voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]TechWire ⚡ » 🤖 🌐
@techwire@social.gamefan.net

Apple loses major antitrust appeal in Europe, remains a ‘gatekeeper’

Apple has today lost a major antitrust appeal in Europe, with all three of its claims being rejected. The company has long been fighting its requirement to comply with the EU’s Digital Markets Act (DMA), but a court has…

9to5mac.com/2026/07/08/apple-l

[9to5Mac]

    [?]TechWire ⚡ » 🤖 🌐
    @techwire@social.gamefan.net

    No delay to iPhone Ultra, says supply-chain report

    More supply chain sources have rejected claims of delays to iPhone Ultra production, reporting that it appears to be on track for a September release. However, the latest report doesn’t rule out limited initial supplies…

    9to5mac.com/2026/07/08/no-dela

    [9to5Mac]

      [?]urlDNA.io :verified: » 🤖 🌐
      @urldna@infosec.exchange

      Possible Phishing 🎣
      on: ⚠️hxxps[:]//surl[.]li/xenipe
      🧬 Analysis at: urldna.io/scan/6a52c4a43b77500

        [?]TechWire ⚡ » 🤖 🌐
        @techwire@social.gamefan.net

        Apple Watch has a useful hidden feature for tracking a great healthy habit

        My new favorite Apple Watch and Apple Health metric is one that has been quietly working in the background for years. Specifically, it’s a bit of a hidden Apple Watch feature for tracking a great healthy habit: Time in …

        9to5mac.com/2026/07/08/apple-w

        [9to5Mac]

          [?]TechWire ⚡ » 🤖 🌐
          @techwire@social.gamefan.net

          I’m disappointed Apple will charge for AI security camera features in the Home app

          One of the things tucked away in the small print of macOS 27 beta 3 is the news that you’ll need a 2TB iCloud+ subscription in order to use the new AI features for home security cameras in the Apple Home app. While some…

          9to5mac.com/2026/07/08/im-disa

          [9to5Mac]

            [?]TheHackerWire » 🤖 🌐
            @thehackerwire@mastodon.social

            🟠 CVE-2026-15480 - High (8.8)

            A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. This affects the function start_httpd of the file /sbin/rc of the component Web Service. Such manipulation of the argument device_name leads to stack-based buffer overflow. The a...

            🔗 thehackerwire.com/vulnerabilit

            CVE Alert: CVE-2026-15480

            Alt...CVE Alert: CVE-2026-15480

              [?]urlDNA.io :verified: » 🤖 🌐
              @urldna@infosec.exchange

              Possible Phishing 🎣
              on: ⚠️hxxps[:]//mailbocxhelpservice[.]weebly[.]com
              🧬 Analysis at: urldna.io/scan/6a53191c3b77500

                [?]EUVD Bot » 🤖 🌐
                @EUVD_Bot@mastodon.social

                🚨 EUVD-2026-43203

                📊 Score: 8.7/10 (CVSS v3.1)
                📦 Product: TEW-635BRM
                🏢 Vendor: TRENDnet
                📅 Updated: 2026-07-12

                📝 A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00.03. This vulnerability affects the function ipoa_test of the file /sbin/rc of the component IPoA WAN Connection Setup. Performing a manipulation of the argument ipoa_ipaddr results in ...

                🔗 euvd.enisa.europa.eu/vulnerabi

                  [?]EUVD Bot » 🤖 🌐
                  @EUVD_Bot@mastodon.social

                  🚨 EUVD-2026-43202

                  📊 Score: 8.7/10 (CVSS v3.1)
                  📦 Product: TEW-635BRM
                  🏢 Vendor: TRENDnet
                  📅 Updated: 2026-07-12

                  📝 A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. This affects the function start_httpd of the file /sbin/rc of the component Web Service. Such manipulation of the argument device_name leads to stack-based buffer overflow. The attack c...

                  🔗 euvd.enisa.europa.eu/vulnerabi

                    [?]EUVD Bot » 🤖 🌐
                    @EUVD_Bot@mastodon.social

                    🚨 EUVD-2026-43201

                    📊 Score: 6.9/10 (CVSS v3.1)
                    📦 Product: NX15
                    🏢 Vendor: H3C
                    📅 Updated: 2026-07-12

                    📝 A vulnerability was found in H3C NX15 V100R017. Affected by this vulnerability is the function change_passwd of the file /api/login/modify of the component Administrator Password Modification Endpoint. The manipulation of the argument newPass results in weak passwo...

                    🔗 euvd.enisa.europa.eu/vulnerabi

                      [?]TheHackerWire » 🤖 🌐
                      @thehackerwire@mastodon.social

                      🟠 CVE-2026-15481 - High (8.8)

                      A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00.03. This vulnerability affects the function ipoa_test of the file /sbin/rc of the component IPoA WAN Connection Setup. Performing a manipulation of the argument ipoa_ipaddr resu...

                      🔗 thehackerwire.com/vulnerabilit

                      CVE Alert: CVE-2026-15481

                      Alt...CVE Alert: CVE-2026-15481

                        [?]TheHackerWire » 🤖 🌐
                        @thehackerwire@mastodon.social

                        🔴 CVE-2026-56765 - Critical (9.8)

                        Vikunja before 2.2.1 contains an authorization flaw where the LinkSharing.ReadAll endpoint exposes share hashes to users with read access, enabling permission escalation to admin-level shares. The GetTaskAttachment endpoint performs permission che...

                        🔗 thehackerwire.com/vulnerabilit

                        CVE Alert: CVE-2026-56765

                        Alt...CVE Alert: CVE-2026-56765

                          [?]TheHackerWire » 🤖 🌐
                          @thehackerwire@mastodon.social

                          🟠 CVE-2026-56261 - High (8.6)

                          Crawl4AI before 0.8.7 contains a server-side request forgery (SSRF) vulnerability in the Docker API server's /crawl/job and /llm/job endpoints, which accept webhook URLs without destination validation. An attacker can supply webhook URLs pointing ...

                          🔗 thehackerwire.com/vulnerabilit

                          CVE Alert: CVE-2026-56261

                          Alt...CVE Alert: CVE-2026-56261

                            [?]TheHackerWire » 🤖 🌐
                            @thehackerwire@mastodon.social

                            🟠 CVE-2026-56279 - High (7.5)

                            Capgo before 12.128.2 contains an information disclosure vulnerability in the get_orgs_v7(userid) RPC function that remains publicly invokable despite intended private access controls. Unauthenticated attackers can supply arbitrary user UUIDs to r...

                            🔗 thehackerwire.com/vulnerabilit

                            CVE Alert: CVE-2026-56279

                            Alt...CVE Alert: CVE-2026-56279

                              [?]Hugo | DevOps | Cybersecurity » 🌐
                              @hugovalters@mastodon.social

                              ABB: 97 CVEs, avg CVSS 7.59, max 10. 95% unpatched, Trust Score: D. Critical infrastructure at risk.

                              valtersit.com/vendors/abb/

                                [?]OTX Bot » 🤖 🌐
                                @techbot@social.raytec.co

                                Compromised Jscrambler npm Packages deploys Rust-Based Infostealer after Installation

                                Pulse ID: 6a5337c1a29930d925c66407
                                Pulse Link: otx.alienvault.com/pulse/6a533
                                Pulse Author: cryptocti
                                Created: 2026-07-12 06:44:17

                                Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                  [?]TechWire ⚡ » 🤖 🌐
                                  @techwire@social.gamefan.net

                                  PSA: macOS 28 will drop support for encrypted Mac OS Extended volumes

                                  Apple has announced that starting with macOS 28, users will need to decrypt or reformat certain storage volumes to keep using them. Here are the details.

                                  9to5mac.com/2026/07/08/psa-mac

                                  [9to5Mac]

                                    [?]selfhost.directory » 🤖 🌐
                                    @selfhost_discovery@mastodon.social

                                    Spotify vs Navidrome — the bill decides

                                    Side by side: $156/yr with ads and their algorithm, or $0 with your own library and rules. Navidrome is the music server Spotify hopes you never find.

                                    Directory: selfhost.directory

                                      [?]TheHackerWire » 🤖 🌐
                                      @thehackerwire@mastodon.social

                                      🟠 CVE-2025-70796 - High (7.5)

                                      An unauthenticated path traversal vulnerability exists in the web management interface of WTI (Wireless Technology, Inc.) version 3.5.0.r 2024/05/24 00:00:00. An unauthenticated attacker can craft malicious HTTP requests containing traversal seque...

                                      🔗 thehackerwire.com/vulnerabilit

                                      CVE Alert: CVE-2025-70796

                                      Alt...CVE Alert: CVE-2025-70796

                                        [?]TheHackerWire » 🤖 🌐
                                        @thehackerwire@mastodon.social

                                        🔴 CVE-2026-15143 - Critical (9.3)

                                        A flaw was found in the file_type content detector of guardrails-detectors. This vulnerability allows a remote attacker to supply an arbitrary XML Schema Definition (XSD) string, which is processed without proper restrictions. This can lead to ser...

                                        🔗 thehackerwire.com/vulnerabilit

                                        CVE Alert: CVE-2026-15143

                                        Alt...CVE Alert: CVE-2026-15143

                                          [?]TheHackerWire » 🤖 🌐
                                          @thehackerwire@mastodon.social

                                          🟠 CVE-2026-61434 - High (8.8)

                                          PraisonAI versions before 4.6.78 contain an allowlist bypass vulnerability in shell command execution that allows attackers to execute restricted commands via find's built-in -exec, -execdir, and -delete actions. Attackers can craft find commands ...

                                          🔗 thehackerwire.com/vulnerabilit

                                          CVE Alert: CVE-2026-61434

                                          Alt...CVE Alert: CVE-2026-61434

                                            [?]TechWire ⚡ » 🤖 🌐
                                            @techwire@social.gamefan.net

                                            Deals: M5 Pro MacBook Pro $449 off, MacBook Air $250 off, Ultra 3, iPhone 17 Pro Max $449 off, more

                                            Joining the ongoing AirPods 4 deal at nearly 25% off and a series of Apple Watch Ultra 3 models at nearly $100 off, this morning we spotted this 2TB M5 Pro MacBook Pro at $449 off the new list price and the base model 1…

                                            9to5mac.com/2026/07/07/deals-m

                                            [9to5Mac]

                                              [?]TechWire ⚡ » 🤖 🌐
                                              @techwire@social.gamefan.net

                                              AirPods Max condensation lawsuit significantly narrowed by judge

                                              Brooklyn federal judge Orelia E. Merchant has dismissed most claims in a proposed class-action lawsuit alleging that Apple’s AirPods Max suffer from a condensation defect. Here are the details.

                                              9to5mac.com/2026/07/07/airpods

                                              [9to5Mac]

                                                [?]urlDNA.io :verified: » 🤖 🌐
                                                @urldna@infosec.exchange

                                                Possible Phishing 🎣
                                                on: ⚠️hxxps[:]//us-ledgger-live[.]framer[.]media/live-enus
                                                🧬 Analysis at: urldna.io/scan/6a527e5c3b77500

                                                  [?]deafnews » 🤖 🌐
                                                  @deafnews@infosec.exchange

                                                  [?]TechWire ⚡ » 🤖 🌐
                                                  @techwire@social.gamefan.net

                                                  Pocket Casts update brings three new features, including CarPlay chapter artwork

                                                  There’s a new version of Pocket Casts out for podcast listeners today, and it includes three new features. One in particular will be of interest to drivers with CarPlay.

                                                  9to5mac.com/2026/07/07/pocket-

                                                  [9to5Mac]

                                                    [?]TechWire ⚡ » 🤖 🌐
                                                    @techwire@social.gamefan.net

                                                    Broadband consumer labels could become less transparent under new FCC rules

                                                    A vote by the Federal Communications Commission scheduled for later this month could allow internet providers to disclose fewer details about the fees added to customers’ bills. Here are the details.

                                                    9to5mac.com/2026/07/07/broadba

                                                    [9to5Mac]

                                                      [?]urlDNA.io :verified: » 🤖 🌐
                                                      @urldna@infosec.exchange

                                                      Possible Phishing 🎣
                                                      on: ⚠️hxxps[:]//mailer05-tra[.]mdbgo[.]io
                                                      🧬 Analysis at: urldna.io/scan/6a52e71a3b77500

                                                        [?]TechWire ⚡ » 🤖 🌐
                                                        @techwire@social.gamefan.net

                                                        Anthropic expanding Claude Cowork to mobile and web, details here

                                                        Anthropic announced today that it is expanding Claude Cowork capabilities from the desktop app to the web and mobile. Claude Cowork on mobile and the web will start as a beta feature with a gradual rollout on select pai…

                                                        9to5mac.com/2026/07/07/anthrop

                                                        [9to5Mac]

                                                          [?]selfhost.directory » 🤖 🌐
                                                          @selfhost_discovery@mastodon.social

                                                          Vaultwarden: passwords, but private

                                                          Vaultwarden — passwords, but private. Works with every Bitwarden app. Audited, end-to-end encrypted. Passkeys included. It replaces 1Password ($48/yr) for exactly $0. Install guides, alternatives and screenshots in the directory.

                                                          Directory: selfhost.directory

                                                            [?]TechWire ⚡ » 🤖 🌐
                                                            @techwire@social.gamefan.net

                                                            Xbox Family Settings for iPhone and iPad expands console parental control tools

                                                            Heads up, parents. Microsoft just released an update to their Xbox Family Settings app for iPhone and iPad that adds new console parental controls.

                                                            9to5mac.com/2026/07/07/xbox-fa

                                                            [9to5Mac]

                                                              [?]TheHackerWire » 🤖 🌐
                                                              @thehackerwire@mastodon.social

                                                              🟠 CVE-2026-61437 - High (7.8)

                                                              PraisonAI (pip package praisonaiagents) before 1.6.78 contains an unsafe dynamic module loading vulnerability in AgentFlow._resolve_pydantic_class (src/praisonai-agents/praisonaiagents/workflows/workflows.py). When a workflow step uses a string ou...

                                                              🔗 thehackerwire.com/vulnerabilit

                                                              CVE Alert: CVE-2026-61437

                                                              Alt...CVE Alert: CVE-2026-61437

                                                                [?]TheHackerWire » 🤖 🌐
                                                                @thehackerwire@mastodon.social

                                                                🔴 CVE-2026-61444 - Critical (9.1)

                                                                PraisonAI versions before 4.6.78 contain a code injection vulnerability in deploy/api.py where the agents_file parameter is directly interpolated into an f-string without sanitization. Attackers can inject arbitrary Python code that executes when ...

                                                                🔗 thehackerwire.com/vulnerabilit

                                                                CVE Alert: CVE-2026-61444

                                                                Alt...CVE Alert: CVE-2026-61444

                                                                  [?]EUVD Bot » 🤖 🌐
                                                                  @EUVD_Bot@mastodon.social

                                                                  🚨 EUVD-2026-43194

                                                                  📊 Score: 5.3/10 (CVSS v3.1)
                                                                  📦 Product: Call Recording Software
                                                                  🏢 Vendor: Eleveo
                                                                  📅 Updated: 2026-07-12

                                                                  📝 A vulnerability was determined in Eleveo Call Recording Software 9.7.0. This vulnerability affects unknown code of the file /callrec/composeEmailAction.do. Executing a manipulation can lead to improper authorization. The attack can be executed...

                                                                  🔗 euvd.enisa.europa.eu/vulnerabi

                                                                    [?]EUVD Bot » 🤖 🌐
                                                                    @EUVD_Bot@mastodon.social

                                                                    🚨 EUVD-2026-43193

                                                                    📊 Score: 5.3/10 (CVSS v3.1)
                                                                    📦 Product: Call Recording Software
                                                                    🏢 Vendor: Eleveo
                                                                    📅 Updated: 2026-07-12

                                                                    📝 A vulnerability was found in Eleveo Call Recording Software 9.7.0. This affects an unknown part of the file /callrec/pci_dss_status.jsp. Performing a manipulation results in improper authorization. Remote exploitation of the attack is possible...

                                                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                                                      [?]urlDNA.io :verified: » 🤖 🌐
                                                                      @urldna@infosec.exchange

                                                                      Possible Phishing 🎣
                                                                      on: ⚠️hxxps[:]//njitfinancialaid[.]weebly[.]com
                                                                      🧬 Analysis at: urldna.io/scan/6a52eedf3b77500

                                                                        [?]TheHackerWire » 🤖 🌐
                                                                        @thehackerwire@mastodon.social

                                                                        🔴 CVE-2026-59792 - Critical (9.6)

                                                                        In JetBrains IntelliJ IDEA before 2026.1.4,
                                                                        2026.2 code execution via path traversal in project workspace ID handling was possible

                                                                        🔗 thehackerwire.com/vulnerabilit

                                                                        CVE Alert: CVE-2026-59792

                                                                        Alt...CVE Alert: CVE-2026-59792

                                                                          [?]selfhost.directory » 🤖 🌐
                                                                          @selfhost_discovery@mastodon.social

                                                                          Your music. No rent.

                                                                          A slow scroll through Navidrome doing what Spotify does, minus the bill and the algorithm. No pitch today.

                                                                          Directory: selfhost.directory

                                                                            [?]TechWire ⚡ » 🤖 🌐
                                                                            @techwire@social.gamefan.net

                                                                            Weibo leaker says iPhone 18 Pro thickness will be ‘surprising’

                                                                            Days after materials from Apple supplier Tata surfaced online, prominent Weibo leaker “Fixed Focus Digital” doubled down on his earlier claim that the iPhone 18 Pro will be thicker than the iPhone 17 Pro. Here are the d…

                                                                            9to5mac.com/2026/07/07/weibo-l

                                                                            [9to5Mac]

                                                                              [?]Alonso Caballero / ReYDeS » 🌐
                                                                              @Alonso_ReYDeS@infosec.exchange

                                                                              🛠️ No te limites a utilizar herramientas automáticas; entiende el código subyacente y explota vulnerabilidades manualmente 👁️‍🗨️ ⚙️ Miércoles 15, Viernes 17, Miércoles 22 y Viernes 24 de Julio 🏅 De 8:00 pm a 11:00 pm (UTC -05:00) ⏩ WhatsApp: https://wa.me/51949304030 👍 Info: https://www.reydes.com/e/Curso_de_Hacking_Aplicaciones_Web #cybersecurity #infosec #cybersecurityawareness #dataprotection #cyberdefense #zerotrust #cyberthreats

                                                                                [?]TheHackerWire » 🤖 🌐
                                                                                @thehackerwire@mastodon.social

                                                                                🟠 CVE-2026-55687 - High (7.5)

                                                                                ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. Versions 6.0.1, 5.5.4, 5.4.4, 5.3.5, and possibly prior contain an out-of-bounds write in jpeg_parse_dqt_marker() in components/esp_driver_jpeg/jpeg_parse_marker.c because th...

                                                                                🔗 thehackerwire.com/vulnerabilit

                                                                                CVE Alert: CVE-2026-55687

                                                                                Alt...CVE Alert: CVE-2026-55687

                                                                                  [?]TheHackerWire » 🤖 🌐
                                                                                  @thehackerwire@mastodon.social

                                                                                  🟠 CVE-2026-54063 - High (7.5)

                                                                                  Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. Prior to 2.11.0, the checkSheet() function in github.com/xuri/excelize/v2 uses an attacker-controlled XML attribute value directly as the length argument to m...

                                                                                  🔗 thehackerwire.com/vulnerabilit

                                                                                  CVE Alert: CVE-2026-54063

                                                                                  Alt...CVE Alert: CVE-2026-54063

                                                                                    [?]TheHackerWire » 🤖 🌐
                                                                                    @thehackerwire@mastodon.social

                                                                                    🟠 CVE-2026-39244 - High (7.5)

                                                                                    adm-zip before 0.5.18 is vulnerable to denial of service via a crafted ZIP file with a manipulated uncompressed size header field. In zipEntry.js line 103, Buffer.alloc(_centralHeader.size) allocates memory based on the declared uncompressed size ...

                                                                                    🔗 thehackerwire.com/vulnerabilit

                                                                                    CVE Alert: CVE-2026-39244

                                                                                    Alt...CVE Alert: CVE-2026-39244

                                                                                      [?]TierraSapiens » 🤖 🌐
                                                                                      @tierrasapiens@mastodon.social

                                                                                      🖲️
                                                                                      ⚫ AI Coding: Do Security Risks Outweigh Productivity Gains?
                                                                                      🔗 darkreading.com/application-se

                                                                                      AI coding tools cost $19-$200/month/user, but security scanning, remediation, and false positives add hidden costs. Are the productivity gains worth it?

                                                                                        [?]TheHackerWire » 🤖 🌐
                                                                                        @thehackerwire@mastodon.social

                                                                                        🔴 CVE-2026-51119 - Critical (9.1)

                                                                                        An issue in Invixium IXM WEB v.2.3.85.25 allows an attacker to escalate privileges via the /SystemUsers/CreateAppUser components

                                                                                        🔗 thehackerwire.com/vulnerabilit

                                                                                        CVE Alert: CVE-2026-51119

                                                                                        Alt...CVE Alert: CVE-2026-51119

                                                                                          [?]TheHackerWire » 🤖 🌐
                                                                                          @thehackerwire@mastodon.social

                                                                                          🟠 CVE-2026-53657 - High (8.2)

                                                                                          Lima launches Linux virtual machines, typically on macOS, for running containerd. Prior to 2.1.3, on an instance of Lima running with the qemu driver, an arbitrary user in the VM could access /run/lima-guestagent.sock when the guest agent is enabl...

                                                                                          🔗 thehackerwire.com/vulnerabilit

                                                                                          CVE Alert: CVE-2026-53657

                                                                                          Alt...CVE Alert: CVE-2026-53657

                                                                                            [?]TheHackerWire » 🤖 🌐
                                                                                            @thehackerwire@mastodon.social

                                                                                            🟠 CVE-2026-2398 - High (8.8)

                                                                                            Authorization bypass through User-Controlled key vulnerability in Adam Retail Automation Ltd. MobilMen 20T allows Privilege Escalation.

                                                                                            This issue affects MobilMen 20T: from v3 through 10072026. NOTE: The vendor was contacted early about this di...

                                                                                            🔗 thehackerwire.com/vulnerabilit

                                                                                            CVE Alert: CVE-2026-2398

                                                                                            Alt...CVE Alert: CVE-2026-2398

                                                                                              Back to top - More...