<?xml version="1.0" encoding="UTF-8"?>
<!--generator='jetpack-15.9-a.3'-->
<!--Jetpack_Sitemap_Buffer_News_XMLWriter-->
<?xml-stylesheet type="text/xsl" href="//labs.cloudsecurityalliance.org/news-sitemap.xsl"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd">
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ciso-daily-briefing-20260525/</loc>
  <lastmod>2026-05-25T13:26:23Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing — May 25, 2026</news:title>
   <news:publication_date>2026-05-25T13:26:23Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-whitepaper-developer-toolchain-systemic-attack-surface-v/</loc>
  <lastmod>2026-05-25T13:26:05Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>The Developer Toolchain as Enterprise Attack Surface</news:title>
   <news:publication_date>2026-05-25T13:26:05Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-vscode-extension-supply-chain-breach-20260/</loc>
  <lastmod>2026-05-25T13:25:56Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>VSCode Marketplace Poisoning: How 18 Minutes Breached GitHub</news:title>
   <news:publication_date>2026-05-25T13:25:56Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-post-mythos-ai-model-regulation-policy-lan/</loc>
  <lastmod>2026-05-25T13:25:47Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Post-Mythos AI Model Regulation: Licensing and Disclosure Frameworks</news:title>
   <news:publication_date>2026-05-25T13:25:47Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-ai-weaponized-2fa-bypass-mass-exploitation/</loc>
  <lastmod>2026-05-25T13:25:38Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>AI-Built Zero-Day: Attackers Weaponize LLMs Against 2FA</news:title>
   <news:publication_date>2026-05-25T13:25:38Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-litespeed-cpanel-cve-2026-48172-privilege/</loc>
  <lastmod>2026-05-25T13:25:29Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>LiteSpeed cPanel Plugin CVE-2026-48172: Root Privilege Escalation</news:title>
   <news:publication_date>2026-05-25T13:25:29Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ciso-daily-briefing-20260524/</loc>
  <lastmod>2026-05-24T13:25:31Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing &amp;#8212; May 24, 2026</news:title>
   <news:publication_date>2026-05-24T13:25:31Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-teampcp-unc6780-ai-developer-supply-chain/</loc>
  <lastmod>2026-05-24T13:25:15Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>TeamPCP (UNC6780): AI Supply Chain&amp;#039;s Most Active Threat Actor</news:title>
   <news:publication_date>2026-05-24T13:25:15Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-ai-vuln-discovery-velocity-disclosure-cris/</loc>
  <lastmod>2026-05-24T13:25:07Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Project Glasswing and the AI Vulnerability Disclosure Velocity Crisis</news:title>
   <news:publication_date>2026-05-24T13:25:07Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-cisa-agentic-ai-five-risk-framework-implem/</loc>
  <lastmod>2026-05-24T13:24:59Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISA&amp;#039;s Agentic AI Five-Risk Framework: Enterprise Implementation</news:title>
   <news:publication_date>2026-05-24T13:24:59Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-megalodon-github-actions-cicd-supply-chain/</loc>
  <lastmod>2026-05-24T13:24:50Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Megalodon: Mass CI/CD Pipeline Poisoning via GitHub Actions</news:title>
   <news:publication_date>2026-05-24T13:24:50Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-langflow-cve-2025-34291-agentic-ai-exploit/</loc>
  <lastmod>2026-05-24T13:24:42Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>State-Sponsored Exploitation of the Langflow AI Platform</news:title>
   <news:publication_date>2026-05-24T13:24:42Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
</urlset>
