<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/15/kimsuky-apt-c-55-fake-installer-remote-trojan-360-2026-09-15/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-15T00:00:00.000Z</news:publication_date>
			<news:title>北朝鮮系Kimsukyが偽インストーラーで遠隔操作木馬を配布 — 360が攻撃チェーンと検知回避の手口を公開</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/acronis-cpanel-whm-backup-plugin-exploited-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>AcronisのcPanel/WHM向けバックアッププラグインに深刻な脆弱性 — 野外での悪用を確認、1.9.3への即時更新を呼びかけ</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/windows-11-cloud-rebuild-winre-beta-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>Windows 11のプレビュー版に「Cloud rebuild」— WinREからWindows Update経由でOSを再インストール、USBメディアは不要</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/microsoft-azure-cve-2026-69854-spring-cloud-azure-arc-cyclecloud-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>Microsoftの9月更新、Azure関連の脆弱性3件を修正 — Spring Cloud Azureの権限昇格はCVSS 9.0、修正版は7.4.0</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/geo-poisoning-fake-doubao-download-ai-answer-malware-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>生成AIの回答に偽の「豆包」ダウンロード先が混入 — 中国の研究者が「GEO投毒」によるマルウェア配布を分析</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/cloud-identity-behavioral-clustering-unit42-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>クラウドの4万件超のIDを行動パターンで分類 — Palo Alto Unit 42が、なりすましを見抜くための検知手法を公開</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/comfyui-cve-2026-68771-loadtrainingdataset-pickle-rce-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>AI画像生成ツール「ComfyUI」に未認証で任意コード実行が可能な脆弱性（CVE-2026-68771、CVSS 9.8）— 修正はv0.26.0以降、それ以前のバージョンは更新を</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/aomei-backupper-amwrtdrv-sys-lpe-uefi-cve-2026-12780-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>AOMEI Backupperのカーネルドライバ「amwrtdrv.sys」に権限昇格の脆弱性 — CERT/CCが注意喚起、Secure Boot無効のPCでは攻撃者にEDRを回避されUEFI段階でコードを実行されるおそれ</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/plesk-linux-backup-manager-cve-2026-68487-68488-root-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>Plesk for Linuxのバックアップ機能にCVSS 9.9の脆弱性2件 — 顧客の一般権限からroot権限を奪われる恐れ、18.0.80.7／18.0.79.11で修正</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/pivotc2-fortigate-cve-2025-25249-socradar-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>SOCRadarがFortiGate狙いの侵害キャンペーンを報告 — CVE-2025-25249を悪用し「PivotC2」で178台が感染、米国では内部侵入と情報持ち出しも</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/silverfox-delivery-infra-whitelist-to-blacklist-360-netlab-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>偽ソフト配布サイト「銀狐」の配布基盤が応答方式を切替 — 360 Netlabが、一括探査の後にブラックリスト方式へ移行したと報告</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/nagano-multicultural-center-whatsapp-account-takeover-fraud-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>長野県の外国人相談窓口のWhatsAppアカウントが第三者に不正利用 — 相談員をかたる詐欺で1人が19万8千円の被害</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/jpo-impersonation-phishing-warning-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>特許庁が、同庁を装った不審なメールの注意喚起を更新 — 送信元が「jpo.go.jp」以外なら開かずに削除を</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/yamap-android-webview-cve-2026-85125-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>Android版「YAMAP」にアプリ内ブラウザの脆弱性 — ヤマップはv17.2.0で修正済みと公表、CVE-2026-85125</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/windows-11-kb5124008-september-2026-known-issues-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>Microsoft、Windows 11の9月セキュリティ更新で確認した不具合3件を公表 — USBオーディオ機器が起動しない、Hyper-V共有フォルダーが使えない事例など</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/trunk-employee-email-account-compromise-424-records-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>TRUNKの従業員メールアカウントが第三者に不正アクセスされる — 424件の個人情報が漏えいした可能性、なりすましメールの送信も確認</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/osaka-city-tax-system-insider-fraud-dismissal-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>大阪市、税務システムの課税台帳を不正に改ざんした市税事務所職員を懲戒免職 — 不正な還付金取得を認定し他人の税情報も閲覧</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/sunmesse-web-order-system-cyberattack-resume-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>サンメッセの購買発注システムにサイバー攻撃 — 委託先が運用するサーバが侵害、利用停止を経て9月9日に再開</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/weverse-account-data-leak-422584-kisa-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>Weverseで42万2584件分のアカウント情報が流出 — 韓国KISAからの指摘で発覚、運営会社が決済情報処理APIのアクセス制御強化を表明</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/ppc-fy2026-q1-supervision-breach-reports-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>個人情報保護委員会が令和8年度第1四半期の監視・監督状況を公表 — 漏えい等報告は6,101件、民間98件への指導は不正アクセス起因が中心</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/fancrew-credential-stuffing-59389-accounts-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>覆面調査サービス「ファンくる」にリスト型攻撃 — 59,389人で不正ログインが成立、会員情報が閲覧された可能性</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/14/appi-2026-amendment-rules-guidelines-roadmap-ppc-2026-09-14/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-14T00:00:00.000Z</news:publication_date>
			<news:title>改正個人情報保護法の政令・規則・ガイドライン整備、個人情報保護委員会が今後の進め方を決定</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/13/trezor-brevo-breach-phishing-347k-newsletter-2026-09-13/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
			<news:title>Trezor、メール配信業者Brevoの侵害で約34万7千件のアドレスが流出の恐れ — 偽の脆弱性警告でフィッシング、20分でドメイン停止</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/13/anthropic-amodei-pace-frontier-embedded-evaluators-2026-09-13/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
			<news:title>AnthropicのCEOがAI開発の速度調整を提言 — 外部評価者の常駐など3段階計画、自社での導入を約束</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/13/nihon-data-unauthorized-access-investigation-2026-09-13/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
			<news:title>日本ビジネスデータープロセシングセンターに不正アクセス — 社内網を遮断し外部専門業者と調査を継続</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/13/kichiri-applynow-recruitment-platform-breach-2026-09-13/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
			<news:title>きちりHD子会社ApplyNowの採用管理基盤に不正アクセス — 個人番号・口座情報を含むデータに漏えい可能性</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/13/revisio-pc-malware-personal-data-leak-2026-09-13/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
			<news:title>REVISIOの業務用PCがマルウェア感染、取引先などの名刺情報に漏えい疑い — 外部調査でサーバ侵入は確認されず</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/13/dell-thinos-10-seven-vulnerabilities-dsa-2026-389-2026-09-13/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
			<news:title>Dell ThinOS 10に重大な脆弱性7件、認証なしで命令実行されるおそれ — CVE-2026-81467はCVSS 9.8、2605_10.2616以降へ更新を</news:title>
		</news:news>
	</url>
	<url>
		<loc>https://cyber.nexsight.co/articles/2026/09/13/gitlab-cve-2026-85706-active-exploitation-ncsc-warning-2026-09-13/</loc>
		<news:news>
			<news:publication>
				<news:name>NEXSIGHT CYBER WIRE</news:name>
				<news:language>ja</news:language>
			</news:publication>
			<news:publication_date>2026-09-13T00:00:00.000Z</news:publication_date>
			<news:title>GitLabのCVSS 10.0欠陥CVE-2026-85706、実証コードが公開され能動的な悪用を確認 — オランダNCSCが更新を警告</news:title>
		</news:news>
	</url>
</urlset>