<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url><loc>https://graphlattice.com/</loc></url>
  <url><loc>https://graphlattice.com/range</loc></url>
  <url><loc>https://graphlattice.com/community</loc></url>
  <url><loc>https://graphlattice.com/demo</loc></url>
  <url><loc>https://graphlattice.com/docs</loc></url>
  <url><loc>https://graphlattice.com/blog</loc></url>
  <url><loc>https://graphlattice.com/changelog</loc></url>
  <url><loc>https://graphlattice.com/support</loc></url>
  <url><loc>https://graphlattice.com/docs/certificates-and-badges</loc></url>
  <url><loc>https://graphlattice.com/docs/faq</loc></url>
  <url><loc>https://graphlattice.com/docs/getting-started</loc></url>
  <url><loc>https://graphlattice.com/docs/glossary</loc></url>
  <url><loc>https://graphlattice.com/docs/how-range-works</loc></url>
  <url><loc>https://graphlattice.com/docs/platform-security</loc></url>
  <url><loc>https://graphlattice.com/docs/scenario-library</loc></url>
  <url><loc>https://graphlattice.com/docs/scoring-and-the-graph</loc></url>
  <url><loc>https://graphlattice.com/docs/team-and-presenter-modes</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-04-20-device-code-phishing</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-04-22-bec-inbox-rules</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-04-26-azure-run-command-privilege-escalation</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-04-28-group-policy-ransomware</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-04-30-containment-under-fire</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-06-ad-cs-esc1-how-a-certificate-template-becomes-do</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-08-mfa-fatigue-attacks-how-push-bombing-defeats-mfa</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-12-ntlm-relay-explained-coercion-signing-and-the-fi</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-14-recovery-versus-availability-the-call-only-an-ex</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-16-dual-extortion-ransomware-what-boards-must-decid</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-18-when-attackers-unenroll-your-devices-intune-as-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-20-dcsync-explained-how-attackers-replicate-every-p</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-22-kerberoasting-how-service-account-passwords-get</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-27-how-an-oauth-app-bypasses-mfa-the-midnight-blizz</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-05-29-from-ssrf-to-stolen-cloud-credentials-the-ec2-me</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-02-it-was-not-a-snowflake-breach-stolen-credential</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-03-identity-is-the-new-perimeter</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-04-what-a-stolen-session-token-does-that-a-password</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-05-a-hacked-container-can-hand-over-your-aws-account</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-05-the-bucket-you-forgot-was-public</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-05-the-function-that-runs-the-attackers-code-forever</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-05-the-permission-that-promotes-itself-passrole</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-05-the-ticket-that-never-expires-golden-ticket</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-05-they-sent-the-phish-from-your-own-email-service</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-05-your-database-left-as-a-snapshot</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-05-your-fleet-tool-is-a-remote-shell</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-a-pod-that-talks-its-way-to-cluster-admin</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-borrowing-a-more-powerful-identity-gcp</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-disabling-the-guardrails-before-the-heist</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-one-read-can-empty-an-azure-key-vault</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-querying-your-warehouse-straight-out-the-door</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-relaying-your-way-to-a-domain-admin-certificate</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-the-accounts-that-hand-out-crackable-tickets</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-the-function-that-leaks-its-own-identity</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-the-scheduled-job-that-owns-your-subscription</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-the-storage-key-that-ignores-your-rbac</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-your-build-pipeline-shipped-the-attackers-code</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-06-your-serverless-app-is-a-service-account</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-adding-a-key-to-someone-elses-account</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-no-key-stolen-but-now-they-are-your-gcp-service-account</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-the-app-you-approved-is-reading-your-mail</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-the-help-desk-call-that-reset-the-attackers-mfa</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-the-policy-that-only-looked-like-a-wall</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-the-proxy-that-steals-the-session-not-the-password</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-the-server-that-can-impersonate-anyone</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-the-whole-sharepoint-left-through-graph</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-they-are-signing-in-as-an-app-not-a-user</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-when-every-local-admin-password-is-the-same</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-07-writing-yourself-the-right-to-impersonate</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-a-build-pipeline-made-them-an-admin</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-forging-the-token-that-says-trust-me</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-from-a-normal-account-to-domain-admin-nopac</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-one-call-empties-your-secrets-manager</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-one-leaked-token-your-whole-orgs-source</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-one-token-can-empty-the-lakehouse</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-resetting-a-domain-controllers-password-to-nothing</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-the-backdoor-your-password-reset-never-touched</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-the-change-that-rewrites-the-directory-itself</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-the-old-identity-that-still-opens-every-door</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-the-support-file-that-handed-over-your-sessions</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-the-sync-account-that-bridges-both-worlds</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-the-wiki-that-stores-your-runbooks-and-secrets</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-your-app-is-handing-strangers-aws-credentials</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-your-chat-app-leaked-your-secrets</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-your-crm-walked-out-through-the-bulk-api</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-08-your-itsm-knows-everything-and-can-export-it</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-09-relaying-ntlm-straight-into-exchange</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-09-the-backdoor-that-runs-on-a-schedule</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-09-the-silent-subscription-copying-your-event-stream</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-09-the-workflow-that-grants-itself-a-role</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-09-they-stole-your-contracts-and-your-brand</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-cdp-both-leaks-and-pollutes-segment-key-abuse</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-codespace-is-a-credential-aggregation-point-de</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-disk-snapshot-is-a-portable-copy-cross-project</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-leaked-sas-key-has-no-user-to-disable-tapping</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-leaked-teams-webhook-url-is-a-phishing-cannon</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-poisoned-base-image-when-cleaning-your-registr</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-protected-read-with-no-violation-bridging-vpc</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-servicenow-business-rule-that-quietly-ships-re</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-stolen-devops-pat-carries-the-user-s-authority</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-stolen-workday-isu-has-no-human-to-reset-mass</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-a-zap-as-an-exfil-channel-why-your-egress-firewa</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-adcs-esc12-owning-the-ca-host-means-re-keying-no</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-adcs-esc14-a-writable-mapping-that-turns-any-cer</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-adcs-esc2-the-certificate-template-that-hands-ou</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-adminsdholder-abuse-when-your-cleanup-is-reverte</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-agentless-and-invisible-vm-run-command-as-a-cont</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-allauthenticatedusers-on-iap-when-authentication</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-an-oauth-app-token-outlives-the-user-bulk-zoom-r</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-an-open-atlas-access-list-turns-one-leaked-key-i</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-apigee-revision-tampering-weak-auth-and-a-creden</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-apim-policy-tamper-stripped-jwt-validation-and-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-appsync-field-level-authorization-the-gate-that</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-aws-ram-share-abuse-a-cross-account-foothold-tha</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-aws-root-takeover-why-resetting-your-iam-admins</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-azure-arc-as-a-backdoor-cloud-driven-commands-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-azure-lighthouse-the-standing-access-that-never</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-azure-ml-token-theft-when-a-notebook-schedules-i</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-azure-policy-tampering-a-green-dashboard-that-is</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-azure-sql-exfiltration-no-password-to-reset-just</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-azure-vm-extension-abuse-system-code-with-nobody</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-backdooring-the-idp-auth0-management-api-persist</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-backup-operators-is-tier-0-how-sebackupprivilege</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-badsuccessor-how-an-ou-write-becomes-tier-0-in-s</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-behavioral-data-is-regulated-data-amplitude-expo</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-blinding-the-monitors-aws-config-and-inspector-d</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-blinding-the-soc-when-defender-and-sentinel-are</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-breakglass-abused-deploying-an-unsigned-image-pa</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-circleci-context-dump-from-a-printed-secret-to-t</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-cloud-scheduler-persistence-a-saved-cron-that-ou</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-cloud-shell-is-a-pre-authenticated-prize-stealin</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-code-execution-inside-the-data-stack-dbt-cloud-s</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-codebuild-poisoning-a-green-pipeline-that-stole</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-contain-at-the-idp-ping-oauth-client-abuse-fans</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-dcshadow-when-empty-security-logs-mean-the-attac</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-defeating-mfa-from-its-admin-plane-duo-admin-api</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-diamond-ticket-a-real-tgt-with-a-forged-pac-insi</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-dkim-passed-and-that-is-the-problem-sendgrid-key</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-dnsadmins-is-tier-0-a-dll-that-runs-as-system-on</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-ec2-instance-connect-abuse-an-out-of-band-shell</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-entra-application-proxy-abuse-a-quiet-tunnel-int</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-faking-managed-how-a-rogue-endpoint-passes-okta</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-forged-claims-at-the-source-hijacking-okta-token</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-from-scoped-operator-to-fleet-control-intune-rba</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-glue-and-athena-exfiltration-the-data-lake-leave</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-golden-ticket-why-one-krbtgt-reset-never-stops-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-how-a-tampered-access-package-policy-lets-a-gues</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-hubspot-private-app-token-leaks-rotate-the-token</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-in-cloud-composer-writing-a-dag-file-is-running</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-jamf-pro-as-a-weapon-one-rogue-profile-reaches-t</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-jenkins-credential-store-dump-one-job-binds-the</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-killing-aws-backup-before-ransomware-the-anti-re</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-kms-key-policy-tampering-how-encrypted-data-is-r</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-kudu-console-to-managed-identity-token-stopping</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-leaked-asana-pat-revoke-the-token-not-the-user</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-low-code-long-memory-when-an-okta-workflows-flow</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-lowering-the-bar-forging-a-compliant-device-past</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-masked-is-not-secret-gitlab-ci-variable-theft-an</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-mssql-linked-server-chain-from-a-query-hop-to-do</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-no-login-to-chase-a-salesforce-apex-trigger-that</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-no-password-needed-gcp-metadata-ssh-keys-and-os</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-no-password-to-reset-netsuite-integration-token</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-oidc-trust-gone-wide-when-a-fork-can-assume-your</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-one-export-call-the-whole-table-dynamodb-point-i</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-one-provisioning-push-backdoor-accounts-in-every</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-one-stackset-operation-a-backdoor-in-every-aws-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-passwordless-persistence-the-app-backdoor-secret</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-poisoned-artifact-how-one-artifactory-token-tain</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-poisoned-knowledge-base-prompt-injection-drives</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-poisoning-a-lambda-layer-backdoors-every-functio</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-pushing-a-rogue-trusted-root-to-the-fleet-intune</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-pypi-maintainer-takeover-a-backdoored-release-re</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-rbcd-takeover-how-a-default-quota-becomes-a-doma</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-read-only-and-still-hostile-resource-graph-as-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-redirecting-a-pub-sub-push-endpoint-the-event-st</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-redshift-unload-dump-the-warehouse-export-that-w</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-revoke-the-tree-not-the-token-a-vault-secret-pat</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-rewriting-the-guardrails-network-zone-and-threat</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-rogue-federation-in-entra-forging-tokens-for-any</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-rogue-hardware-as-trusted-corporate-device-autop</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-roles-anywhere-abuse-when-a-stolen-certificate-m</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-sccm-takeover-a-recoverable-credential-and-a-coe</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-silent-org-wide-mailbox-reads-exchange-applicati</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-skeleton-key-the-master-password-that-lives-only</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-smishing-from-your-own-numbers-twilio-api-key-ab</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-sns-subscription-hijack-one-rogue-subscriber-cop</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-soft-delete-off-backups-gone-the-alarm-before-az</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-stolen-vercel-deploy-token-ships-a-skimmer-roll</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-stripe-restricted-key-abuse-refund-fraud-plus-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-tapping-a-message-stream-with-a-policy-edit-aws</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-tapping-the-data-pipeline-fivetran-connector-cre</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-tapping-the-event-stream-confluent-cloud-api-key</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-terraform-state-is-a-secret-store-when-a-stolen</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-bigquery-schedule-that-exfiltrates-long-afte</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-certificate-connector-as-a-credential-factor</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-connector-that-sees-every-password-okta-ad-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-cosmos-db-key-that-walks-straight-past-entra</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-event-grid-tap-a-rogue-subscription-that-hid</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-fix-is-in-git-stopping-argocd-from-re-syncin</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-ide-extension-that-steals-every-developer-s</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-internal-tool-that-holds-prod-retool-resourc</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-key-is-the-principal-stolen-okta-service-app</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-key-you-cannot-rotate-dpapi-domain-backup-ke</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-mailbox-backdoor-that-survives-a-password-re</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-the-privilege-escalation-your-tenant-wide-role-r</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-turning-the-lights-off-first-gcp-log-sink-and-au</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-two-things-to-rotate-when-a-plaid-secret-harvest</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-update-manager-as-a-weapon-one-config-edit-code</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-vault-export-equals-total-blast-radius-a-passwor</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-a-bi-embed-token-reads-the-data-behind-the</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-a-cognito-app-client-becomes-the-front-door</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-a-feature-flag-is-a-control-plane-launchdar</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-a-temporary-access-pass-becomes-permanent-a</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-a-waf-in-detection-mode-protects-nothing-fr</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-an-app-permission-is-global-admin-graph-rol</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-an-attacker-turns-off-your-alarms-pagerduty</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-an-iam-condition-trusts-the-caller-cel-bypa</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-ediscovery-becomes-an-exfil-engine-purview</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-one-cloudflare-token-reroutes-your-dns-and</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-remote-wipe-becomes-a-weapon-stopping-intun</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-the-attacker-mutes-grafana-your-observabili</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-the-idp-admin-api-is-tier-0-onelogin-backdo</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-the-key-is-the-data-racing-the-kms-destruct</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-the-leak-attacks-your-visitors-webflow-cms</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-the-principal-is-a-token-shopify-admin-api</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-the-waf-vanishes-cloud-armor-policy-tamperi</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-when-your-patch-server-turns-on-you-rogue-wsus-u</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-why-a-password-reset-does-not-stop-a-stolen-refr</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-why-disabling-an-account-does-not-kill-a-live-to</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-why-firestore-security-rules-will-not-stop-a-lea</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-why-revoking-a-sentry-token-does-not-contain-the</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-your-conditional-access-does-not-cover-service-p</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-your-data-factory-is-already-an-exfiltration-eng</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-your-postman-environment-is-a-secret-store-the-p</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-10-your-security-findings-as-the-attacker-s-target</loc></url>
  <url><loc>https://graphlattice.com/blog/2026-06-11-from-firewall-to-hypervisor-how-one-edge-bug-bec</loc></url>
</urlset>
