<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>CyberNewsAI - Threat Intelligence &amp; Security News</title>
        <link>https://cybernewsai.com	</link>
        <description>AI-powered real-time intelligence on cybersecurity threats, vulnerabilities, and defense strategies.</description>
        <language>en-us</language>
        <lastBuildDate>Wed, 16 Sep 2026 00:04:49 GMT</lastBuildDate>
        <atom:link href="https://cybernewsai.com	/feed.xml" rel="self" type="application/rss+xml"/>
        
        <item>
            <title>Acronis cPanel Backup Flaw CVE-2026-87886 Exploited in Wild</title>
            <link>https://cybernewsai.com	/blog/acronis-cpanel-backup-flaw-cve-2026-87886</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/acronis-cpanel-backup-flaw-cve-2026-87886</guid>
            <pubDate>Tue, 15 Sep 2026 23:50:00 GMT</pubDate>
            <description>Acronis patched an actively exploited local privilege escalation vulnerability (CVE-2026-87886, CVSS 7.8) affecting its backup plugins for Linux cPanel, WHM, and Plesk hosting servers.</description>
            <category>Vulnerability Watch</category><category>Cloud Defense</category><category>Threat Intelligence</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>KREMLIN Malware Hijacks Chrome via App-Bound Encryption Bypass</title>
            <link>https://cybernewsai.com	/blog/kremlin-malware-hijacks-chrome-app-bound-encryption</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/kremlin-malware-hijacks-chrome-app-bound-encryption</guid>
            <pubDate>Tue, 15 Sep 2026 23:45:00 GMT</pubDate>
            <description>Brazilian banking trojan KREMLIN (REF9334) defeats Chromium App-Bound Encryption to inject covert extensions, harvesting credentials and leveraging Ethereum smart contracts as dead-drop resolvers.</description>
            <category>Malware &amp; Botnets</category><category>Identity &amp; Access</category><category>Threat Intelligence</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Trojanized Admin Menu Editor Pro Backdoors 1,500 WordPress Sites</title>
            <link>https://cybernewsai.com	/blog/trojanized-admin-menu-editor-pro-backdoors-wordpress-sites</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/trojanized-admin-menu-editor-pro-backdoors-wordpress-sites</guid>
            <pubDate>Tue, 15 Sep 2026 23:30:00 GMT</pubDate>
            <description>A supply chain attack on the Admin Menu Editor Pro plugin distributed trojanized updates (v2.35/2.36) that planted stealth web shells and hidden admin accounts across 1,500 WordPress websites.</description>
            <category>Supply Chain Attacks</category><category>Data Breaches</category><category>Threat Intelligence</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>CISA Warns Ransomware Gangs Now Exploit VMware vCenter RCE</title>
            <link>https://cybernewsai.com	/blog/cisa-warns-ransomware-gangs-exploit-vmware-vcenter-rce</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/cisa-warns-ransomware-gangs-exploit-vmware-vcenter-rce</guid>
            <pubDate>Tue, 15 Sep 2026 13:30:00 GMT</pubDate>
            <description>CISA warned that ransomware gangs are now actively exploiting a critical CVSS 9.8 remote code execution flaw in VMware vCenter Server (CVE-2026-59310) to compromise enterprise virtualization.</description>
            <category>Ransomware &amp; Extortion</category><category>Vulnerability Watch</category><category>Cloud Defense</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>In-Browser ClickFix Abuses Google Sheets C2 to Steal Crypto</title>
            <link>https://cybernewsai.com	/blog/in-browser-clickfix-google-sheets-c2-crypto-theft</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/in-browser-clickfix-google-sheets-c2-crypto-theft</guid>
            <pubDate>Tue, 15 Sep 2026 00:15:00 GMT</pubDate>
            <description>Cisco Talos uncovered an in-browser ClickFix campaign abusing the Google Visualization API and Google Sheets as C2 to inject malicious JavaScript and hijack cryptocurrency swap transactions.</description>
            <category>Threat Intelligence</category><category>Cloud Defense</category><category>Malware &amp; Botnets</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>CISA Adds 5 Flaws in ScreenConnect, MikroTik &amp; JFrog to KEV</title>
            <link>https://cybernewsai.com	/blog/cisa-adds-screenconnect-mikrotik-jfrog-flaws-kev</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/cisa-adds-screenconnect-mikrotik-jfrog-flaws-kev</guid>
            <pubDate>Sun, 13 Sep 2026 19:25:00 GMT</pubDate>
            <description>CISA added five actively exploited vulnerabilities to its KEV catalog, spanning ConnectWise ScreenConnect (CVSS 9.9), MikroTik RouterOS &apos;MikroTrick&apos;, and JFrog Artifactory.</description>
            <category>Vulnerability Watch</category><category>Threat Intelligence</category><category>Critical Infrastructure</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>UNC3569 Exploits Tencent Sogou IME to Drop GRAYRABBIT Backdoor</title>
            <link>https://cybernewsai.com	/blog/unc3569-tencent-sogou-ime-grayrabbit-backdoor</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/unc3569-tencent-sogou-ime-grayrabbit-backdoor</guid>
            <pubDate>Sun, 13 Sep 2026 19:10:00 GMT</pubDate>
            <description>PRC-nexus espionage group UNC3569 weaponized a one-click RCE flaw in Tencent&apos;s Sogou Input Method to silently drop the GRAYRABBIT backdoor across Windows endpoints.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category><category>Malware &amp; Botnets</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Dutch NCSC Warns of Imminent Check Point VPN RCE Exploits</title>
            <link>https://cybernewsai.com	/blog/dutch-ncsc-warns-check-point-vpn-rce-exploits</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/dutch-ncsc-warns-check-point-vpn-rce-exploits</guid>
            <pubDate>Sat, 12 Sep 2026 15:15:00 GMT</pubDate>
            <description>Dutch NCSC warns of imminent exploitation targeting two CVSS 9.8 flaws in Check Point VPN gateways that allow unauthenticated remote code execution.</description>
            <category>Vulnerability Watch</category><category>Cloud Defense</category><category>Critical Infrastructure</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Cisco FMC Zero-Days Exploited by Sandworm and Qilin Ransomware</title>
            <link>https://cybernewsai.com	/blog/cisco-fmc-zero-days-sandworm-qilin-ransomware</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/cisco-fmc-zero-days-sandworm-qilin-ransomware</guid>
            <pubDate>Sat, 12 Sep 2026 14:45:00 GMT</pubDate>
            <description>Cisco warns of active in-the-wild exploitation of dual FMC vulnerabilities (CVE-2026-20079 CVSS 10.0), leveraged by Sandworm for Cyclops Blink malware and Qilin ransomware operators.</description>
            <category>Vulnerability Watch</category><category>Ransomware &amp; Extortion</category><category>Threat Intelligence</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Passkey Phishing Lures Fuel Major Microsoft 365 Data Theft</title>
            <link>https://cybernewsai.com	/blog/passkey-phishing-lures-fuel-microsoft-365-data-theft</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/passkey-phishing-lures-fuel-microsoft-365-data-theft</guid>
            <pubDate>Sat, 12 Sep 2026 03:37:00 GMT</pubDate>
            <description>Extortion groups Storm-3121 and Storm-3032 weaponize fake passkey lures and device-code phishing to breach Microsoft 365 tenants and covertly exfiltrate enterprise SharePoint data.</description>
            <category>Threat Intelligence</category><category>Cloud Defense</category><category>Data Breaches</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>ShinyHunters Abused Claude in 1.8M Android App Secret Heist</title>
            <link>https://cybernewsai.com	/blog/shinyhunters-abused-claude-1-8m-android-app-secret-heist</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/shinyhunters-abused-claude-1-8m-android-app-secret-heist</guid>
            <pubDate>Sat, 12 Sep 2026 03:25:00 GMT</pubDate>
            <description>ShinyHunters affiliates automated AWS EC2 clusters and TruffleHog to harvest secrets from 1.8M Android APKs, weaponizing Claude for rapid cross-tenant compromise and extortion.</description>
            <category>Threat Intelligence</category><category>AI Security</category><category>Data Breaches</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Active Exploitation of PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257)</title>
            <link>https://cybernewsai.com	/blog/active-exploitation-pan-os-globalprotect-authentication-bypass-cve-2026-0257</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/active-exploitation-pan-os-globalprotect-authentication-bypass-cve-2026-0257</guid>
            <pubDate>Sun, 31 May 2026 01:12:16 GMT</pubDate>
            <description>A critical authentication bypass vulnerability (CVE-2026-0257) in PAN-OS GlobalProtect gateways is under active exploitation.</description>
            <category>Vulnerability Watch</category><category>Threat Intelligence</category><category>Data Breaches</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>UAT-4356 Targets Cisco Devices with FIRESTARTER Backdoor</title>
            <link>https://cybernewsai.com	/blog/uat-4356-targets-cisco-devices-with-firestarter-backdoor</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/uat-4356-targets-cisco-devices-with-firestarter-backdoor</guid>
            <pubDate>Sat, 25 Apr 2026 04:16:04 GMT</pubDate>
            <description>Threat actor UAT-4356 is actively exploiting n-day vulnerabilities in Cisco Firepower devices to deploy the FIRESTARTER backdoor, enabling arbitrary code execution. Immediate mitigation required.</description>
            <category>Vulnerability Watch</category><category>Threat Intelligence</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Storm-2755 &apos;Payroll Pirate&apos; Attacks Target Canadian Staff</title>
            <link>https://cybernewsai.com	/blog/storm-2755-payroll-pirate-attacks-target-canadian-staff</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/storm-2755-payroll-pirate-attacks-target-canadian-staff</guid>
            <pubDate>Sat, 11 Apr 2026 03:13:52 GMT</pubDate>
            <description>Threat Actor Storm-2755 is using AiTM phishing and SEO poisoning to bypass MFA, hijack sessions, and divert payroll deposits of employees in Canada. Analysis of TTPs included.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category><category>Data Breaches</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>EvilTokens PhaaS Abuses Railway PaaS for M365 Attacks</title>
            <link>https://cybernewsai.com	/blog/eviltokens-phaas-abuses-railway-paas-for-m365-attacks</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/eviltokens-phaas-abuses-railway-paas-for-m365-attacks</guid>
            <pubDate>Wed, 25 Mar 2026 14:47:22 GMT</pubDate>
            <description>Active device code phishing campaign attributed to the EvilTokens PhaaS platform is abusing Railway.com PaaS infrastructure to target Microsoft 365 identities, compromising over 340 organizations.</description>
            <category>Threat Intelligence</category><category>Cloud Defense</category><category>Data Breaches</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>China-linked Actor CL-STA-1087 Hits Military with New Tools</title>
            <link>https://cybernewsai.com	/blog/china-linked-actor-cl-sta-1087-targets-military-applechris-memfun</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/china-linked-actor-cl-sta-1087-targets-military-applechris-memfun</guid>
            <pubDate>Sat, 14 Mar 2026 10:34:35 GMT</pubDate>
            <description>Suspected China-based actor CL-STA-1087 targets Southeast Asian military orgs in a long-running espionage campaign using custom backdoors AppleChris and MemFun and a modified Mimikatz tool, Getpass.</description>
            <category>Vulnerability Watch</category><category>Threat Intelligence</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>APT28-Linked Campaign Deploys BadPaw &amp; MeowMeow Malware</title>
            <link>https://cybernewsai.com	/blog/apt28-linked-campaign-deploys-badpaw-meowmeow-malware</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/apt28-linked-campaign-deploys-badpaw-meowmeow-malware</guid>
            <pubDate>Thu, 05 Mar 2026 12:00:25 GMT</pubDate>
            <description>A new campaign, with moderate confidence attribution to APT28, is targeting Ukrainian entities with previously undocumented malware: the BadPaw loader and the MeowMeow backdoor. Report by ClearSky.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Critical Cisco SD-WAN Flaws Under Active Exploitation</title>
            <link>https://cybernewsai.com	/blog/critical-cisco-sd-wan-flaws-under-active-exploitation</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/critical-cisco-sd-wan-flaws-under-active-exploitation</guid>
            <pubDate>Thu, 05 Mar 2026 11:25:28 GMT</pubDate>
            <description>Multiple vulnerabilities in Cisco Catalyst SD-WAN Manager, including a CVSS 9.8 auth bypass, are under active exploitation. Threat actors can gain root access and bypass authentication.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Silver Dragon APT Targets Govs via Google Drive C2</title>
            <link>https://cybernewsai.com	/blog/silver-dragon-apt-targets-govs-via-google-drive-c2</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/silver-dragon-apt-targets-govs-via-google-drive-c2</guid>
            <pubDate>Wed, 04 Mar 2026 14:22:27 GMT</pubDate>
            <description>Intel Brief: Silver Dragon, an APT41-linked threat actor, is targeting government entities using Cobalt Strike and a novel Google Drive C2 channel. Multiple infection chains detailed.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category><category>Cloud Defense</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>OAuth Redirect Abuse Delivers Malware to Gov&apos;t Targets</title>
            <link>https://cybernewsai.com	/blog/oauth-redirect-abuse-delivers-malware-to-government-targets</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/oauth-redirect-abuse-delivers-malware-to-government-targets</guid>
            <pubDate>Tue, 03 Mar 2026 13:18:04 GMT</pubDate>
            <description>Threat actors are abusing legitimate OAuth redirect features in Entra ID and Google Workspace to deliver malware to government and public sector targets, bypassing conventional defenses.</description>
            <category>Threat Intelligence</category><category>Cloud Defense</category><category>Vulnerability Watch</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Android Zero-Day CVE-2026-21385 Actively Exploited</title>
            <link>https://cybernewsai.com	/blog/android-zero-day-cve-2026-21385-actively-exploited</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/android-zero-day-cve-2026-21385-actively-exploited</guid>
            <pubDate>Tue, 03 Mar 2026 13:11:51 GMT</pubDate>
            <description>Google confirms active, targeted exploitation of CVE-2026-21385, a high-severity buffer over-read in Qualcomm&apos;s Android Graphics component. Immediate patching is required.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>SloppyLemming Targets South Asian Governments with New Malware</title>
            <link>https://cybernewsai.com	/blog/sloppylemming-targets-south-asian-governments-with-new-malware</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/sloppylemming-targets-south-asian-governments-with-new-malware</guid>
            <pubDate>Tue, 03 Mar 2026 13:04:57 GMT</pubDate>
            <description>Threat Actor SloppyLemming targets Pakistan &amp; Bangladesh governments with dual attack chains. Vectors include spear-phishing delivering the BurrowShell backdoor and a new Rust-based keylogger.</description>
            <category>Threat Intelligence</category><category>Data Breaches</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>MuddyWater&apos;s &apos;Operation Olalampo&apos; Targets MENA</title>
            <link>https://cybernewsai.com	/blog/muddywaters-operation-olalampo-targets-mena</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/muddywaters-operation-olalampo-targets-mena</guid>
            <pubDate>Mon, 23 Feb 2026 13:20:53 GMT</pubDate>
            <description>Iranian APT MuddyWater targets MENA region in &apos;Operation Olalampo.&apos; Campaign utilizes new AI-assisted malware including GhostFetch, GhostBackDoor, and the Rust-based CHAR backdoor.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category><category>AI Security</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Single Actor Drives 83% of Ivanti EPMM RCE Attacks</title>
            <link>https://cybernewsai.com	/blog/single-actor-drives-83-percent-of-ivanti-epmm-rce-attacks</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/single-actor-drives-83-percent-of-ivanti-epmm-rce-attacks</guid>
            <pubDate>Sun, 15 Feb 2026 10:51:59 GMT</pubDate>
            <description>A single threat actor, using a bulletproof hosting IP not on public IOC lists, is responsible for 83% of active RCE exploitation against critical Ivanti EPMM vulnerabilities. Patch immediately.</description>
            <category>Vulnerability Watch</category><category>Threat Intelligence</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Lazarus Group Deploys RAT via Fake Developer Job Offers</title>
            <link>https://cybernewsai.com	/blog/lazarus-group-deploys-rat-via-fake-developer-job-offers</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/lazarus-group-deploys-rat-via-fake-developer-job-offers</guid>
            <pubDate>Sat, 14 Feb 2026 06:05:07 GMT</pubDate>
            <description>North Korean threat actor Lazarus Group is targeting developers with fake job offers, using coding challenges to deploy a RAT via malicious npm and PyPi packages in a campaign dubbed &apos;Graphalgo&apos;.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category><category>Data Breaches</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>LummaStealer Resurgence via CastleLoader</title>
            <link>https://cybernewsai.com	/blog/lummastealer-resurgence-via-castleloader</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/lummastealer-resurgence-via-castleloader</guid>
            <pubDate>Fri, 13 Feb 2026 07:44:30 GMT</pubDate>
            <description>Intel Brief: LummaStealer infostealer infections surge, delivered by the heavily obfuscated CastleLoader. Campaigns use social engineering and &apos;ClickFix&apos; vectors to compromise systems.</description>
            <category>Threat Intelligence</category><category>Data Breaches</category><category>Vulnerability Watch</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Notepad++ Supply Chain Attack Delivers Chrysalis</title>
            <link>https://cybernewsai.com	/blog/notepad-plus-plus-supply-chain-attack-delivers-chrysalis</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/notepad-plus-plus-supply-chain-attack-delivers-chrysalis</guid>
            <pubDate>Tue, 03 Feb 2026 10:01:12 GMT</pubDate>
            <description>China-linked actor Lotus Blossom compromises Notepad++ hosting to deliver Chrysalis backdoor. Attack targeted outdated versions via update hijacking. IOCs and mitigations are available.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>ShinyHunters Abuses SSO via Vishing for Cloud Data Theft</title>
            <link>https://cybernewsai.com	/blog/shinyhunters-abuses-sso-via-vishing-for-cloud-data-theft</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/shinyhunters-abuses-sso-via-vishing-for-cloud-data-theft</guid>
            <pubDate>Sun, 01 Feb 2026 12:17:36 GMT</pubDate>
            <description>Threat actors, including ShinyHunters, are using vishing and phishing kits to steal SSO credentials, bypass MFA, and exfiltrate data from enterprise SaaS applications like Salesforce and Microsoft 365</description>
            <category>Cloud Defense</category><category>Data Breaches</category><category>Threat Intelligence</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>Illicit Crypto Flows Hit Record $158 Billion in 2025: Critical Update</title>
            <link>https://cybernewsai.com	/blog/illicit-crypto-flows-hit-record-158-billion-2025</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/illicit-crypto-flows-hit-record-158-billion-2025</guid>
            <pubDate>Sat, 31 Jan 2026 10:52:51 GMT</pubDate>
            <description>Illicit cryptocurrency flows surged by 145% to a record $158 billion in 2025, reversing a three-year decline. Sanctions evasion, nation-state activity, and AI-driven scams are key drivers.</description>
            <category>Governance &amp; Policy</category><category>Threat Intelligence</category><category>Data Breaches</category><category>AI Security</category>
            <author>CyberNewsAI Admin</author>
        </item>
        <item>
            <title>CRITICAL: Active Exploitation of Dual Ivanti EPMM Zero-Days</title>
            <link>https://cybernewsai.com	/blog/ivanti-epmm-zero-day-rce-vulnerability-alert</link>
            <guid isPermaLink="true">https://cybernewsai.com	/blog/ivanti-epmm-zero-day-rce-vulnerability-alert</guid>
            <pubDate>Fri, 30 Jan 2026 07:47:30 GMT</pubDate>
            <description>Ivanti has confirmed active exploitation of two critical 9.8 CVSS zero-day RCE flaws. Organizations must apply emergency patches immediately to prevent full server compromise and lateral movement.</description>
            <category>Threat Intelligence</category><category>Vulnerability Watch</category>
            <author>CyberNewsAI Admin</author>
        </item>
    </channel>
</rss>