680Z</news:publication_date>
      <news:title>CVE-2026-41615: Microsoft Authenticator Token Theft Risk</news:title>
      <news:keywords>CVE-2026-41615, Microsoft Authenticator vulnerability, Microsoft Authenticator token theft, enterprise MFA prompt abuse, work account token theft, identity security</news:keywords>
    </news:news>
  </url>
</urlset>