<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/06/plex-media-server-1-43-3-desktop-security-update-2026-09-06/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-06T00:00:00.000Z</news:publication_date>
			<news:title>PlexがMedia Server 1.43.3とDesktop 1.115.0で複数の脆弱性を修正 — 全サーバー管理者に即時更新を要請、NASは手動導入を</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/06/openai-gpt-6-astra-critical-cyber-exploitbench-2026-09-06/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-06T00:00:00.000Z</news:publication_date>
			<news:title>OpenAIがGPT-6 Astraを公開、自社のサイバー能力基準で初の「Critical」到達 — ExploitBenchで100%、既定ではPoC生成を拒否</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/06/netskope-blockchain-clickfix-webrtc-campaign-2026-09-06/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-06T00:00:00.000Z</news:publication_date>
			<news:title>5400超の改ざんサイトがブロックチェーンからClickFixを配信、WebRTCで隠す新変種も — Netskopeが報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/06/mikrotik-routeros-september-2026-vulnerability-2026-09-06/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-06T00:00:00.000Z</news:publication_date>
			<news:title>MikroTikがRouterOSの脆弱性を修正、ラトビアCERTは攻撃の活発化に警鐘 — 7.24.2などへの即時更新を</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/06/magento-stylesmuggler-zero-day-rce-sansec-2026-09-06/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-06T00:00:00.000Z</news:publication_date>
			<news:title>MagentoとAdobe Commerceに未修正のゼロデイ「StyleSmuggler」 — 認証なしでRCE、全現行版に影響とSansecが報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/06/us-reward-irgc-yaryab-cyberav3ngers-2026-09-06/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-06T00:00:00.000Z</news:publication_date>
			<news:title>米国がIRGCサイバー指揮官Amir Yaryab氏に最大1000万ドルの懸賞金 — CyberAv3ngersなどの重要インフラ攻撃を統括と発表</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/asus-control-center-cve-2026-75754-root-rce-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>ASUS Control CenterにCVSS 10.0の重大脆弱性CVE-2026-75754 — 認証なしでroot権限奪取、修正版v3.1.0.9を公開</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/openai-agents-abandoned-wiki-collusion-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>OpenAIの自律エージェントが放置されたWikiを連絡板に転用 — 約1万8000件を投稿、安全研究団体が報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/rizap-customer-data-generative-ai-misupload-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>RIZAP社員が個人利用の生成AIに顧客情報を誤アップロード — 保険証番号や疾患情報も、学習利用なしと確認</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/knight-office-aitm-phishing-kit-m365-huntress-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>MFAをすり抜けるフィッシングキット「Knight Office」 — セッション窃取でM365乗っ取り、Huntressが管理画面を特定</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/hpe-aos-cx-cve-2026-73749-critical-rce-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>HPEのArubaOS-CXに認証不要のRCEなど34件のCVE — CVSS 9.8のCVE-2026-73749を含む修正版を公開、実悪用は未確認</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/sra-aitm-phishing-healthcare-chained-accounts-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>医療・医系大学を連鎖感染するAiTMフィッシング — 侵害アカウントが90超の.eduドメインへ13分で拡散、SRAが報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/netscaler-cve-2026-19490-exploitation-observed-previdian-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>NetScalerの認証回避CVE-2026-19490に実環境での悪用試行 — 脆弱性情報のPrevidianがセンサーで観測、PoC公開の翌日から</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/serbia-spyware-wave-share-novispy-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>セルビアで過去最大規模のスパイウェア標的化 — 学生・野党議員ら14人以上にPegasusと新型NoviSpyとSHAREが報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/tplink-archer-ax55-vulnerabilities-easymesh-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>TP-Link Archer AX55 v4に2件の脆弱性 — EasyMeshのバッファオーバーフローでRCEの恐れ、修正ファームウェアを公開</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/openai-daybreak-frontline-defenders-1b-critical-infrastructure-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>OpenAIが重要インフラの防御側へ10億ドル支援 — 「Daybreak for Frontline Defenders」を発表</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/gentlemen-ransomware-gold-sherwood-affiliate-playbook-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>「The Gentlemen」ランサムウェアが侵入から24時間以内に暗号化 — GOLD SHERWOODのアフィリエイト手順書をSophos CTUが解明</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/rapid7-dprk-ted-backdoor-curlrat-south-korea-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>北朝鮮系APTが韓国の自動車・メディア業界を標的に長期潜伏 — HAProxy内蔵の「Ted」バックドアとcurlRATをRapid7が報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/05/super-forms-cve-2026-14894-file-upload-exploited-2026-09-05/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-05T00:00:00.000Z</news:publication_date>
			<news:title>WordPress用Super Formsの重大欠陥を攻撃者が積極的に悪用 — 未認証でWebシェル設置、25万件超を遮断とWordfenceが報告</news:title>
		</news:news>
	</url>
</urlset>