<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://www.intelfusions.com/news/rustduck-botnet-c-to-rust-ddos-iot</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T16:44:14.464Z</news:publication_date>
      <news:title>RustDuck botnet rewrites itself in Rust as it grows DDoS firepower</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/toddycat-umbrij-gmail-oauth-token-theft-strd</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T15:40:00.175Z</news:publication_date>
      <news:title>ToddyCat hackers steal corporate Gmail access with a stealthy new tool</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/cmd-ransomware-norway-municipality-healthcare-leak-claims</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T11:18:12.748Z</news:publication_date>
      <news:title>New ransomware crew CMD hits a Norwegian municipality and healthcare firms</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/consentfix-microsoft-365-oauth-hijack-cybercrime-forum</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T10:58:12.748Z</news:publication_date>
      <news:title>Microsoft 365 account-hijack kit spreads on a Russian cybercrime forum</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/coldfusion-webshell-defender-disable-mimikatz-credential-dump</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T07:37:23.511Z</news:publication_date>
      <news:title>Hackers disable Windows Defender and dump credentials after a ColdFusion break-in</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/tonresolver-rat-japan-hotels-ton-blockchain-c2</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T03:40:00.048Z</news:publication_date>
      <news:title>Hackers target Japanese hotels with a RAT that hides on the TON blockchain</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/cisa-kev-simplehelp-cve-2026-48558-auth-bypass-exploited</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-30T00:28:37.907Z</news:publication_date>
      <news:title>CISA warns SimpleHelp remote-support bug is under active attack</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/kemp-loadmaster-preauth-rce-cve-2026-8037</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T22:28:47.762Z</news:publication_date>
      <news:title>Critical Kemp LoadMaster bug lets hackers run code without a login</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/the-gentlemen-ransomware-custom-backdoor-kaspersky</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T22:08:47.762Z</news:publication_date>
      <news:title>Gentlemen ransomware gang builds custom backdoor and stealthy network spying</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/gtig-pro-russia-influence-ecosystem-pivot-west</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T20:54:20.559Z</news:publication_date>
      <news:title>Google warns Russia&apos;s influence network is pivoting from Ukraine back to the West</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/clearmic-fake-microphone-app-infostealer-rat</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T20:26:26.763Z</news:publication_date>
      <news:title>Fake microphone app ClearMic hides a password and crypto stealer</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/macos-clickfix-fake-apple-update-applescript-infostealer</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T20:26:18.991Z</news:publication_date>
      <news:title>Fake Apple security update tricks Mac users into installing an infostealer</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/bumblebee-adaptixc2-akira-bing-seo-poisoning</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T19:51:47.240Z</news:publication_date>
      <news:title>Hackers poison Bing search results to drop Akira ransomware on companies</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/microsoft-edge-extensions-stegoad-malware-takedown</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T15:40:00.026Z</news:publication_date>
      <news:title>Microsoft pulls 119 Edge extensions that secretly served malware to millions</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/qilin-ransomware-dentist-tolling-leak-site-claims</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T09:40:00.032Z</news:publication_date>
      <news:title>Qilin ransomware adds dentist referral and tolling firms to leak site</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/settra-ransomware-one-day-surge-leak-site-claims</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T04:28:50.537Z</news:publication_date>
      <news:title>Settra ransomware crew names a dozen victims in a single day</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/north-korea-kimsuky-spear-phishing-lnk-south-korea-may-2026</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-29T03:40:00.028Z</news:publication_date>
      <news:title>North Korean hackers flood South Korea with booby-trapped shortcut files</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://www.intelfusions.com/news/gentlemen-ransomware-claims-thyssenkrupp-marine-systems-tkms</loc>
    <news:news>
      <news:publication>
        <news:name>IntelFusions</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-28T21:40:00.167Z</news:publication_date>
      <news:title>Ransomware gang claims to hit German submarine builder Thyssenkrupp</news:title>
    </news:news>
  </url>
</urlset>