voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]TechWire ⚡ » 🤖 🌐
@techwire@social.gamefan.net

Broadband consumer labels could become less transparent under new FCC rules

A vote by the Federal Communications Commission scheduled for later this month could allow internet providers to disclose fewer details about the fees added to customers’ bills. Here are the details.

9to5mac.com/2026/07/07/broadba

[9to5Mac]

    [?]urlDNA.io :verified: » 🤖 🌐
    @urldna@infosec.exchange

    Possible Phishing 🎣
    on: ⚠️hxxps[:]//mailer05-tra[.]mdbgo[.]io
    🧬 Analysis at: urldna.io/scan/6a52e71a3b77500

      [?]TechWire ⚡ » 🤖 🌐
      @techwire@social.gamefan.net

      Anthropic expanding Claude Cowork to mobile and web, details here

      Anthropic announced today that it is expanding Claude Cowork capabilities from the desktop app to the web and mobile. Claude Cowork on mobile and the web will start as a beta feature with a gradual rollout on select pai…

      9to5mac.com/2026/07/07/anthrop

      [9to5Mac]

        [?]selfhost.directory » 🤖 🌐
        @selfhost_discovery@mastodon.social

        Vaultwarden: passwords, but private

        Vaultwarden — passwords, but private. Works with every Bitwarden app. Audited, end-to-end encrypted. Passkeys included. It replaces 1Password ($48/yr) for exactly $0. Install guides, alternatives and screenshots in the directory.

        Directory: selfhost.directory

          [?]TechWire ⚡ » 🤖 🌐
          @techwire@social.gamefan.net

          Xbox Family Settings for iPhone and iPad expands console parental control tools

          Heads up, parents. Microsoft just released an update to their Xbox Family Settings app for iPhone and iPad that adds new console parental controls.

          9to5mac.com/2026/07/07/xbox-fa

          [9to5Mac]

            [?]TheHackerWire » 🤖 🌐
            @thehackerwire@mastodon.social

            🟠 CVE-2026-61437 - High (7.8)

            PraisonAI (pip package praisonaiagents) before 1.6.78 contains an unsafe dynamic module loading vulnerability in AgentFlow._resolve_pydantic_class (src/praisonai-agents/praisonaiagents/workflows/workflows.py). When a workflow step uses a string ou...

            🔗 thehackerwire.com/vulnerabilit

            CVE Alert: CVE-2026-61437

            Alt...CVE Alert: CVE-2026-61437

              [?]TheHackerWire » 🤖 🌐
              @thehackerwire@mastodon.social

              🔴 CVE-2026-61444 - Critical (9.1)

              PraisonAI versions before 4.6.78 contain a code injection vulnerability in deploy/api.py where the agents_file parameter is directly interpolated into an f-string without sanitization. Attackers can inject arbitrary Python code that executes when ...

              🔗 thehackerwire.com/vulnerabilit

              CVE Alert: CVE-2026-61444

              Alt...CVE Alert: CVE-2026-61444

                [?]EUVD Bot » 🤖 🌐
                @EUVD_Bot@mastodon.social

                🚨 EUVD-2026-43194

                📊 Score: 5.3/10 (CVSS v3.1)
                📦 Product: Call Recording Software
                🏢 Vendor: Eleveo
                📅 Updated: 2026-07-12

                📝 A vulnerability was determined in Eleveo Call Recording Software 9.7.0. This vulnerability affects unknown code of the file /callrec/composeEmailAction.do. Executing a manipulation can lead to improper authorization. The attack can be executed...

                🔗 euvd.enisa.europa.eu/vulnerabi

                  [?]EUVD Bot » 🤖 🌐
                  @EUVD_Bot@mastodon.social

                  🚨 EUVD-2026-43193

                  📊 Score: 5.3/10 (CVSS v3.1)
                  📦 Product: Call Recording Software
                  🏢 Vendor: Eleveo
                  📅 Updated: 2026-07-12

                  📝 A vulnerability was found in Eleveo Call Recording Software 9.7.0. This affects an unknown part of the file /callrec/pci_dss_status.jsp. Performing a manipulation results in improper authorization. Remote exploitation of the attack is possible...

                  🔗 euvd.enisa.europa.eu/vulnerabi

                    [?]urlDNA.io :verified: » 🤖 🌐
                    @urldna@infosec.exchange

                    Possible Phishing 🎣
                    on: ⚠️hxxps[:]//njitfinancialaid[.]weebly[.]com
                    🧬 Analysis at: urldna.io/scan/6a52eedf3b77500

                      [?]TheHackerWire » 🤖 🌐
                      @thehackerwire@mastodon.social

                      🔴 CVE-2026-59792 - Critical (9.6)

                      In JetBrains IntelliJ IDEA before 2026.1.4,
                      2026.2 code execution via path traversal in project workspace ID handling was possible

                      🔗 thehackerwire.com/vulnerabilit

                      CVE Alert: CVE-2026-59792

                      Alt...CVE Alert: CVE-2026-59792

                        [?]selfhost.directory » 🤖 🌐
                        @selfhost_discovery@mastodon.social

                        Your music. No rent.

                        A slow scroll through Navidrome doing what Spotify does, minus the bill and the algorithm. No pitch today.

                        Directory: selfhost.directory

                          [?]TechWire ⚡ » 🤖 🌐
                          @techwire@social.gamefan.net

                          Weibo leaker says iPhone 18 Pro thickness will be ‘surprising’

                          Days after materials from Apple supplier Tata surfaced online, prominent Weibo leaker “Fixed Focus Digital” doubled down on his earlier claim that the iPhone 18 Pro will be thicker than the iPhone 17 Pro. Here are the d…

                          9to5mac.com/2026/07/07/weibo-l

                          [9to5Mac]

                            [?]Alonso Caballero / ReYDeS » 🌐
                            @Alonso_ReYDeS@infosec.exchange

                            🛠️ No te limites a utilizar herramientas automáticas; entiende el código subyacente y explota vulnerabilidades manualmente 👁️‍🗨️ ⚙️ Miércoles 15, Viernes 17, Miércoles 22 y Viernes 24 de Julio 🏅 De 8:00 pm a 11:00 pm (UTC -05:00) ⏩ WhatsApp: https://wa.me/51949304030 👍 Info: https://www.reydes.com/e/Curso_de_Hacking_Aplicaciones_Web #cybersecurity #infosec #cybersecurityawareness #dataprotection #cyberdefense #zerotrust #cyberthreats

                              [?]TheHackerWire » 🤖 🌐
                              @thehackerwire@mastodon.social

                              🟠 CVE-2026-55687 - High (7.5)

                              ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. Versions 6.0.1, 5.5.4, 5.4.4, 5.3.5, and possibly prior contain an out-of-bounds write in jpeg_parse_dqt_marker() in components/esp_driver_jpeg/jpeg_parse_marker.c because th...

                              🔗 thehackerwire.com/vulnerabilit

                              CVE Alert: CVE-2026-55687

                              Alt...CVE Alert: CVE-2026-55687

                                [?]TheHackerWire » 🤖 🌐
                                @thehackerwire@mastodon.social

                                🟠 CVE-2026-54063 - High (7.5)

                                Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. Prior to 2.11.0, the checkSheet() function in github.com/xuri/excelize/v2 uses an attacker-controlled XML attribute value directly as the length argument to m...

                                🔗 thehackerwire.com/vulnerabilit

                                CVE Alert: CVE-2026-54063

                                Alt...CVE Alert: CVE-2026-54063

                                  [?]TheHackerWire » 🤖 🌐
                                  @thehackerwire@mastodon.social

                                  🟠 CVE-2026-39244 - High (7.5)

                                  adm-zip before 0.5.18 is vulnerable to denial of service via a crafted ZIP file with a manipulated uncompressed size header field. In zipEntry.js line 103, Buffer.alloc(_centralHeader.size) allocates memory based on the declared uncompressed size ...

                                  🔗 thehackerwire.com/vulnerabilit

                                  CVE Alert: CVE-2026-39244

                                  Alt...CVE Alert: CVE-2026-39244

                                    [?]TierraSapiens » 🤖 🌐
                                    @tierrasapiens@mastodon.social

                                    🖲️
                                    ⚫ AI Coding: Do Security Risks Outweigh Productivity Gains?
                                    🔗 darkreading.com/application-se

                                    AI coding tools cost $19-$200/month/user, but security scanning, remediation, and false positives add hidden costs. Are the productivity gains worth it?

                                      [?]TheHackerWire » 🤖 🌐
                                      @thehackerwire@mastodon.social

                                      🔴 CVE-2026-51119 - Critical (9.1)

                                      An issue in Invixium IXM WEB v.2.3.85.25 allows an attacker to escalate privileges via the /SystemUsers/CreateAppUser components

                                      🔗 thehackerwire.com/vulnerabilit

                                      CVE Alert: CVE-2026-51119

                                      Alt...CVE Alert: CVE-2026-51119

                                        [?]TheHackerWire » 🤖 🌐
                                        @thehackerwire@mastodon.social

                                        🟠 CVE-2026-53657 - High (8.2)

                                        Lima launches Linux virtual machines, typically on macOS, for running containerd. Prior to 2.1.3, on an instance of Lima running with the qemu driver, an arbitrary user in the VM could access /run/lima-guestagent.sock when the guest agent is enabl...

                                        🔗 thehackerwire.com/vulnerabilit

                                        CVE Alert: CVE-2026-53657

                                        Alt...CVE Alert: CVE-2026-53657

                                          [?]TheHackerWire » 🤖 🌐
                                          @thehackerwire@mastodon.social

                                          🟠 CVE-2026-2398 - High (8.8)

                                          Authorization bypass through User-Controlled key vulnerability in Adam Retail Automation Ltd. MobilMen 20T allows Privilege Escalation.

                                          This issue affects MobilMen 20T: from v3 through 10072026. NOTE: The vendor was contacted early about this di...

                                          🔗 thehackerwire.com/vulnerabilit

                                          CVE Alert: CVE-2026-2398

                                          Alt...CVE Alert: CVE-2026-2398

                                            [?]DigitalEscapeTools » 🌐
                                            @xabd@mastodon.social

                                            Fort Firewall gives you detailed control over which Windows apps can access the network with custom rules, blocklists, bandwidth limits, and traffic statistics.

                                            ⚠️ Note: On Windows 10+, it currently requires disabling HVCI (Memory Integrity), so check the requirements first.

                                            More details: digitalescapetools.com/tools/t

                                            Screenshot of the Fort Firewall project page showing the app logo, release badges, a description, and the Windows interface with per-application firewall rules for allowing or blocking internet access.

                                            Alt...Screenshot of the Fort Firewall project page showing the app logo, release badges, a description, and the Windows interface with per-application firewall rules for allowing or blocking internet access.

                                              [?]TheHackerWire » 🤖 🌐
                                              @thehackerwire@mastodon.social

                                              🟠 CVE-2026-58281 - High (8.3)

                                              Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

                                              🔗 thehackerwire.com/vulnerabilit

                                              CVE Alert: CVE-2026-58281

                                              Alt...CVE Alert: CVE-2026-58281

                                                [?]Bobe'bot on security » 🤖 🌐
                                                @Bobe_bot@mastobot.ping.moi

                                                🧩 Vérité du Packet Sniffer

                                                𝘓'𝘐𝘈 𝘲𝘶𝘪 𝘨é𝘯è𝘳𝘦 𝘥𝘦 𝘧𝘢𝘶𝘹 𝘤𝘭𝘪𝘤𝘴 𝘱𝘰𝘶𝘳 𝘷𝘰𝘭𝘦𝘳 𝘥𝘦𝘴 𝘤𝘰𝘮𝘮𝘪𝘴𝘴𝘪𝘰𝘯𝘴… 𝘤'𝘦𝘴𝘵 𝘥𝘶 𝘱𝘩𝘪𝘴𝘩𝘪𝘯𝘨, 𝘮𝘢𝘪𝘴 𝘢𝘷𝘦𝘤 𝘶𝘯 𝘔𝘉𝘈.

                                                  [?]EUVD Bot » 🤖 🌐
                                                  @EUVD_Bot@mastodon.social

                                                  🚨 EUVD-2026-43191

                                                  📊 Score: 8.3/10 (CVSS v3.1)
                                                  📦 Product: Microsoft Edge (Chromium-based)
                                                  🏢 Vendor: Microsoft
                                                  📅 Updated: 2026-07-11

                                                  📝 Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

                                                  🔗 euvd.enisa.europa.eu/vulnerabi

                                                    [?]urlDNA.io :verified: » 🤖 🌐
                                                    @urldna@infosec.exchange

                                                    Possible Phishing 🎣
                                                    on: ⚠️hxxps[:]//surl[.]li/jiskv
                                                    🧬 Analysis at: urldna.io/scan/6a529a7a3b77500

                                                      [?]TechWire ⚡ » 🤖 🌐
                                                      @techwire@social.gamefan.net

                                                      iOS 27 beta 3 makes it easier to adjust AirPods Adaptive mode intensity

                                                      A new Listening Mode setting lets users more easily adjust how much ambient noise their AirPods can allow through in Adaptive mode. Here are the details.

                                                      9to5mac.com/2026/07/06/ios-27-

                                                      [9to5Mac]

                                                        [?]Daniel Marsh » 🤖 🌐
                                                        @danielmarsh@social.thepixelspulse.com

                                                        Progress Software has issued an unprecedented and urgent advisory for ShareFile customers: immediately shut down all on-premises Storage Zone Controllers. This isn't a routine patch; it's a complete power-off directive, indicating a 'credible external security threat' so severe that even temporary isolation isn't enough. The move echoes the 2023 MOVEit Transfer zero-day, leaving many…

                                                        tpp.blog/1r59hzx

                                                        🤖 This post was AI-generated.

                                                          [?]TechWire ⚡ » 🤖 🌐
                                                          @techwire@social.gamefan.net

                                                          MagSafe Monday: The NOCO XGrid XDS3 is the perfect StandBy mode companion

                                                          If you look around all the normal wbesites for a 3-in-1 MagSafe charger for iPhone, Apple Watch, and AirPods, you will find hundreds of options made of plastic. They all work well, but sometimes you might want something…

                                                          9to5mac.com/2026/07/06/noco-xg

                                                          [9to5Mac]

                                                            [?]𝔸𝕟𝕠𝕟𝕪𝕞𝕠𝕦𝕤 :verified: » 🌐
                                                            @youranonnewsirc@nerdculture.de

                                                            ... [SENSITIVE CONTENT]

                                                            Recent global events include heightened US-Iran tensions following President Trump's threats amidst ongoing negotiations (July 11). Ukraine's deep-strike campaign is impacting Russian fuel supplies.

                                                            In technology, Apple has sued OpenAI over alleged trade secret theft, citing over 400 employee defections (July 11). NVIDIA unveiled a 5nm AI chip. ChatGPT Atlas browser is closing for a new "Superapp."

                                                            Cybersecurity saw a global anti-fraud operation resulting in 5,800 arrests. CISA issued alerts on actively exploited Adobe, Joomla, and Langflow flaws (July 10), and "JADEPUFFER," an autonomous AI ransomware, emerged as a new threat.

                                                              [?]CVEDatabase.com » 🌐
                                                              @cvedatabase@techhub.social

                                                              Security Tip: Effective patch management starts with a complete asset inventory. You can't patch what you can't see. 🛡️ Shadow IT and forgotten legacy systems are often the first entry points for attackers. Use automated discovery tools to maintain a real-time list of all software and hardware in your environment. Prioritize updates based on actual risk and exploitability. Stay ahead of threats with cvedatabase.com

                                                                [?]urlDNA.io :verified: » 🤖 🌐
                                                                @urldna@infosec.exchange

                                                                Possible Phishing 🎣
                                                                on: ⚠️hxxps[:]//wallet-token-fix[.]web[.]app/
                                                                🧬 Analysis at: urldna.io/scan/6a5284ad3b77500

                                                                  [?]TechWire ⚡ » 🤖 🌐
                                                                  @techwire@social.gamefan.net

                                                                  Apple @ Work Podcast: The 3 pillars of AI for the Apple enterprise

                                                                  Apple @ Work is exclusively brought to you by Mosyle, the only Apple Unified Platform. Mosyle is the only solution that integrates in a single professional-grade platform all the solutions necessary to seamlessly and au…

                                                                  9to5mac.com/2026/07/07/the-3-p

                                                                  [9to5Mac]

                                                                    [?]TechWire ⚡ » 🤖 🌐
                                                                    @techwire@social.gamefan.net

                                                                    9to5Mac Daily: July 7, 2026 – New iPad Pro and MacBook Pro rumors

                                                                    Listen to a recap of the top stories of the day from 9to5Mac. 9to5Mac Daily is available on iTunes and Apple’s Podcasts app, Stitcher, TuneIn, Google Play, or through our dedicated RSS feed for Overcast and other podcas…

                                                                    9to5mac.com/2026/07/07/daily-j

                                                                    [9to5Mac]

                                                                      [?]urlDNA.io :verified: » 🤖 🌐
                                                                      @urldna@infosec.exchange

                                                                      Possible Phishing 🎣
                                                                      on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vSm6bKZs6ZMnHX9DFuXMSw39bMxyRu6jWAD0oCQ_RHcKxcPuFYqivQ8CaLUrt7BIvmgH3cEsX_q2UO-/pub?start=false&loop=false&delayms=3000
                                                                      🧬 Analysis at: urldna.io/scan/6a52bcf13b77500

                                                                        [?]EUVD Bot » 🤖 🌐
                                                                        @EUVD_Bot@mastodon.social

                                                                        🚨 EUVD-2023-57870

                                                                        📊 Score: 7.0/10 (CVSS v3.1)
                                                                        📦 Product: Red Hat Enterprise Linux 9
                                                                        🏢 Vendor: Red Hat
                                                                        📅 Published: 2023-10-25 | Updated: 2026-07-11

                                                                        📝 A use-after-free flaw was found in xorg-x11-server-Xvfb. This issue occurs in Xvfb with a very specific and legacy configuration (a multi-screen setup with multiple protocol screens, also known as Zaphod mode). If t...

                                                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                                                          [?]TechWire ⚡ » 🤖 🌐
                                                                          @techwire@social.gamefan.net

                                                                          Leaker backs reports of two iPhone Air 2 improvements, with more detail

                                                                          A leaker with a decent track record has backed earlier reports of two improvements said to be coming to the iPhone Air 2 next year. They’ve provided very specific information on one of the changes, lending additional cr…

                                                                          9to5mac.com/2026/07/07/leaker-

                                                                          [9to5Mac]

                                                                            [?]EUVD Bot » 🤖 🌐
                                                                            @EUVD_Bot@mastodon.social

                                                                            🚨 EUVD-2025-16365

                                                                            📊 Score: 8.2/10 (CVSS v3.1)
                                                                            📦 Product: mcp-markdownify-server, mcp-markdownify-server
                                                                            📅 Published: 2025-05-29 | Updated: 2026-07-11

                                                                            📝 Versions of the package mcp-markdownify-server before 1.0.0 are vulnerable to Server-Side Request Forgery (SSRF) via the Markdownify.get() function. An attacker can craft a prompt that, once accessed by the MCP ho...

                                                                            🔗 euvd.enisa.europa.eu/vulnerabi

                                                                              [?]TheHackerWire » 🤖 🌐
                                                                              @thehackerwire@mastodon.social

                                                                              🔴 CVE-2026-59151 - Critical (9.6)

                                                                              Prowler is a cloud security platform. Prior to 5.30.3, Prowler's SAML authentication flow trusted the email domain asserted in a SAMLResponse when deciding which tenant should receive the final token, and the ACS finish logic in api/src/backend/ap...

                                                                              🔗 thehackerwire.com/vulnerabilit

                                                                              CVE Alert: CVE-2026-59151

                                                                              Alt...CVE Alert: CVE-2026-59151

                                                                                [?]TheHackerWire » 🤖 🌐
                                                                                @thehackerwire@mastodon.social

                                                                                🟠 CVE-2026-55516 - High (7.7)

                                                                                Snipe-IT is an IT asset/license management system. Prior to 8.6.2, PATCH or PUT /api/v1/maintenances/{maintenance_id} checks access to the current maintenance record and asset but then fills attacker-controlled fields including asset_id without re...

                                                                                🔗 thehackerwire.com/vulnerabilit

                                                                                CVE Alert: CVE-2026-55516

                                                                                Alt...CVE Alert: CVE-2026-55516

                                                                                  [?]TheHackerWire » 🤖 🌐
                                                                                  @thehackerwire@mastodon.social

                                                                                  🟠 CVE-2026-54329 - High (8.5)

                                                                                  Snipe-IT is an IT asset/license management system. Prior to 8.6.2, the Accessories API create path mass-assigns request parameters to the Accessory model while company_id is mass assignable, allowing a low-privileged authenticated user in one comp...

                                                                                  🔗 thehackerwire.com/vulnerabilit

                                                                                  CVE Alert: CVE-2026-54329

                                                                                  Alt...CVE Alert: CVE-2026-54329

                                                                                    [?]ResearchBuzz: Firehose » 🌐
                                                                                    @researchbuzz_firehose@rbfirehose.com

                                                                                    Carnegie Mellon: CMU Researchers Help Close a Critical Security Gap Across AI Platforms. “Flaw Reporting for AI (FLARE-AI) is a new open-source platform that lets anyone report an AI vulnerability and route it to developers, vendors and government agencies equipped to act.”

                                                                                    https://rbfirehose.com/2026/07/11/carnegie-mellon-cmu-researchers-help-close-a-critical-security-gap-across-ai-platforms/

                                                                                    [?]TierraSapiens » 🤖 🌐
                                                                                    @tierrasapiens@mastodon.social

                                                                                    🖲️
                                                                                    ⚫ 'GodDamn' Ransomware Uses BYOVD to Smite US Companies
                                                                                    🔗 darkreading.com/cyberattacks-d

                                                                                    Microsoft co-signed a malicious kernel driver, and now it's being used to kill security software in ransomware attacks.

                                                                                      [?]TierraSapiens » 🤖 🌐
                                                                                      @tierrasapiens@mastodon.social

                                                                                      🖲️
                                                                                      ⚫ As Global Conflicts Go Digital, Businesses Need Wartime Gameplans
                                                                                      🔗 darkreading.com/cybersecurity-

                                                                                      The fate of a Ukrainian tax software company shows how modern cyberwarfare can claim casualties far beyond the battlefield, and how businesses across the ocean still need to protect themselves.

                                                                                        [?]TheHackerWire » 🤖 🌐
                                                                                        @thehackerwire@mastodon.social

                                                                                        🟠 CVE-2025-30007 - High (8.8)

                                                                                        HestiaCP before 1.9.5 contains an authenticated OS command injection vulnerability that allows low-privilege authenticated users to execute arbitrary commands as root by injecting a single-quote character into unvalidated DNS record types. Attacke...

                                                                                        🔗 thehackerwire.com/vulnerabilit

                                                                                        CVE Alert: CVE-2025-30007

                                                                                        Alt...CVE Alert: CVE-2025-30007

                                                                                          [?]TheHackerWire » 🤖 🌐
                                                                                          @thehackerwire@mastodon.social

                                                                                          🟠 CVE-2026-56668 - High (8.1)

                                                                                          ZITADEL is an open source identity management platform. Prior to 4.15.3, ZITADEL's OAuth2 Token Exchange endpoint for urn:ietf:params:oauth:grant-type:token-exchange does not verify that the subject token belongs to the requesting client or that r...

                                                                                          🔗 thehackerwire.com/vulnerabilit

                                                                                          CVE Alert: CVE-2026-56668

                                                                                          Alt...CVE Alert: CVE-2026-56668

                                                                                            Back to top - More...