<?xml version="1.0" encoding="UTF-8"?>
<urlset
  xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
  xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"
>
  <url>
    <loc>https://invaders.ie/resources/blog/vulnerability/pack2theroot-packagekit-local-root-risk</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-04-25T08:05:28.044Z</news:publication_date>
      <news:title>Pack2TheRoot flaw puts Linux systems with PackageKit on a local root path</news:title>
      <news:keywords>Pack2TheRoot CVE-2026-41651, PackageKit local root exploit, Linux privilege escalation PackageKit, CVE-2026-41651 remediation, PackageKit 1.3.5 patch</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://invaders.ie/resources/blog/supply-chain-security/bitwarden-cli-npm-compromise-cicd-credential-risk</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-04-24T08:04:53.874Z</news:publication_date>
      <news:title>Bitwarden CLI npm compromise exposes CI/CD credential risk</news:title>
      <news:keywords>Bitwarden CLI npm compromise, Bitwarden CLI malicious npm package, Checkmarx supply chain campaign, TeamPCP developer credential theft, npm CI/CD compromise response</news:keywords>
    </news:news>
  </url>
</urlset>