<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/12/fortinet-ot-cybersecurity-report-2026-maturity-2026-09-12/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
			<news:title>OTセキュリティの成熟度、最高評価の割合が49%から17%に低下 — 可視化の進展で厳しい自己評価に、Fortinet 2026年報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/12/florida-david-dmv-breach-stolen-police-credentials-2026-09-12/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
			<news:title>フロリダ州の運転者データベースに不正侵入、警察官の認証情報が流用 — ShinyHuntersの犯行声明後に州当局が確認</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/12/huntio-sonicwall-sma1000-cve-2026-15409-mass-exploitation-2026-09-12/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
			<news:title>SonicWall SMA1000のCVE-2026-15409を突く大規模悪用 — 英自治体など250標的からAD認証情報を窃取、5ドメインでDCSyncを確認とHunt.ioが報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/12/openai-agent-swarm-rubygems-undisclosed-attack-2026-09-12/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
			<news:title>OpenAIのAIエージェント群がRubyGemsを攻撃していた — 5月に2,000件超の悪性パッケージを投稿、APIキー窃取も試みたと研究者が報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/12/huntress-ai-platform-abuse-fakeagent-macsync-2026-09-12/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
			<news:title>偽のClaude配布ページで29組織がマルウェア感染 — HuntressがAI基盤を悪用した攻撃の実態を報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/12/tokyo-gaikan-project-site-breach-suspected-suspension-2026-09-12/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
			<news:title>「東京外環プロジェクト」のサイトに不正アクセスの疑い — NEXCO東日本などが公開を一時停止、個人情報の流出は確認されず</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/12/sans-stolen-inference-supply-chain-ai-agent-2026-09-12/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
			<news:title>SANS、AIエージェントがLLM利用枠を収奪・再販する攻撃基盤を確認 — ハニーポットが43KBの作戦手順を捕獲</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/12/rikkyo-university-google-account-takeover-spam-2026-09-12/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-12T00:00:00.000Z</news:publication_date>
			<news:title>立教大学、学生・卒業生6名のGoogleアカウントが乗っ取られ迷惑メール1万7千件超 — 学外ログインの多要素認証を必須化</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/microsoft-september-2026-patch-tuesday-exploited-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>マイクロソフトが9月の月例更新を公開、悪用確認済みのWindows特権昇格2件にIPAとJPCERT/CCが早急な適用を呼びかけ</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/wiz-jfrog-artifactory-chained-exploitation-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>WizがJFrog Artifactoryの脆弱性3件の実攻撃を確認と報告、2件連鎖で管理者権限を奪取しRust製バックドアを設置</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/science-tokyo-information-platform-breach-first-report-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>東京科学大学が情報基盤への不正アクセスを公表 — 学生・教職員の氏名や住所、メールアドレスに漏えいの疑い</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/adobe-acrobat-reader-apsb26-141-32-vulns-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>Adobe AcrobatとReaderに32件の脆弱性 — 細工したファイルで任意コード実行のおそれ、JPCERT/CCが最新版への更新を呼びかけ</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/google-android-password-manager-passkey-migration-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>GoogleがAndroidでパスワード管理アプリ間の移行機能を公開、パスキーの直接移行に対応</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/sogou-input-method-cve-2026-51990-unc3569-grayrabbit-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>中国系UNC3569が中国語入力ソフトSogouの脆弱性CVE-2026-51990を悪用、ワンクリックでGRAYRABBITを展開とGenが報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/hawley-senate-probe-openai-hugging-face-hack-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>米上院小委員会がOpenAIへの調査を開始 — Hugging Face侵入事件の対応を「無謀」と批判、10月1日までの文書提出を要求</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/cpanel-emailtrack-sqli-cve-2026-67401-root-rce-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>cPanelのメール追跡機能にSQLインジェクションの脆弱性 — 認証済みアカウントからroot権限でのコード実行のおそれ、CVE-2026-67401（CVSS 9.9）</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/npa-tokuryu-remote-analysis-proposal-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>警察庁の有識者検討会が新手法「遠隔解析」の早急な導入を提言 — 犯人の端末から通信内容を把握しトクリュウ被害を防止、裁判官の事前審査など適正担保も</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/gitlab-critical-patch-cve-2026-85706-unauth-file-read-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>GitLabが重大パッチ19.3.2／19.2.6／19.1.8を公開 — 認証なしで任意ファイルを読み取られるCVE-2026-85706（CVSS 10.0）など16件修正</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/gss-unauthorized-access-personal-data-246k-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>デジタル庁が政府共通環境GSSへの不正アクセスを公表 — 職員ら約24.6万件の個人情報が流出した可能性</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/mantax-otax-android-ransomware-spyware-zimperium-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>ランサムウェアとスパイウェアを一体化したAndroidマルウェア「Mantax Otax」 — 画面監視と嫌がらせ機能で二重恐喝</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/gmo-flatt-supply-chain-threat-report-2026-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>悪性パッケージ「ゼロ」の日は181日間で一度もなし — GMO Flattがサプライチェーン脅威レポート2026を公開、約3.1万件を検出</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/puzzlemask-covert-ai-attack-vector-checkpoint-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>平易な文章でAIの安全点検をすり抜ける攻撃手法「PuzzleMask」 — Check Pointが報告、検証では9割超で標的モデルが作動</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/google-play-early-access-deceptive-apps-bitdefender-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>Google Playの「早期アクセス」を悪用した数千の偽装アプリ — レビュー不可を突き金銭や報酬をうたう、Bitdefenderが報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/papercut-ai-orchestrated-campaign-greynoise-blackpoint-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>PaperCutの脆弱性を突き数百のAIエージェントが440件超に侵入 — BlackpointとGreyNoiseが報告、日本でも2件確認</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/surfshark-internal-test-server-breach-disclosure-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>Surfsharkが内部テストサーバへの不正アクセスを公表 — 設定ミスでインターネットに公開、利用者データへの影響はなし</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/anthropic-threat-report-september-2026-ai-uplift-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>AnthropicがAI悪用レポートを公開 — ロシア系諜報組織と中国の学生集団がClaudeで国家級サイバー攻撃を展開</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/conti-ransomware-lytvynenko-sentenced-four-years-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>Contiランサムウェア関与のウクライナ人に懲役4年の判決 — 米司法省、12社への直接関与と1.5億ドルの被害を指摘</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/11/microsoft-ai-executive-impersonation-invoice-fraud-2026-09-11/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-11T00:00:00.000Z</news:publication_date>
			<news:title>MicrosoftがAI支援の経営幹部なりすまし請求書詐欺を報告 — 3日間で100万通超、約5万ドルの送金を要求</news:title>
		</news:news>
	</url>
</urlset>