<?xml version="1.0" encoding="UTF-8"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"><url><loc>https://sibrana.com/ar/article/aurora-ransomware-operators-cursor-ai-agent-hands-on-exploitation</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-08T02:12:19.004Z</news:publication_date><news:title>مشغّلو برنامج الفدية Aurora يستخدمون وكيل Cursor للذكاء الاصطناعي في اختراق 10 أهداف — والسجلات المسرّبة تكشف كيف</news:title><news:keywords>الذكاء الاصطناعي, برامج الفدية</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/gunra-ransomware-fortinet-flaws-critical-infrastructure-cisa-fbi-advisory</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-08T02:12:15.552Z</news:publication_date><news:title>برنامج الفدية Gunra يستغل ثغرات Fortinet لاختراق البنى التحتية الحرجة — وتحذير مشترك من CISA وFBI والشرطة الكورية</news:title><news:keywords>ثغرة يوم الصفر, VPN, برامج الفدية</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/brazetsu-python-malware-framework-infected-marketplace-initial-access-broker</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-08T01:09:08.692Z</news:publication_date><news:title>BraZetsu: إطار برمجيات خبيثة بلغة Python يحوّل أجهزة ويندوز المخترقة إلى «بضاعة» في سوق إجرامية بإيداع 5.80 دولار</news:title><news:keywords>Windows, التصيّد</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/ted-backdoor-trojanized-haproxy-builds-intercept-web-traffic-rapid7</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-08T01:09:05.474Z</news:publication_date><news:title>باب خلفي «ted» يختبئ داخل نسخ HAProxy الخاصة بالضحايا ليعترض حركة الويب ويقدّم صفحات معدَّلة لزوار مختارين</news:title><news:keywords>Linux</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/cisco-nexus-9000-silicon-one-unauthenticated-root-rce-cve-2026-20212</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-08T00:41:12.525Z</news:publication_date><news:title>ثغرة حرجة في مبدّلات Cisco Nexus 9000 تتيح لمهاجم عن بُعد تنفيذ شفرة كـ root دون مصادقة — ومعها 7 ثغرات مظلّية في IOS XR</news:title></news:news></url><url><loc>https://sibrana.com/ar/article/telerik-ui-asp-net-ajax-padding-oracle-unauthenticated-rce-public-exploit</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-08T00:41:09.027Z</news:publication_date><news:title>ثغرة «Padding Oracle» في Telerik UI لـ ASP.NET AJAX تُسلسل إلى تنفيذ شفرة دون مصادقة — وأداة استغلال علنية الآن</news:title><news:keywords>Microsoft, Windows</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/mikrotik-routers-hijacked-exposed-ssh-cert-polska-mikrotrick</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-08T00:22:16.198Z</news:publication_date><news:title>اختطاف موجّهات MikroTik عبر SSH مكشوف على الإنترنت دون مصادقة — CERT بولندا تحذّر وتنصح بالتحديث الفوري</news:title><news:keywords>إنترنت الأشياء, Linux</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/magento-adobe-commerce-zero-day-stylesmuggler-exploited-unpatched</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-08T00:22:12.482Z</news:publication_date><news:title>ثغرة يوم-صفر غير مُصلَحة في Magento وAdobe Commerce تُستغل لزرع أبواب خلفية في المتاجر الإلكترونية</news:title><news:keywords>ثغرة يوم الصفر</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/nimbus-manticore-twostroke-backdoor-ssh-tunneler-group-ib</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-07T23:45:37.694Z</news:publication_date><news:title>Nimbus Manticore توسّع ترسانتها: باب خلفي شبيه بـ TWOSTROKE ونفق SSH متنكّران في مكوّنات ويندوز</news:title><news:keywords>Windows</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/peep-chrome-edge-extension-backdoor-native-messaging</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-07T21:27:44.838Z</news:publication_date><news:title>إضافة «PEEP» تحوّل كروم وإيدج إلى باب خلفي دائم يصل إلى نظام التشغيل</news:title><news:keywords>Windows, Linux</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/chrome-152-zero-day-v8-type-confusion-cve-2026-85046</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-07T20:45:33.446Z</news:publication_date><news:title>غوغل تُصدر تحديثًا عاجلًا لكروم لسدّ ثغرة يوم-صفر مستغلة في محرك V8 — السادسة هذا العام</news:title><news:keywords>ثغرة يوم الصفر, Google</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/vmware-workstation-fusion-critical-vmxnet3-host-code-execution</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-07T15:45:33.718Z</news:publication_date><news:title>ثغرة حرجة في VMware Workstation وFusion تتيح لمسؤول الجهاز الافتراضي تنفيذ شفرة على المضيف</news:title><news:keywords>ثغرة يوم الصفر</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/silver-fox-fake-installers-disable-windows-update-defender</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-07T11:04:42.527Z</news:publication_date><news:title>مثبِّتات برامج مزيفة تعطّل Windows Update وتُضعف Defender — مايكروسوفت تنسبها إلى «Silver Fox»</news:title><news:keywords>Windows, Microsoft, التصيّد</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/geonetwork-unauthenticated-rce-chain-government-geoportals</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-07T09:45:33.978Z</news:publication_date><news:title>سلسلة ثغرات في GeoNetwork تتيح تنفيذ شفرة دون مصادقة على خوادم البوابات الجغرافية الحكومية</news:title><news:keywords>Linux</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/nimbus-manticore-fake-recruiters-coding-tests-noderabbit-pollcat</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-07T02:04:42.058Z</news:publication_date><news:title>مجموعة إيرانية تنتحل صفة مسؤولي توظيف وتزرع أحصنة طروادة عبر «اختبارات برمجة» تعمل على ويندوز ولينكس وماك</news:title><news:keywords>التصيّد, Linux, Windows</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/prey-0058-help-desk-vishing-microsoft-365-aitm-extortion</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-06T20:04:42.285Z</news:publication_date><news:title>مكالمات «دعم تقني» مزيفة تستهدف المديرين التنفيذيين لسرقة بيانات Microsoft 365 وابتزاز الشركات</news:title><news:keywords>التصيّد, Microsoft, السحابة</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/gitspawn-malicious-git-config-ai-coding-agents-run-attacker-code</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-06T17:45:34.204Z</news:publication_date><news:title>ملف .git/config خبيث يجعل Claude Code وCodex وCursor ووكلاء برمجة آخرين ينفّذون شفرة المهاجم قبل أي موافقة</news:title><news:keywords>الذكاء الاصطناعي</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/revstealer-four-modules-disable-defender-run-crypto-miner</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-06T12:04:42.729Z</news:publication_date><news:title>أربعة مكوّنات مرتبطة بـ REVSTEALER تبقى بعد أن يحذف السارق نفسه — أحدها يعطّل Defender ويشغّل عامل تعدين</news:title><news:keywords>Windows</news:keywords></news:news></url><url><loc>https://sibrana.com/ar/article/jsceal-compiled-javascript-malware-google-session-cookie-replay</loc><news:news><news:publication><news:name>سيبرانا</news:name><news:language>ar</news:language></news:publication><news:publication_date>2026-09-06T06:04:42.907Z</news:publication_date><news:title>JSCeal: برمجية بـ JavaScript مُصرَّف تتجاوز مصادقة غوغل بإعادة تشغيل كوكيز الجلسات المسروقة</news:title><news:keywords>Windows, Google, التصيّد</news:keywords></news:news></url></urlset>