voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]TechWire ⚡ » 🤖 🌐
@techwire@social.gamefan.net

Grab a blazing-fast dual-interface M.2 SSD enclosure for just $59 on Amazon — Asus' tool-less ROG Strix Aio…

Asus' fancy dual-interface M.2 enclosure is marked down to its lowest price ever on Amazon right now. Not only is it fast, but it also looks clean and has extra on-the-go convenience thanks to its metal hook and strap.

tomshardware.com/pc-components

[Tom's Hardware]

    [?]urlDNA.io :verified: » 🤖 🌐
    @urldna@infosec.exchange

    Possible Phishing 🎣
    on: ⚠️hxxps[:]//barclays-banking[.]net/landing/form/2638b639-b84b-4009-88f5-487e56a74a96
    🧬 Analysis at: urldna.io/scan/6a5343373b77500

      [?]The New Oil » 🤖 🌐
      @thenewoil@mastodon.thenewoil.org

      [?]hackmac » 🌐
      @hackmac@mastodon.social

      Der CCC hat schwerwiegende Sicherheitslücken in Hoymiles-Wechselrichtern (Balkonkraftwerke, kleine PV-Anlagen) veröffentlicht. Die Geräte kommunizieren unverschlüsselt per Funk. Fernsteuerung, Firmware-Manipulation und physische Zerstörung sind ohne Authentifizierung möglich. Hoymiles hat keinen Patch geliefert.

        [?]Malicious Extension Bot » 🤖 🌐
        @malicious_browser_bot@infosec.exchange

        extension Wasabi Green seems malicious. Its badness score is 86/100!

        ```json
        {"id": "cmmmdabkpngbahdopboaojncapjkifhp", "score": 86, "platform": "chrome", "name": "Wasabi Green"}
        ```

          [?]Malicious Extension Bot » 🤖 🌐
          @malicious_browser_bot@infosec.exchange

          extension StreamTube Proxy seems malicious. Its badness score is 86/100!

          ```json
          {"id": "epkcfhiniijndongcpclcfogmbpphfga", "score": 86, "platform": "chrome", "name": "StreamTube Proxy"}
          ```

            [?]Black Cat White Hat Security » 🌐
            @BCWHQuiz@defcon.social

            ISO 9001 is the internationally recognized standard for Quality Management Systems (QMS). It provides a framework for organizations to ensure they consistently deliver products and services that meet customer and regulatory requirements while driving continual improvement.



            Link: blackcatwhitehatsecurity.com

            ISO 9001 is the internationally recognized standard for Quality Management Systems (QMS). It provides a framework for organizations to ensure they consistently deliver products and services that meet customer and regulatory requirements while driving continual improvement.

            Alt...ISO 9001 is the internationally recognized standard for Quality Management Systems (QMS). It provides a framework for organizations to ensure they consistently deliver products and services that meet customer and regulatory requirements while driving continual improvement.

              [?]TechWire ⚡ » 🤖 🌐
              @techwire@social.gamefan.net

              How Philips Hue got the smart home right

              A photo of a lightbulb glowing purple. | Photo: Amelia Holowaty Krales / The Verge The state of the smart home can be frustrating, because it is just so obvious how things ought to work. You should be able to control ev…

              theverge.com/podcast/964515/ph

              [The Verge]

                [?]TechWire ⚡ » 🤖 🌐
                @techwire@social.gamefan.net

                Sega Dreamcast driver fixes appear in Linux 7.2-rc3 — fabled console remains in favor while iconic computing architectures like i486 fall by the wayside

                A set of updates for Sega Dreamcast hardware has been merged into the Linux 7.2-rc3 kernel this weekend.

                tomshardware.com/software/linu

                [Tom's Hardware]

                  [?]urlDNA.io :verified: » 🤖 🌐
                  @urldna@infosec.exchange

                  Possible Phishing 🎣
                  on: ⚠️hxxp[:]//c9e059a1[.]73634c9b2b1a997bd44876e7[.]workers[.]dev/
                  🧬 Analysis at: urldna.io/scan/6a5327263b77500

                    [?]TheHackerWire » 🤖 🌐
                    @thehackerwire@mastodon.social

                    🔴 CVE-2026-56688 - Critical (9.1)

                    Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this ...

                    🔗 thehackerwire.com/vulnerabilit

                    CVE Alert: CVE-2026-56688

                    Alt...CVE Alert: CVE-2026-56688

                      [?]TheHackerWire » 🤖 🌐
                      @thehackerwire@mastodon.social

                      🟠 CVE-2026-56689 - High (7.7)

                      Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnera...

                      🔗 thehackerwire.com/vulnerabilit

                      CVE Alert: CVE-2026-56689

                      Alt...CVE Alert: CVE-2026-56689

                        [?]TheHackerWire » 🤖 🌐
                        @thehackerwire@mastodon.social

                        🟠 CVE-2026-56690 - High (8.5)

                        Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnera...

                        🔗 thehackerwire.com/vulnerabilit

                        CVE Alert: CVE-2026-56690

                        Alt...CVE Alert: CVE-2026-56690

                          [?]deafnews » 🤖 🌐
                          @deafnews@infosec.exchange

                          [?]TechWire ⚡ » 🤖 🌐
                          @techwire@social.gamefan.net

                          One of SteelSeries’ best gaming headsets is over $100 off

                          The SteelSeries Arctis Nova Pro gaming headset. | Photo by Amelia Holowaty Krales SteelSeries has the Arctis Nova Pro Wireless gaming headset on sale for $239.99 (currently between $300 and $350 at other retailers). The…

                          theverge.com/gadgets/964125/st

                          [The Verge]

                            [?]TheHackerWire » 🤖 🌐
                            @thehackerwire@mastodon.social

                            🟠 CVE-2026-15483 - High (8.8)

                            A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12B01. Impacted is the function sub_41EC14 of the file /goform/tools_nslookup of the component ssi. The manipulation of the argument nslookup_target leads to buffer overflow. It i...

                            🔗 thehackerwire.com/vulnerabilit

                            CVE Alert: CVE-2026-15483

                            Alt...CVE Alert: CVE-2026-15483

                              [?]Negative PID SL » 🌐
                              @negativepid@mastodon.social

                              [?]BeeSINT » 🌐
                              @BeeSINT@mastodon.social

                              🎣 Phishing Spotlight

                              www[.]facebookphotospage[.]blogspot[.]com

                              🌐 Stack: GSE

                              🔗 beesint.com/pulse/6d7f0b31-3bd

                                [?]thecybersecguru » 🌐
                                @thecybersecguru@infosec.exchange

                                Everyone talks about end-to-end encryption, but that's only one piece of the privacy puzzle.

                                I compared 14 messaging apps using the LINDDUN privacy threat modeling framework, evaluating them across seven privacy threats:

                                • Linkability
                                • Identifiability
                                • Non-repudiation
                                • Detectability
                                • Data disclosure
                                • Unawareness
                                • Non-compliance

                                The results challenge many common assumptions about apps like WhatsApp, Telegram, Signal, iMessage, Discord, Threema, Session, SimpleX, Briar, Cwtch, Matrix, Wire, and others.

                                If you care about metadata, anonymity, surveillance resistance, or privacy by design, this guide is for you.

                                🔗 thecybersecguru.com/online-pri

                                  [?]Hugo | DevOps | Cybersecurity » 🌐
                                  @hugovalters@mastodon.social

                                  Ashlar-Vellum: 97 CVEs, 93 critical/high, avg CVSS 7.8. 100% unpatched. Trust Score: D. Top weakness: CWE-787 (buffer overflow). CAD tools, serious risk.

                                  valtersit.com/vendors/ashlar-v

                                    [?]TechWire ⚡ » 🤖 🌐
                                    @techwire@social.gamefan.net

                                    I couldn’t have been more wrong about the Fitbit Air — here’s what changed my mind

                                    After three weeks with the Fitbit Air, I'm seriously questioning whether I still need my WHOOP subscription.

                                    androidauthority.com/i-couldnt

                                    [Android Authority]

                                      [?]TechWire ⚡ » 🤖 🌐
                                      @techwire@social.gamefan.net

                                      The TCL NXTPAPER 11 Plus is a budget Android tablet that finally does something different

                                      This budget slate has got more personality than any $250 tablet has a right to.

                                      androidauthority.com/tcl-nxtpa

                                      [Android Authority]

                                        [?]𝔸𝕟𝕠𝕟𝕪𝕞𝕠𝕦𝕤 :verified: » 🌐
                                        @youranonnewsirc@nerdculture.de

                                        ... [SENSITIVE CONTENT]

                                        Here's a concise overview of the latest geopolitical, technology, and cybersecurity news:

                                        Geopolitical tensions escalated with new US strikes on Iranian targets and President Trump's threat of 1,000 missiles. Meanwhile, Armenia and Iran are solidifying a strategic partnership. In technology, Apple has sued OpenAI, alleging trade secret theft and citing over 400 former Apple employees now working at OpenAI. TSMC also announced plans to build three additional advanced chip packaging facilities in Taiwan. On the cybersecurity front, Accenture has reportedly suffered a data breach with 35GB of source code stolen. A compromised `jscrambler` npm package delivered a Rust infostealer during installation, and Russian state-backed hackers exploited NATO IP cameras to spy on military shipments to Ukraine.

                                          [?]CVEDatabase.com » 🌐
                                          @cvedatabase@techhub.social

                                          Security Tip: Audit your transitive dependencies. 🛡️ It’s not enough to monitor the libraries you directly import. Vulnerabilities often hide deep within the dependency tree. Use automated auditing tools in your CI/CD pipeline to flag known CVEs in the entire stack. Reducing your dependency bloat is a key step in hardening your application. Stay updated on the latest threats: cvedatabase.com

                                            [?]urlDNA.io :verified: » 🤖 🌐
                                            @urldna@infosec.exchange

                                            Possible Phishing 🎣
                                            on: ⚠️hxxps[:]//nidnaver12155667gf[.]weebly[.]com
                                            🧬 Analysis at: urldna.io/scan/6a52fce63b77500

                                              [?]TechWire ⚡ » 🤖 🌐
                                              @techwire@social.gamefan.net

                                              3 reasons why I want to ditch Google, and 3 reasons why I can’t

                                              As much as I rage against Google services, the company also has me in a chokehold.

                                              androidauthority.com/reasons-t

                                              [Android Authority]

                                                [?]TechWire ⚡ » 🤖 🌐
                                                @techwire@social.gamefan.net

                                                When is Apple releasing new AirPods?

                                                Apple’s AirPods lineup is stronger than ever, but there are already rumors about what’s coming next. Here’s everything we know so far about when Apple will release new AirPods.

                                                9to5mac.com/2026/07/08/when-is

                                                [9to5Mac]

                                                  [?]TheHackerWire » 🤖 🌐
                                                  @thehackerwire@mastodon.social

                                                  🟠 CVE-2026-56305 - High (8.3)

                                                  Capgo before 12.128.2 contains an authentication bypass vulnerability in the password change endpoint that allows attackers to change user passwords without requiring current password confirmation. Attackers with temporary session access can explo...

                                                  🔗 thehackerwire.com/vulnerabilit

                                                  CVE Alert: CVE-2026-56305

                                                  Alt...CVE Alert: CVE-2026-56305

                                                    [?]EUVD Bot » 🤖 🌐
                                                    @EUVD_Bot@mastodon.social

                                                    🚨 EUVD-2026-43213

                                                    📊 Score: 6.9/10 (CVSS v3.1)
                                                    📦 Product: TOKO-ONLINE-ROTI
                                                    🏢 Vendor: RafyMrX
                                                    📅 Updated: 2026-07-12

                                                    📝 A weakness has been identified in RafyMrX TOKO-ONLINE-ROTI up to ddfe1cd587be0a0b5135d8b6e85cce2ec3aece99. This affects an unknown part. This manipulation causes missing authentication. The attack is possible to be carried out remotely. This product...

                                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                                      [?]EUVD Bot » 🤖 🌐
                                                      @EUVD_Bot@mastodon.social

                                                      🚨 EUVD-2026-43212

                                                      📊 Score: 6.9/10 (CVSS v3.1)
                                                      📦 Product: TOKO-ONLINE-ROTI
                                                      🏢 Vendor: RafyMrX
                                                      📅 Updated: 2026-07-12

                                                      📝 A security flaw has been discovered in RafyMrX TOKO-ONLINE-ROTI up to ddfe1cd587be0a0b5135d8b6e85cce2ec3aece99. Affected by this issue is some unknown functionality of the file proses/add.php. The manipulation of the argument kode_produk/kd_cs resul...

                                                      🔗 euvd.enisa.europa.eu/vulnerabi

                                                        [?]urlDNA.io :verified: » 🤖 🌐
                                                        @urldna@infosec.exchange

                                                        Possible Phishing 🎣
                                                        on: ⚠️hxxps[:]//ssos-ehess[.]weebly[.]com/
                                                        🧬 Analysis at: urldna.io/scan/6a52c4ae3b77500

                                                          [?]TheHackerWire » 🤖 🌐
                                                          @thehackerwire@mastodon.social

                                                          🟠 CVE-2026-29519 - High (8.2)

                                                          Lucee CFML Server versions across the 5.3.x, 6.1.x, 6.2.x, and 7.0.x release lines contain a reflected cross-site scripting vulnerability in URL path parsing that allows unauthenticated remote attackers to execute arbitrary JavaScript in a victim'...

                                                          🔗 thehackerwire.com/vulnerabilit

                                                          CVE Alert: CVE-2026-29519

                                                          Alt...CVE Alert: CVE-2026-29519

                                                            [?]TheHackerWire » 🤖 🌐
                                                            @thehackerwire@mastodon.social

                                                            🟠 CVE-2026-38057 - High (8.1)

                                                            The iDirect iQ200 does not validate CSRF tokens on state-changing API endpoints after authentication. The /api/reboot endpoint accepts POST requests authenticated solely by a session cookie that lacks the SameSite attribute. A remote attacker can ...

                                                            🔗 thehackerwire.com/vulnerabilit

                                                            CVE Alert: CVE-2026-38057

                                                            Alt...CVE Alert: CVE-2026-38057

                                                              [?]BeyondMachines :verified: » 🤖 🌐
                                                              @beyondmachines1@infosec.exchange

                                                              CISA and JoomliC Report Critical iCagenda Zero-Day Exploited in the Wild

                                                              JoomliC fixed a critical remote code execution vulnerability in the iCagenda Joomla extension that attackers are actively using to compromise servers. The flaw allows unauthenticated file uploads on Joomla 6 sites and unauthorized event submissions across all versions.

                                                              **If your Joomla site uses the iCagenda extension (versions 3.2.1–3.9.14 or 4.x up to 4.0.7), update immediately to 4.0.8 or 3.9.15. Simply unpublishing or hiding the component will NOT protect you, since attackers are actively exploiting it without needing to log in. After updating, check the `images/icagenda/frontend/attachments/` folder for suspicious PHP files. If you find any, your site was likely already compromised and needs a full cleanup.**

                                                              beyondmachines.net/event_detai

                                                                [?]TechWire ⚡ » 🤖 🌐
                                                                @techwire@social.gamefan.net

                                                                Stop giving away your email address — use these 5 email alias services instead

                                                                A simple privacy upgrade to protect your personal email.

                                                                androidauthority.com/best-emai

                                                                [Android Authority]

                                                                  [?]TierraSapiens » 🤖 🌐
                                                                  @tierrasapiens@mastodon.social

                                                                  🖲️
                                                                  ⚫ European Organizations Have a Collaboration Security Confidence Gap
                                                                  🔗 darkreading.com/cybersecurity-

                                                                  A new survey shows security leaders have an inflated sense of safety regarding their collaboration tools and platforms.

                                                                    [?]TheHackerWire » 🤖 🌐
                                                                    @thehackerwire@mastodon.social

                                                                    🟠 CVE-2026-59793 - High (8.8)

                                                                    In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via the Perforce VCS integration

                                                                    🔗 thehackerwire.com/vulnerabilit

                                                                    CVE Alert: CVE-2026-59793

                                                                    Alt...CVE Alert: CVE-2026-59793

                                                                      [?]TheHackerWire » 🤖 🌐
                                                                      @thehackerwire@mastodon.social

                                                                      🟠 CVE-2026-59795 - High (8.1)

                                                                      In JetBrains TeamCity before 2026.1.2 stored XSS via unauthenticated agent registration was possible

                                                                      🔗 thehackerwire.com/vulnerabilit

                                                                      CVE Alert: CVE-2026-59795

                                                                      Alt...CVE Alert: CVE-2026-59795

                                                                        [?]TheHackerWire » 🤖 🌐
                                                                        @thehackerwire@mastodon.social

                                                                        🟠 CVE-2026-59796 - High (8.1)

                                                                        In JetBrains TeamCity before 2026.1.2 pipeline modification was possible due to improper permission checks

                                                                        🔗 thehackerwire.com/vulnerabilit

                                                                        CVE Alert: CVE-2026-59796

                                                                        Alt...CVE Alert: CVE-2026-59796

                                                                          [?]selfhost.directory » 🤖 🌐
                                                                          @selfhost_discovery@mastodon.social

                                                                          A decade of rent, wrapped

                                                                          Ten years of Spotify is $1,560. Netflix $2,400. Google One $1,000. The self-hosted decade costs $0 — and you end it owning everything. Count-up numbers you can feel.

                                                                          Directory: selfhost.directory

                                                                            Back to top - More...