<?xml version="1.0" encoding="UTF-8"?>
<!--generator='jetpack-15.8-a.7'-->
<!--Jetpack_Sitemap_Buffer_News_XMLWriter-->
<?xml-stylesheet type="text/xsl" href="//labs.cloudsecurityalliance.org/news-sitemap.xsl"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd">
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ciso-daily-briefing-20260427/</loc>
  <lastmod>2026-04-27T13:18:46Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing - April 27, 2026</news:title>
   <news:publication_date>2026-04-27T13:18:46Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-enisa-ncaf-2-nis2-alignment-20260427-csa-s/</loc>
  <lastmod>2026-04-27T13:18:31Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>ENISA NCAF 2.0: EU Cybersecurity Maturity Framework Aligned to NIS2</news:title>
   <news:publication_date>2026-04-27T13:18:31Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-phantomcore-trueconf-exploit-chain-reprodu/</loc>
  <lastmod>2026-04-27T13:18:22Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>PhantomCore-Class Agents Could Reproduce TrueConf Chain Without a Public PoC</news:title>
   <news:publication_date>2026-04-27T13:18:22Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-glassworm-v2-openvsx-ai-dev-supply-chain-2/</loc>
  <lastmod>2026-04-27T13:18:13Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>GlassWorm v2: 73 Sleeper Extensions Target AI Developer Toolchains</news:title>
   <news:publication_date>2026-04-27T13:18:13Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-n8n-webhook-abuse-ai-workflow-weaponizatio/</loc>
  <lastmod>2026-04-27T13:18:03Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>n8n Webhook Abuse: Weaponizing AI Workflow Automation for Malware Delivery</news:title>
   <news:publication_date>2026-04-27T13:18:03Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ciso-daily-briefing-20260426/</loc>
  <lastmod>2026-04-26T13:18:57Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing - 2026-04-26</news:title>
   <news:publication_date>2026-04-26T13:18:57Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-too-dangerous-to-release-pattern-20260426/</loc>
  <lastmod>2026-04-26T13:18:44Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Too Dangerous to Release: Vendor Gatekeeping as Strategic Risk</news:title>
   <news:publication_date>2026-04-26T13:18:44Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-nist-nvd-riskbased-enrichment-governance-2/</loc>
  <lastmod>2026-04-26T13:18:35Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>NVD Risk-Based Triage: A CISO Compliance Playbook</news:title>
   <news:publication_date>2026-04-26T13:18:35Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/mcp-design-rce-supply-chain-v1-csa-styled/</loc>
  <lastmod>2026-04-26T13:18:26Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>MCP By Design: STDIO RCE and the AI Supply Chain Crisis</news:title>
   <news:publication_date>2026-04-26T13:18:26Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-lmdeploy-inference-server-ssrf-20260426-cs/</loc>
  <lastmod>2026-04-26T13:18:18Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>AI Inference Servers Are the New Attack Surface</news:title>
   <news:publication_date>2026-04-26T13:18:18Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-indirect-prompt-injection-in-the-wild-2026/</loc>
  <lastmod>2026-04-26T13:18:10Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Indirect Prompt Injection Goes Operational</news:title>
   <news:publication_date>2026-04-26T13:18:10Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
</urlset>
