<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://threatpaper.com</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>1</priority>
</url>
<url>
<loc>https://threatpaper.com/categories</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/tags</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/authors</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://threatpaper.com/about</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://threatpaper.com/contribute</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://threatpaper.com/claims</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/methodology</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://threatpaper.com/corrections</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.5</priority>
</url>
<url>
<loc>https://threatpaper.com/contributors</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://threatpaper.com/privacy</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>yearly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://threatpaper.com/terms</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>yearly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://threatpaper.com/rss.xml</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.5</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/messenger-monitoring-how-german-police-read-whatsapp-signal-and-telegram-without-a-trojan</loc>
<lastmod>2026-09-12T18:34:42.517Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/thomson-reuters-c-track-breach-sealed-court-records-in-a-vendor-s-backup-nobody-asked-for</loc>
<lastmod>2026-09-12T18:34:18.017Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/the-freelance-platform-that-delivered-teamspy-80-000-job-invites-2-169-infections-one</loc>
<lastmod>2026-09-12T18:33:43.535Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/idscan-net-breach-153-million-driver-s-licence-scans-and-the-default-setting-that-kept</loc>
<lastmod>2026-09-12T18:33:12.444Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/dropbox-via-lenovo-id-how-a-third-party-s-email-check-became-a-password-bypass-for-5-000</loc>
<lastmod>2026-09-12T18:32:45.933Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/sponsored-link-bank-phishing-how-a-google-ad-above-the-real-login-took-14-6-million</loc>
<lastmod>2026-09-12T18:32:14.368Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/cl0p-and-ptc-windchill-the-custom-implant-that-turned-engineering-vaults-into-an</loc>
<lastmod>2026-09-11T17:18:42.907Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/mckesson-data-breach-shinyhunters-one-phone-call-and-284-million-rows-of-patient-data</loc>
<lastmod>2026-09-11T16:52:37.257Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/sality-botnet-takedown-how-a-23-year-old-p2p-network-was-turned-against-itself</loc>
<lastmod>2026-09-11T16:52:16.081Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/blackcat-insider-case-ransomware-negotiators-who-attacked-and-betrayed-their-own-clients</loc>
<lastmod>2026-09-03T09:36:58.861Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/media-land-the-bulletproof-hosting-business-that-kept-ransomware-online</loc>
<lastmod>2026-09-03T09:36:55.455Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/archetyp-market-five-years-330-million-in-monero-and-an-undisclosed-method</loc>
<lastmod>2026-09-03T09:36:50.868Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/postmark-mcp-one-line-of-code-that-bcc-d-every-email-to-an-attacker</loc>
<lastmod>2026-09-03T09:36:41.433Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/keyv-npm-compromise-a-credential-stealing-worm-that-shipped-with-valid-provenance</loc>
<lastmod>2026-09-03T08:11:30.968Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/guardbreaker-malware-that-weaponises-ai-safety-refusals-to-block-its-own-analysis</loc>
<lastmod>2026-09-03T06:24:45.114Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/virtualizor-supply-chain-compromise-33-hours-of-hijacked-routes-and-unsigned-updates</loc>
<lastmod>2026-09-02T15:35:27.711Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/polyfill-io-how-a-cdn-acquisition-backdoored-hundreds-of-thousands-of-sites</loc>
<lastmod>2026-09-02T14:27:24.268Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/event-stream-the-npm-maintainer-handover-that-backdoored-a-bitcoin-wallet</loc>
<lastmod>2026-09-02T13:55:17.718Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/codecov-bash-uploader-compromise-60-days-of-silent-ci-credential-theft</loc>
<lastmod>2026-09-02T13:23:12.698Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/3cx-supply-chain-attack-cve-2023-29059-the-first-cascading-software-compromise</loc>
<lastmod>2026-09-02T09:40:01.017Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/redline-infostealer-malware-as-a-service-operation-and-operation-magnu</loc>
<lastmod>2026-08-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/capital-one-data-breach-2019</loc>
<lastmod>2026-08-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/operational-disruption-at-a-united-kingdom-peaker-plant-via-iranian-li</loc>
<lastmod>2026-08-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/chaindrop-and-the-shai-hulud-lineage-anatomy-of-a-self-propagating-npm</loc>
<lastmod>2026-08-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/chinese-state-sponsored-qtfy-campaign-disruption-of-qscan-and-qtrouter</loc>
<lastmod>2026-08-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/openai-autonomous-ai-agent-breach-of-hugging-face-production-infrastru</loc>
<lastmod>2026-08-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/shinyhunters-salesforce-data-extortion-and-saas-supply-chain-campaign</loc>
<lastmod>2026-08-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/klue-supply-chain-compromise-and-downstream-salesforce-data-exfiltrati</loc>
<lastmod>2026-08-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/dismantling-ketamelon-darknet-narcotics-syndicate-takedown</loc>
<lastmod>2026-08-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/cyberleek-gta-vi-leak</loc>
<lastmod>2026-08-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/apollo-global-management-cloud-data-breach-via-voice-phishing</loc>
<lastmod>2026-08-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/rust-ecosystem-supply-chain-attack-targeting-arrayref</loc>
<lastmod>2026-08-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/india-orders-google-firebase-fraud-takedown</loc>
<lastmod>2026-08-21T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/github-actions-supply-chain-compromise-tj-actions-changed-files-cve-2025-30066</loc>
<lastmod>2025-03-15T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/cdk-global-ransomware-black-suit-auto-dealership-disruption</loc>
<lastmod>2024-06-19T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/snowflake-data-theft-campaign-unc5537-credential-stuffing-extortion</loc>
<lastmod>2024-06-10T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/xz-utils-supply-chain-backdoor-cve-2024-3094</loc>
<lastmod>2024-03-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/change-healthcare-optum-ransomware-alphv-blackcat-healthcare-payment-disruption</loc>
<lastmod>2024-02-21T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/volt-typhoon-prc-pre-positioning-us-critical-infrastructure</loc>
<lastmod>2024-02-07T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/midnight-blizzard-apt29-microsoft-corporate-breach</loc>
<lastmod>2024-01-19T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/cases/ivanti-connect-secure-mass-exploitation-cve-2024-21893-cve-2024-21887-chinese-apt</loc>
<lastmod>2024-01-11T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/filimonov-google-bing-ads</loc>
<lastmod>2026-09-12T18:30:32.467Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/filimonov-175-years</loc>
<lastmod>2026-09-12T18:30:32.445Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/filimonov-backend-active-after-indictment</loc>
<lastmod>2026-09-12T18:30:32.411Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/filimonov-email-bombing-concealment</loc>
<lastmod>2026-09-12T18:30:32.376Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/filimonov-mule-llc-two-months-old</loc>
<lastmod>2026-09-12T18:30:32.340Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/filimonov-15-million-scheme</loc>
<lastmod>2026-09-12T18:30:32.308Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/dropbox-lenovo-customers-not-affected</loc>
<lastmod>2026-09-12T18:21:33.023Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/dropbox-not-breached-itself</loc>
<lastmod>2026-09-12T18:21:32.997Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/dropbox-attackers-targeted-crypto</loc>
<lastmod>2026-09-12T18:21:32.962Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/dropbox-1500-accounts-files-downloaded</loc>
<lastmod>2026-09-12T18:21:32.922Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/dropbox-5000-accounts-no-2fa</loc>
<lastmod>2026-09-12T18:21:32.871Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/dropbox-lenovo-flaw-caused-breach</loc>
<lastmod>2026-09-12T18:21:32.820Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/aktulaev-sealed-five-years</loc>
<lastmod>2026-09-12T18:13:02.147Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/aktulaev-half-victims-us</loc>
<lastmod>2026-09-12T18:13:02.101Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/aktulaev-platform-is-upwork</loc>
<lastmod>2026-09-12T18:13:02.029Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/aktulaev-tvrat-teamviewer-vulnerability</loc>
<lastmod>2026-09-12T18:13:01.969Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/aktulaev-80000-victims</loc>
<lastmod>2026-09-12T18:13:01.912Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/aktulaev-255-fake-accounts</loc>
<lastmod>2026-09-12T18:13:01.833Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/messenger-monitoring-usage-count</loc>
<lastmod>2026-09-12T17:48:11.408Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/signal-linked-device-45-days</loc>
<lastmod>2026-09-12T17:48:11.384Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/bka-linked-witness-couple-whatsapp</loc>
<lastmod>2026-09-12T17:48:11.344Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/bgh-linked-device-history-inadmissible</loc>
<lastmod>2026-09-12T17:48:11.309Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/zka-directive-cites-overturned-ruling</loc>
<lastmod>2026-09-12T17:48:11.269Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/german-police-break-whatsapp-encryption</loc>
<lastmod>2026-09-12T17:48:11.229Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/ctrack-production-vs-backup</loc>
<lastmod>2026-09-12T17:36:50.225Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/ctrack-no-fraud-evidence</loc>
<lastmod>2026-09-12T17:36:50.199Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/ctrack-sealed-records-exposed</loc>
<lastmod>2026-09-12T17:36:50.156Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/ctrack-infrastructure-vulnerability</loc>
<lastmod>2026-09-12T17:36:50.117Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/ctrack-backup-courts-unaware</loc>
<lastmod>2026-09-12T17:36:50.070Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/ctrack-eleven-states</loc>
<lastmod>2026-09-12T17:36:50.027Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/idscan-170-million-documents</loc>
<lastmod>2026-09-12T17:27:46.576Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/idscan-hertz-source</loc>
<lastmod>2026-09-12T17:27:46.554Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/idscan-caesars-not-a-client</loc>
<lastmod>2026-09-12T17:27:46.523Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/idscan-exfiltrated-over-a-year</loc>
<lastmod>2026-09-12T17:27:46.496Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/idscan-retain-all-by-default</loc>
<lastmod>2026-09-12T17:27:46.466Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/idscan-confirmed-153-million</loc>
<lastmod>2026-09-12T17:27:46.430Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/clop-10-million-reward</loc>
<lastmod>2026-09-11T17:18:13.255Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/windchill-fewer-than-100-exposed</loc>
<lastmod>2026-09-11T17:18:13.228Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/windchill-patch-15-june</loc>
<lastmod>2026-09-11T17:18:13.185Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/windchill-43-victims</loc>
<lastmod>2026-09-11T17:18:13.156Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/windchill-exploited-as-zero-day</loc>
<lastmod>2026-09-11T17:18:12.854Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/windchill-cvss-9-3-9-8-10-0</loc>
<lastmod>2026-09-11T17:18:12.807Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/mckesson-confirmed-284m-records</loc>
<lastmod>2026-09-11T16:51:20.705Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/mckesson-55-million-ransom</loc>
<lastmod>2026-09-11T16:51:20.670Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/mckesson-incident-window-aug-20-25</loc>
<lastmod>2026-09-11T16:51:20.638Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/mckesson-claims-domain-used</loc>
<lastmod>2026-09-11T16:51:20.593Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/mckesson-vishing-okta-salesforce-snowflake</loc>
<lastmod>2026-09-11T16:51:20.558Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/mckesson-284-million-patients</loc>
<lastmod>2026-09-11T16:51:20.515Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/sality-eggjagger-150000-stolen</loc>
<lastmod>2026-09-11T16:39:33.879Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/sality-active-since-2003</loc>
<lastmod>2026-09-11T16:39:33.837Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/sality-operator-bashkortostan</loc>
<lastmod>2026-09-11T16:39:33.813Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/sality-11-million-unique-ips</loc>
<lastmod>2026-09-11T16:39:33.776Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/sality-one-million-machines-at-peak</loc>
<lastmod>2026-09-11T16:39:33.747Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/sality-15000-infected-machines</loc>
<lastmod>2026-09-11T16:39:33.699Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/archetyp-250-million-volume</loc>
<lastmod>2026-09-03T09:04:09.135Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/archetyp-backup-misconfiguration</loc>
<lastmod>2026-09-03T09:04:09.086Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/media-land-sanctions-stopped-operations</loc>
<lastmod>2026-09-03T08:47:04.432Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/media-land-62-million-losses</loc>
<lastmod>2026-09-03T08:47:04.386Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/blackcat-insider-attack-window</loc>
<lastmod>2026-09-03T08:41:22.737Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/blackcat-insider-five-victims</loc>
<lastmod>2026-09-03T08:41:22.717Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/postmark-mcp-first-malicious-mcp-server</loc>
<lastmod>2026-09-03T08:24:03.649Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/postmark-mcp-300-organisations</loc>
<lastmod>2026-09-03T08:24:03.620Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/postmark-mcp-trust-built-over-15-versions</loc>
<lastmod>2026-09-03T08:24:03.583Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/keyv-450-million-downloads</loc>
<lastmod>2026-09-03T08:10:35.864Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/keyv-slsa-provenance-bypassed</loc>
<lastmod>2026-09-03T08:10:35.824Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/guardbreaker-first-ai-evasion</loc>
<lastmod>2026-09-03T06:22:25.218Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/guardbreaker-bypassed-ai-analysis</loc>
<lastmod>2026-09-03T06:22:25.185Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/virtualizor-handful-of-servers</loc>
<lastmod>2026-09-02T15:34:51.542Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/polyfill-us-sanctions-over-attack</loc>
<lastmod>2026-09-02T14:25:50.772Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/polyfill-funnull-acquired-july-2024</loc>
<lastmod>2026-09-02T14:25:50.726Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/polyfill-100000-sites-affected</loc>
<lastmod>2026-09-02T14:25:50.683Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/event-stream-8-million-downloads</loc>
<lastmod>2026-09-02T13:54:38.519Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/copay-private-keys-stolen</loc>
<lastmod>2026-09-02T13:54:38.468Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/codecov-hundreds-of-networks-breached</loc>
<lastmod>2026-09-02T13:22:18.833Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/codecov-attackers-replaced-ip-address</loc>
<lastmod>2026-09-02T13:22:18.760Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/xz-jia-tan-timezone-location</loc>
<lastmod>2026-09-02T11:12:44.238Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/3cx-apt43-infrastructure-overlap</loc>
<lastmod>2026-09-02T11:05:17.401Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/3cx-600000-businesses-at-risk</loc>
<lastmod>2026-09-02T11:05:17.401Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/3cx-macos-simplesea-poolrat</loc>
<lastmod>2026-09-02T10:34:01.365Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/claims/3cx-north-korea-attribution-confirmed</loc>
<lastmod>2026-09-02T10:34:01.324Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/page/2</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/data-breach</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/ransomware</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/financial-fraud</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/state-sponsored</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/social-engineering</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/malware</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/insider-threat</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/supply-chain-attack</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/darknet-illicit-markets</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/cryptocurrency-web3</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/botnet-ddos</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/identity-theft</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/extortion-blackmail</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/ai-machine-learning</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/categories/ot-industrial-systems</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/account-takeover</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/backdoor</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/bitcoin</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/bka</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/blacksuit</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/china</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/ci-cd</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/cloud-security</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/code-signing</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/credential-theft</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/critical-infrastructure</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/cryptocurrency</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/darknet</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/data-breach</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/doj</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/dprk</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/espionage</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/europol</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/extortion</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/extradition</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/fbi</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/germany</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/github-actions</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/healthcare</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/hipaa</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/india</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/infostealer</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/insider-threat</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/javascript</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/law-enforcement</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/malware</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/mass-exploitation</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/narcotics</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/nation-state</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/npm</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/ofac</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/open-source</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/ot-security</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/phishing</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/prosecution</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/ransomware</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/russian</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/saas</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/salesforce</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/sanctions</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/secret-exfiltration</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/shai-hulud</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/shinyhunters</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/slsa</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/snowflake</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/social-engineering</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/supply-chain</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/unattributed</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/vishing</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://threatpaper.com/tags/worm</loc>
<lastmod>2026-09-12T20:45:02.301Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
</urlset>
