<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/01/anthropic-claude-infostealer-session-hijack-2026-09-01/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-01T00:00:00.000Z</news:publication_date>
			<news:title>AnthropicがClaude利用者に警告 — インフォスティーラーがセッションを窃取、利用枠を不正消費</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/01/guildma-astaroth-brazil-email-geofencing-sans-isc-2026-09-01/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-01T00:00:00.000Z</news:publication_date>
			<news:title>ブラジル向け地獄絵図 — 地域と言語で分岐するGuildma（Astaroth）の感染連鎖をSANSが再現</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/01/coding-agent-trap-free-llm-endpoint-rogue-control-plane-sans-2026-09-01/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-01T00:00:00.000Z</news:publication_date>
			<news:title>“無料LLMエンドポイント”がエージェントの制御平面になる — SANSがハニーポットで観測したコーディングエージェントのセッション漏えい</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/01/hardbreacher-kaspersky-endpoint-eop-github-2026-09-01/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-01T00:00:00.000Z</news:publication_date>
			<news:title>Kaspersky Endpointの権限昇格ゼロデイ「HardBreacher」 — 検証済みPoCが公開、修正は自動配信で対応済み</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/01/mckesson-data-breach-shinyhunters-284m-2026-09-01/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-01T00:00:00.000Z</news:publication_date>
			<news:title>米医療大手McKessonでデータ窃取を確認 — ShinyHuntersが284M件窃取を主張、9月1日が交渉期限と報じられる</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/01/dprk-job-fraud-healthcare-sales-huntress-recordedfuture-2026-09-01/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-01T00:00:00.000Z</news:publication_date>
			<news:title>北朝鮮系『IT労働者』スキームが医療・営業職へ拡大 — HuntressとRecorded Futureが手口とAI悪用を報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/cpi-kddi-mail-system-breach-1250543-accounts-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>レンタルサーバ「CPI」のメールアカウント125万件が漏えい — KDDIのISP向けメール基盤の脆弱性を悪用</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/jsceal-v8-bytecode-static-deobfuscation-checkpoint-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>V8バイトコード化されたスティーラー「JSCeal」を静的解析 — Check Pointが難読化解除パイプラインと検体解析を公開</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/toxnetv2-ai-assisted-botnet-glm52-joe-security-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>ToxNetV2がAIを統合 — GLM-5.2が感染ホストを解析して攻撃コマンドを生成、Joe Securityが制御機構を解明</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/ruby-on-rails-cve-2026-66066-kindarails2shell-active-storage-vips-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>Railsの重大なRCE脆弱性「KindaRails2Shell」 — Active Storageのvips処理で任意ファイル読み取りから認証情報窃取・RCEへ</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/valleyrat-signed-adware-dll-sideloading-kaspersky-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>署名付きアドウェアを偽装して ValleyRAT を配布 — KasperskyがDLLサイドローディングの感染連鎖を解明</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/uat-10147-spectre-cross-platform-byovd-rootkit-talos-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>中国語圏アクターUAT-10147が新型バックドア『SPECTRE』を展開 — BYOVDでEDR無効化、LinuxカーネルルートキットもAI支援で開発か</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/spring-ring-teams-vishing-ntlm-relay-unit42-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>Microsoft Teamsを悪用する音声フィッシング「Spring Ring」 — 10社150人を標的、NTLMリレーでドメイン管理者権限を狙う手口をUnit 42が解明</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/nigerian-nationals-extradited-sextortion-deaths-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>米司法省、ナイジェリアの2容疑者を身柄引き渡し — 未成年への金銭目的セクストーションで2名の死亡、最低30年の禁錮も</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/watchguard-ai-phishing-54-percent-click-rate-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>AI生成フィッシングのクリック率は54％、従来型12％の4.5倍に — Microsoft報告とWatchGuardが巧妙化を指摘</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/california-ab1856-open-source-exempt-age-verification-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>カリフォルニア州、オープンソースOSを年齢確認義務から除外 — AB1856が成立、Linuxディストリビューションの負担を軽減</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/defender-false-alarm-antivirus-turned-off-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>Microsoft Defenderが「ウイルス対策は無効です」と誤通知 — 最新更新後に全Windowsで発生、Defenderは正常に動作とMicrosoftが説明</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/ai-crawlers-strain-git-kernel-org-anubis-bypass-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>AIクローラーがgit.kernel.orgを圧迫 — 1日600万リクエスト、Anubisの検証を33%が突破しCPUの20%を占有（kernel.org管理者が報告）</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/android-17-ech-encrypted-client-hello-default-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>Android 17が「ECH」を標準対応 — TLSのSNIを暗号化し、どのサイトに接続したかをネットワーク上で隠す</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/ncsc-ot-physical-disruption-warning-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>英NCSCがOTへのサイバー攻撃増加に警鐘 — インターネットに露出した制御システムが物理的な混乱を招く恐れ</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/jetbrains-cadence-breach-teamcity-cve-2026-63077-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>JetBrains Cadenceが侵害、TeamCityの重大脆弱性CVE-2026-63077を悪用 — 8月に不正アクセスと認証情報・S3データ露出</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/bridgehead-npm-wsl-rust-stealer-cloudsek-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>40件のnpm偽装パッケージがWSLの境界を越えてWindowsへ侵入 — 22MBのRust製ステーラーをメモリ展開、CloudSEKが「BRIDGEHEAD」を分析</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/fire-ant-trusted-infrastructure-sygnia-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>中国系と疑われる「Fire Ant」 — ハイパーバイザーからルータ・認証基盤・管理ホストへ侵入面を拡大、Sygniaが報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/chrome-edge-extensions-wallet-drainer-socket-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>ChromeとEdgeの19拡張機能にウォレット窃取コード — 8万人が導入した正規拡張の買収・更新悪用をSocketが追跡</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/08/31/aurora-esxi-cursor-agent-gambit-2026-08-31/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-08-31T00:00:00.000Z</news:publication_date>
			<news:title>AuroraランサムウェアがVMware ESXiを暗号化、Cursor Agentを10組織の侵入で悪用 — Gambit Securityが分析</news:title>
		</news:news>
	</url>
</urlset>