<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://blackhatnews.tokyo/archives/141764</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:19:31+09:00</news:publication_date>
      <news:title>ハッカーがMicrosoft Teamsを悪用、IT担当者になりすまして従業員のパスワードを窃取</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141762</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:18:21+09:00</news:publication_date>
      <news:title>これまでにないほど増え続けるCVE。それでも悪用されるのは相変わらず古い脆弱性です。</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141761</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:18:14+09:00</news:publication_date>
      <news:title>Revolutの顧客を狙う新たなフィッシング攻撃の波</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141760</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:18:10+09:00</news:publication_date>
      <news:title>トークンを無効化しても、バックドアは死ななかった</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141755</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:16:46+09:00</news:publication_date>
      <news:title>セキュリティ業界の30年来の悪習――問題を根本から解決せず、層を重ねるだけ</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141750</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:03:29+09:00</news:publication_date>
      <news:title>ハッカーがTerraformロックファイルを武器化、DevOpsエンジニアをmacOSバックドアに感染させる</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141749</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T18:03:04+09:00</news:publication_date>
      <news:title>新たな「キャッシュキーインジェクション」攻撃、アクセス制御を回避しNginxキャッシュを汚染</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141745</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T17:50:13+09:00</news:publication_date>
      <news:title>新たな「キャッシュキーインジェクション」攻撃、アクセス制御の回避とNginxキャッシュの汚染を可能に</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141740</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T17:35:28+09:00</news:publication_date>
      <news:title>AIがサイバーセキュリティ求人市場を変える5つの側面</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141739</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T17:35:10+09:00</news:publication_date>
      <news:title>「HEIF Heist」画像処理の脆弱性、Meta・Slack・GitHub Enterpriseで攻撃者がRCEを取得可能に</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141735</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T17:21:05+09:00</news:publication_date>
      <news:title>北朝鮮のVPN「Hangro」、平壌とロシアのサーバーで同一の管理証明書を使用</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141730</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T17:05:23+09:00</news:publication_date>
      <news:title>北朝鮮のROOFDECKバックドア、Nostrプロフィールを悪用しマルウェアのC2サーバーを隠蔽</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141725</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:42:44+09:00</news:publication_date>
      <news:title>新たなインフォスティーラー、AIアカウント・パスワード・2FAコード・暗号資産ウォレットを標的に</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141723</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:41:40+09:00</news:publication_date>
      <news:title>悪意ある画像1枚が、脆弱なアップロードサービスをリモートシェルに変える</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141721</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:29:07+09:00</news:publication_date>
      <news:title>ClickFix攻撃、侵害されたWebサイトとPolygonブロックチェーンを悪用してバンキングマルウェアを展開</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141720</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:28:54+09:00</news:publication_date>
      <news:title>新型インフォスティーラー「Remus」、OpenAIやAnthropicのAPIトークン・パスワード・暗号資産ウォレットを窃取</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141713</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:02:44+09:00</news:publication_date>
      <news:title>Eximメールサーバーに複数の脆弱性、SMTPスマグリングやヒープ破壊、情報漏洩が可能に</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141712</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T16:02:14+09:00</news:publication_date>
      <news:title>Examine社製メールサーバーExim、SMTPスマグリングとヒープ破壊を招く4件のセキュリティ脆弱性が発覚</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141708</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T15:36:19+09:00</news:publication_date>
      <news:title>Mirai系ボットネット活動が急増、cPanelホスティングサーバーが侵害される</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141705</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T15:10:49+09:00</news:publication_date>
      <news:title>SAP ECC移行を本番稼働させる前に、何がテスト済みかを把握する</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141702</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:57:28+09:00</news:publication_date>
      <news:title>BragJack攻撃、Chrome・Edge・CometでブラウザのAIエージェントを乗っ取り可能に</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141701</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:57:05+09:00</news:publication_date>
      <news:title>EtherHidingマルウェア、Polygonブロックチェーンを悪用してC2を隠蔽し銀行認証情報を窃取</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141694</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:43:05+09:00</news:publication_date>
      <news:title>製品紹介:Helmit、オンラインでの会話にトラブルの兆候があると保護者に警告</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141686</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:42:35+09:00</news:publication_date>
      <news:title>BragJackアタック、5大ブラウザの内蔵AIアシスタントをゼロクリックで乗っ取り</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141682</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:30:10+09:00</news:publication_date>
      <news:title>TanStack npmサプライチェーン攻撃、CrowdSecの非公開GitHubリポジトリ170件が流出</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141681</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:29:03+09:00</news:publication_date>
      <news:title>ハッカーがTanStackサプライチェーン攻撃を悪用、CrowdSecのプライベートリポジトリ170件を窃取</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141677</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:14:42+09:00</news:publication_date>
      <news:title>Google のGemini AI、サイバーセキュリティテスト中に自律的に3社をハッキング</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141676</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:14:42+09:00</news:publication_date>
      <news:title>Gopass:チーム向けオープンソースコマンドラインパスワードマネージャー</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141673</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:13:58+09:00</news:publication_date>
      <news:title>ハッカー集団、cPanelの重大な認証バイパス脆弱性を悪用してホスティングサーバーを侵害</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141669</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T14:00:37+09:00</news:publication_date>
      <news:title>Click2Shell:WordPressの欠陥を突かれるとPHPコードが実行されサイトを乗っ取られる恐れ</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141668</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T13:59:48+09:00</news:publication_date>
      <news:title>WordPressの「Click2Shell」脆弱性、ハッカーによるPHPコード実行とサイト乗っ取りを可能に</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141666</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T13:46:01+09:00</news:publication_date>
      <news:title>インテント注入攻撃、AIネイティブな6Gネットワークの新たな懸念に</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141661</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T13:12:25+09:00</news:publication_date>
      <news:title>大企業の5社に2社でAI関連のコンプライアンス問題が発生、旧来型ワークフローが大きな要因に</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141606</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T23:19:31+09:00</news:publication_date>
      <news:title>悪意あるnpmパッケージ、実行時にインストールスクリプト対策を回避</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141601</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T21:12:46+09:00</news:publication_date>
      <news:title>研究者、OpenAI Codexのサンドボックスを脱出しホスト上でコマンド実行に成功</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141552</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T01:19:40+09:00</news:publication_date>
      <news:title>バイラルAI女優のホットラインが発信者の顔をスキャンし気分まで観察</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141547</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T00:20:27+09:00</news:publication_date>
      <news:title>BragJackが悪意ある拡張機能を通じてAIブラウザエージェントを乗っ取る</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141542</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T23:32:38+09:00</news:publication_date>
      <news:title>エージェント型AIのセキュリティは、賢いスタートアップが解決すべき10億ドル規模の課題</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141539</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T23:19:48+09:00</news:publication_date>
      <news:title>北朝鮮のハッカー集団WaterPlum、世界中で3万台のデバイスに感染</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141535</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T22:54:10+09:00</news:publication_date>
      <news:title>ShinyHunters、Clopのリークサイトをハッキング ランサムウェアギャングを恐喝すると警告</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141531</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T22:28:14+09:00</news:publication_date>
      <news:title>Googleの「Gemini」、サイバーセキュリティテスト中の設定ミスでインターネットに露出し、実在する3社をハッキング</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141526</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T20:47:24+09:00</news:publication_date>
      <news:title>バイラルAI女優ティリー・ノーウッドに電話するなら、まず顔スキャンに同意を</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://blackhatnews.tokyo/archives/141521</loc>
    <news:news>
      <news:publication>
        <news:name>TokyoBlackHatNews</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T19:56:31+09:00</news:publication_date>
      <news:title>「ヌーディファイ」アプリ対策:自分の偽ヌード画像を作られたときにすべきこと</news:title>
    </news:news>
  </url>
</urlset>