<?xml version="1.0" encoding="UTF-8"?>
<!--generator='jetpack-15.9-a.3'-->
<!--Jetpack_Sitemap_Buffer_News_XMLWriter-->
<?xml-stylesheet type="text/xsl" href="//labs.cloudsecurityalliance.org/news-sitemap.xsl"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd">
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ciso-daily-briefing-20260522/</loc>
  <lastmod>2026-05-22T13:29:59Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing — May 22, 2026</news:title>
   <news:publication_date>2026-05-22T13:29:59Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ai-developer-ecosystem-critical-infrastructure-concentration/</loc>
  <lastmod>2026-05-22T13:29:37Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>AI Developer Ecosystem Concentration: Critical Infrastructure&amp;#039;s Hidden Risk</news:title>
   <news:publication_date>2026-05-22T13:29:37Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-cisa-agentic-ai-adoption-guidance-20260522/</loc>
  <lastmod>2026-05-22T13:29:27Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISA Agentic AI Guidance: Enterprise Control Translation</news:title>
   <news:publication_date>2026-05-22T13:29:27Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-ai-assisted-exploit-development-2fa-bypass/</loc>
  <lastmod>2026-05-22T13:29:17Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>AI-Generated Zero-Day: First Confirmed 2FA Bypass for Mass Deployment</news:title>
   <news:publication_date>2026-05-22T13:29:17Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-shai-hulud-megalodon-supply-chain-cascade/</loc>
  <lastmod>2026-05-22T13:29:08Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Shai-Hulud/Megalodon: A Two-Wave AI Developer Supply Chain Attack</news:title>
   <news:publication_date>2026-05-22T13:29:08Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-langflow-cve-2025-34291-ai-orchestration-r/</loc>
  <lastmod>2026-05-22T13:28:58Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Langflow CVE-2025-34291: RCE in AI Workflow Platforms</news:title>
   <news:publication_date>2026-05-22T13:28:58Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research-rb/ciso-daily-briefing-20260522/</loc>
  <lastmod>2026-05-22T10:07:17Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing — May 22, 2026</news:title>
   <news:publication_date>2026-05-22T10:07:17Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research-rb/csa-whitepaper-ai-supply-chain-concentration-risk-20260522-c/</loc>
  <lastmod>2026-05-22T10:07:14Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>AI Supply Chain Concentration Risk</news:title>
   <news:publication_date>2026-05-22T10:07:14Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research-rb/csa-research-note-mcp-server-security-agentic-20260522-csa-s/</loc>
  <lastmod>2026-05-22T10:07:10Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>MCP Server Security: Taint-Style Risks in Agentic Control Planes</news:title>
   <news:publication_date>2026-05-22T10:07:10Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research-rb/csa-research-note-ai-automated-zeroday-exploit-window-202605/</loc>
  <lastmod>2026-05-22T10:07:06Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>AI-Automated Zero-Day Discovery: The Collapsing Exploit Window</news:title>
   <news:publication_date>2026-05-22T10:07:06Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ciso-daily-briefing-20260521/</loc>
  <lastmod>2026-05-21T13:34:22Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing - May 21, 2026</news:title>
   <news:publication_date>2026-05-21T13:34:22Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ai-accelerated-vuln-discovery-patch-capacity-whitepaper-v1-0/</loc>
  <lastmod>2026-05-21T13:33:59Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>The Bugpocalypse Threshold</news:title>
   <news:publication_date>2026-05-21T13:33:59Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-cisa-agentic-ai-guide-enterprise-implement/</loc>
  <lastmod>2026-05-21T13:33:50Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISA Agentic AI Guide: Enterprise Implementation and Gaps</news:title>
   <news:publication_date>2026-05-21T13:33:50Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-shai-hulud-supply-chain-ai-pipeline-202605/</loc>
  <lastmod>2026-05-21T13:33:41Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Mini Shai-Hulud: Supply Chain Worm Targets AI Developer Tooling</news:title>
   <news:publication_date>2026-05-21T13:33:41Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-oauth-consent-phishing-ai-identity-2026052/</loc>
  <lastmod>2026-05-21T13:33:30Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>OAuth Consent Phishing: EvilTokens Bypasses MFA, Steals AI API Tokens</news:title>
   <news:publication_date>2026-05-21T13:33:30Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-chromadb-rce-ai-infrastructure-security-20/</loc>
  <lastmod>2026-05-21T13:33:20Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>ChromaDB RCE Exposes Unauthenticated AI Infrastructure</news:title>
   <news:publication_date>2026-05-21T13:33:20Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research-rb/ciso-daily-briefing-20260521/</loc>
  <lastmod>2026-05-21T09:46:40Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing - May 21, 2026</news:title>
   <news:publication_date>2026-05-21T09:46:40Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research-rb/csa-research-note-ai-model-release-policy-mythos-regulation/</loc>
  <lastmod>2026-05-21T09:46:35Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>AI Model Release Policy After Mythos: The Regulatory Inflection Point</news:title>
   <news:publication_date>2026-05-21T09:46:35Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research-rb/csa-research-note-chromadb-rce-ai-infrastructure-exposure-20/</loc>
  <lastmod>2026-05-21T09:46:30Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>ChromaToast: Pre-Auth RCE in ChromaDB and AI Infrastructure Exposure</news:title>
   <news:publication_date>2026-05-21T09:46:30Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/ryan-test/</loc>
  <lastmod>2026-05-20T15:54:27Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>ryan test</news:title>
   <news:publication_date>2026-05-20T15:54:21Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/ciso-daily-briefing-20260520/</loc>
  <lastmod>2026-05-20T15:47:39Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISO Daily Briefing - May 20, 2026</news:title>
   <news:publication_date>2026-05-20T13:34:34Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-whitepaper-nonhuman-identity-agentic-ai-governance-v1-cs/</loc>
  <lastmod>2026-05-20T15:47:40Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>The Non-Human Identity Governance Vacuum</news:title>
   <news:publication_date>2026-05-20T13:34:12Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-oauth-device-code-phishing-eviltokens-2026/</loc>
  <lastmod>2026-05-20T15:47:40Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>EvilTokens: Device-Code Phishing Renders MFA Irrelevant</news:title>
   <news:publication_date>2026-05-20T13:34:02Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-teampcp-ai-supply-chain-escalation-2026052/</loc>
  <lastmod>2026-05-20T15:47:41Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>Mini Shai-Hulud Escalates: AI Packages and GitHub Targeted</news:title>
   <news:publication_date>2026-05-20T13:33:53Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-chromadb-rce-ai-vector-database-20260520-c/</loc>
  <lastmod>2026-05-20T15:47:41Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>ChromaToast: Unauthenticated RCE in AI Vector Databases</news:title>
   <news:publication_date>2026-05-20T13:33:44Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
 <url>
  <loc>https://labs.cloudsecurityalliance.org/research/csa-research-note-cisa-agentic-ai-guidance-practitioner-2026/</loc>
  <lastmod>2026-05-20T15:47:42Z</lastmod>
  <news:news>
   <news:publication>
    <news:name>Lab Space</news:name>
    <news:language>en</news:language>
   </news:publication>
   <news:title>CISA Agentic AI Guidance: A Practitioner&amp;#039;s Roadmap</news:title>
   <news:publication_date>2026-05-20T13:33:34Z</news:publication_date>
   <news:genres>Blog</news:genres>
  </news:news>
 </url>
</urlset>
