voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
I tested Norton Antivirus on my PC - and it found a hidden Trojan in 15 minutes
After decades in the cybersecurity space, Norton remains one of the most capable antivirus suites thanks to its powerful security tools.
https://www.zdnet.com/article/norton-antivirus-review/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
Companies embracing AI the most are hiring more people - including entry-level, report finds
A new report reveals growth at companies deemed 'high intensity adopters' of AI.
https://www.zdnet.com/article/high-intensity-adopters-of-ai-hiring-more-entry-level/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
Meta's new AI tool lets others use your Instagram posts for image generation - how to opt out
Any public Instagram account is fair game to be used for AI generation with Meta's new Muse Image.
https://www.zdnet.com/article/meta-muse-ai-feature-instagram-posts-opting-out/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
🚨 EUVD-2026-42716
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: Junos OS Evolved
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause license exhaustion.
Due to an incorrect initialization, a...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42716
🚨 EUVD-2026-42715
📊 Score: 7.1/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS (+1 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 A Missing Release of Memory after Effective Lifetime vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on specific EX Series devices allows an unauthenticated adjacent attacker to cause a...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42715
🚨 EUVD-2026-42714
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS (+3 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 An Improper Validation of Syntactic Correctness of Input vulnerability in the SIP plugin of Juniper Networks Junos OS on MX Series with SPC3 and SRX Series allows an unauthenticated, network-based attacker to cause a D...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42714
🚨 EUVD-2026-42713
📊 Score: 6.8/10 (CVSS v3.1)
📦 Product: Junos OS Evolved, Junos OS, Junos OS Evolved (+5 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 A Return of Pointer Value Outside of Expected Range vulnerability in the fileio library of Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privilged attacker to cause a Denial-of-Serv...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42713
🚨 EUVD-2026-42712
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS (+2 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an unauthenticated, network-based attacker to cause a Deni...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42712
🚨 EUVD-2026-42711
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS (+1 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 An Improper Validation of Specified Quantity in Input vulnerability in the TCP proxy plugin of Juniper Networks Junos OS on MX Series with SPC3, and SRX Series allows an unauthenticated, network-based attacker to cause...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42711
🚨 EUVD-2026-42710
📊 Score: 6.8/10 (CVSS v3.1)
📦 Product: openfga
🏢 Vendor: openfga
📅 Updated: 2026-07-09
📝 OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, OpenFGA's OIDC authenticator skipped JWT audience validation when authn.method was set to oidc, authn.oidc.issuer was configured, and authn.oidc.audience was not set, allowi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42710
🚨 EUVD-2026-42709
📊 Score: 8.2/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an unauthenticated, network-based attacker to cause a...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42709
🚨 EUVD-2026-42708
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS (+3 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 An Out-of-bounds Write vulnerability in the http-gatekeeper (http-gk) of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS).
If an SRX Series d...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42708
🚨 EUVD-2026-42707
📊 Score: 7.1/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS (+1 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on QFX10000 Series allows an unauthenticated, adjacent attacker to cause a Denial...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42707
🚨 EUVD-2026-42706
📊 Score: 7.1/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS (+2 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Serv...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42706
🚨 EUVD-2026-42705
📊 Score: 2.1/10 (CVSS v3.1)
📦 Product: openfga
🏢 Vendor: openfga
📅 Updated: 2026-07-09
📝 OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, when MySQL is being used as the datastore and authorization decisions rely on case-sensitive user strings, the tuple, changelog, and authorization_model identifier columns c...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42705
🚨 EUVD-2026-42704
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: Junos OS Evolved, Junos OS Evolved, Junos OS Evolved (+3 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a limited inf...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42704
🚨 EUVD-2026-42703
📊 Score: 6.8/10 (CVSS v3.1)
📦 Product: Junos OS, Junos OS, Junos OS (+3 more)
🏢 Vendor: Juniper Networks
📅 Updated: 2026-07-09
📝 A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on EX Series allows a local, authenticated attacker to cause a Denial-of-Service (DoS).
On EX2300, EX4000, EX4100, EX4300-MP (Multigigabi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42703
🚨 EUVD-2026-42693
📊 Score: 7.1/10 (CVSS v3.1)
📦 Product: liquid
🏢 Vendor: jg-rp
📅 Updated: 2026-07-09
📝 Python Liquid is a Python engine for the Liquid template language. Prior to 2.2.1, given a malformed {% case %} tag without an associated {% when %} or {% else %} block and no terminating {% endcase %} tag, Python Liquid hangs in an infinite loop at parse time ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42693
🔴 CVE-2026-58122 - Critical (9.1)
Hermes WebUI before 0.51.307 contains an authentication bypass vulnerability that allows unauthenticated remote attackers to circumvent local-origin IP restrictions on onboarding endpoints by supplying a spoofed X-Forwarded-For header with a loopb...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58122/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-58123 - Critical (9.8)
Hermes WebUI before 0.51.788 contains an unauthenticated remote code execution vulnerability that allows remote attackers to execute arbitrary shell commands by accessing the embedded terminal API endpoints without credentials. Attackers can creat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58123/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-58143 - High (8.8)
Cotonti Siena 0.9.26 and earlier contains a cross-site request forgery vulnerability that allows unauthenticated attackers to modify administrator configuration by tricking a logged-in administrator into submitting a forged POST request to the adm...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58143/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Netflix reportedly considers adding always-on channels
Netflix is thinking about adding always-on channels that would stream specific shows and movies, according to The Wall Street Journal. The move sounds like a Netflix version of always-on services like Pluto TV and Tubi,…
https://www.theverge.com/streaming/963733/netflix-always-on-channels-bundles
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
⚔️ RedBSD is a FreeBSD-based distribution loaded with a curated red team and penetration testing toolkit, an XFCE-derived desktop, and VMware-ready images — built for operators who want a fast, stable alternative to Linux-based distros.
A #PuertoRico Government Agency Exposed 1 Million #SocialSecurityNumbers
The government agency that collects property #taxes in Puerto Rico inadvertently exposed the #SocialSecurity numbers of approximately 1 million people, Centro de Periodismo Investigativo and ProPublica learned.
It was the latest #cybersecurity lapse for the Puerto Rico government, which in the past three years has seen technology #breaches interrupt government services, take websites offline and lead to citizens’ personal information being published on the dark web.
#privacy #security #breach #ssn
https://www.propublica.org/article/puerto-rico-crim-data-breach
The Register: Moody Bible Institute breach leaves 2.3M accounts needing salvation, says cyber expert. “Data on more than 2.3 million people associated with Moody Bible Institute (MBI) has been exposed online after the Christian college was targeted by ShinyHunters. The attack was first disclosed by MBI in June, and the extortion crew later leaked the stolen data. Have I Been Pwned has since […]
https://rbfirehose.com/2026/07/09/the-register-moody-bible-institute-breach-leaves-2-3m-accounts-needing-salvation-says-cyber-expert/OpenAI rolls out GPT-5.6 after government greenlight — and announces ‘ChatGPT Work’
About two weeks after OpenAI's GPT-5.6 was caught up in regulatory drama - rolled out only to government-approved organizations during a "limited preview" period - the company has received the Trump administration's gre…
https://www.theverge.com/ai-artificial-intelligence/963464/openai-gpt-5-6-codex-chatgpt-work
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Microsoft’s patch Tuesdays are about to get bigger
Windows 11 updates could soon include fixes for more security issues at once. Microsoft said in a blog post on Thursday that it's now using AI to "identify potential issues earlier," which means "customers will see a hi…
https://www.theverge.com/tech/963307/microsoft-patch-tuesday-ai-security-updates
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Google’s Nest Thermostat has hit its best price of the year
Google’s 2020 Nest Thermostat is $50 off. | Photo by Dan Seifert / The Verge If you’re looking for a relatively affordable way to cut down on cooling costs, Google’s Nest Thermostat can help. It’s packed with smart cont…
https://www.theverge.com/gadgets/963475/google-nest-thermostat-deal-sale
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Governments aren't trying to break VPN encryption. They're trying to detect that you're using a VPN in the first place. That's why the real battle has shifted from encryption to obfuscation.
In this deep dive, I explain:
• Why age verification laws are putting VPNs in the spotlight
• How Deep Packet Inspection (DPI) actually identifies VPN traffic
• Why WireGuard and OpenVPN are fingerprintable
• How Shadowsocks evolved into VLESS + REALITY + XTLS Vision + uTLS
• Why this protocol stack is becoming the gold standard for censorship resistance
If you've ever wondered how modern VPNs stay one step ahead of DPI, this is for you.
#CyberSecurity #VPN #Privacy #Networking #NetSec #Linux #DPI #TLS #InternetFreedom #InfoSec
🚨 EUVD-2026-42661
📊 Score: 8.6/10 (CVSS v3.1)
📦 Product: H616
🏢 Vendor: Allwinner
📅 Updated: 2026-07-09
📝 Allwinner H616 TV Box TV98 has ADB enabled and exposed to the network on production. An attacker could request for ADB authorization and gain root level privileges if the victim allows access.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42661
🚨 EUVD-2026-42660
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: X5000R, X5000R
🏢 Vendor: Totolink
📅 Updated: 2026-07-09
📝 A vulnerability was detected in TOTOLINK X5000R 9.1.0cu.2415_B20250515/9.1.0cu.2350_B20230313. Affected by this vulnerability is the function exportOvpn of the file /web/cgi-bin/cstecgi.cgi of the component OpenVPN Export. The manipulation results in...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42660
🚨 EUVD-2026-42659
📊 Score: 9.9/10 (CVSS v3.1)
📦 Product: Metabase, Metabase, Metabase (+1 more)
🏢 Vendor: metabase
📅 Updated: 2026-07-09
📝 Metabase is an open-source business intelligence and embedded analytics tool. Prior to 1.58.15, 1.59.12, 1.60.6.3, and 1.61.1.4, Metabase instances with an H2 database connection, including the default sample database, deseria...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42659
🚨 EUVD-2026-42658
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: Ghost
🏢 Vendor: TryGhost
📅 Updated: 2026-07-09
📝 Ghost is a Node.js content management system. From 6.27.0 before 6.44.0, Ghost's public donation checkout flow allowed an unauthenticated attacker to control donation checkout metadata and obtain full paid gift memberships for a minimal payment without exposi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42658
🚨 EUVD-2026-42657
📊 Score: 8.8/10 (CVSS v3.1)
📦 Product: coolify
🏢 Vendor: coollabsio
📅 Updated: 2026-07-09
📝 Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.469, Coolify's app/Jobs/ApplicationDeploymentJob.php generate_healthcheck_commands() function directly interpolated the health_check_ho...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42657
🚨 EUVD-2026-42656
📊 Score: 10.0/10 (CVSS v3.1)
📦 Product: ruflo
🏢 Vendor: ruvnet
📅 Updated: 2026-07-09
📝 Ruflo is an agent meta-harness for Claude Code and Codex. Prior to 3.16.3, ruflo's default docker-compose deployment exposed the MCP bridge POST /mcp and POST /mcp/:group endpoints without authentication, allowing an unauthenticated network attacker to invoke ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42656
🚨 EUVD-2026-42655
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: YzmCMS, YzmCMS, YzmCMS (+3 more)
📅 Updated: 2026-07-09
📝 A security vulnerability has been detected in YzmCMS up to 7.5. Affected is the function get_url of the file /yzmphp/yzmphp.php of the component Header Handler. The manipulation of the argument HTTP_HOST leads to cross site scripting. The attack may b...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42655
🚨 EUVD-2026-42654
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: hoppscotch
🏢 Vendor: hoppscotch
📅 Updated: 2026-07-09
📝 Hoppscotch is an open source API development ecosystem. Prior to 2026.6.0, mock server creation in mock-server.service.ts does not persist the isPublic input field while schema.prisma defaults isPublic to true, causing mock servers linked to private co...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42654
🚨 EUVD-2026-42653
📊 Score: 7.2/10 (CVSS v3.1)
📦 Product: hoppscotch
🏢 Vendor: hoppscotch
📅 Updated: 2026-07-09
📝 Hoppscotch is an open source API development ecosystem. Prior to 2026.6.0, the updateInfraConfigs GraphQL mutation in admin/infra.resolver.ts accepts an attacker-controlled MAILER_SMTP_URL value, and validateSMTPUrl in utils.ts permits path, query, or ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42653
🚨 EUVD-2026-42652
📊 Score: n/a
📦 Product: FileMaker Server
🏢 Vendor: Claris
📅 Updated: 2026-07-09
📝 An authenticated administrator may be able to achieve arbitrary code execution on the host system by uploading a malicious file through the Open Source LLM setup feature in the Admin Console. This vulnerability has been addressed in FileMaker Server 26.0.1.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42652
🚨 EUVD-2026-42651
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: json-schema-ref-parser, json-schema-ref-parser, json-schema-ref-parser (+3 more)
🏢 Vendor: apidevtools
📅 Updated: 2026-07-09
📝 A weakness has been identified in apidevtools json-schema-ref-parser up to 15.3.5. This impacts the function Refs.set/Pointer.set in the library lib/pointer.ts. Executing a manipula...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42651
🚨 EUVD-2026-42650
📊 Score: 7.7/10 (CVSS v3.1)
📦 Product: open-webui
🏢 Vendor: open-webui
📅 Updated: 2026-07-09
📝 Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 before 0.10.0, _sanitize_proxy_path in backend/open_webui/routers/terminals.py decoded proxy paths only eight times, allowing a nine-times percent-encoded ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42650
Possible Phishing 🎣
on: ⚠️hxxps[:]//veroplinaserduiner[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a4f38f73b77500008756e6f
#cybersecurity #phishing #infosec #urldna #scam #infosec
Oracle: 963 CVEs tracked, 93% unpatched. 7 CISA KEV exploited in wild. Trust Score: C. High-risk database & cloud vendor. Patch your Oracle systems now. #Oracle #cybersecurity #infosec
GigaWiper: The Post-Compromise Malware Masking Three Destructive Intents https://deafnews.it/en/article/gigawiper-the-post-compromise-malware-masking-three-destructive-intents #Cybersecurity