voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]BeyondMachines :verified: » 🤖 🌐
@beyondmachines1@infosec.exchange

Erick K. Perroud, DDS Reports Network Server Breach Affecting Over 7,000 Patients

Erick K. Perroud, DDS, a Michigan dental practice, reports a data breach that compromised the personal and medical data of 7,692 individuals. The breach was disclosed to federal regulators in June 2026. The practice is currently investigating the extent of the unauthorized access.

****

beyondmachines.net/event_detai

    [?]deafnews » 🤖 🌐
    @deafnews@infosec.exchange

    AssuranceAmerica: 7 Million Driver's Licenses Exposed, No Credit Monitoring Offered deafnews.it/en/article/assuran

      [?]TechWire ⚡ » 🤖 🌐
      @techwire@social.gamefan.net

      Samsung admits a Good Lock module is making a useful feature disappear

      A fix is coming, but maybe not soon.

      androidauthority.com/samsung-r

      [Android Authority]

        [?]linuxwebzine » 🌐
        @linuxwebzine@mstdn.ro

        🦅🔒 Wireshark 4.6.7 a fost lansat: Analizorul de pachete repară 12 vulnerabilități de securitate critice

        Wireshark, cel mai popular și utilizat analizor de protocoale de rețea din lume, a primit o actualizare critică de securitate prin lansarea versiunii Wireshark 4.6.7. Această ediție este una de maximă importanță pentru administratorii de rețea, inginerii DevOps și experții în securitate cibernetică, deoarece adresează și repară nu mai puțin de 12 vulnerabilități care puteau pune în pericol stabilitatea și siguranța sistemelor.

        Fiind un instrument care procesează pachete de date brute direct din rețea sau din fișiere de captură (pcap), Wireshark este o țintă preferată pentru atacatori, care pot folosi pachete special modificate pentru a prăbuși aplicația sau pentru a executa cod malițios.

        Iată detaliile esențiale despre această lansare și de ce upgrade-ul este obligatoriu:

        🔹 Repararea vulnerabilităților de tip DoS (Denial of Service):
        Majoritatea celor 12 breșe de securitate rezolvate în versiunea 4.6.7 erau legate de erori de tip dissector (modulele interne care decodifică protocoalele specifice). Atacatorii puteau trimite pachete de rețea malițioase (sau puteau injecta date compromise într-un fișier de captură) pentru a declanșa bucle infinite, scurgeri de memorie (memory leaks) sau prăbușiri instantanee ale aplicației (crashes), blocând monitorizarea traficului.

        🔹 Protocoalele afectate și curățate:
        Erorile au fost identificate și corectate într-o gamă largă de dissectoare de protocoale, de la cele utilizate în mediul enterprise până la cele din infrastructurile industriale și de telecomunicații. Printre protocoalele care au primit patch-uri critice se numără:

        GQUIC, HTTP/2 și TLS (pentru traficul web securizat).

        Protocoale de comunicații mobile și industriale specifice.

        🔹 Remedieri de bug-uri și îmbunătățirea stabilității:
        Pe lângă rezolvarea problemelor stricte de securitate, Wireshark 4.6.7 aduce și o serie de corecții pentru bug-uri raportate de comunitate. Au fost optimizate funcțiile de filtrare a pachetelor (Display Filters), a fost îmbunătățită acuratețea randării grafice a fluxurilor de date și s-a asigurat o performanță mai stabilă la analizarea fișierelor de captură de mari dimensiuni (de ordinul gigabyților).

        🔹 Recomandare fermă de upgrade:
        Deoarece Wireshark rulează adesea cu privilegii ridicate pe sistem (pentru a putea accesa direct plăcile de rețea în modul promiscuu), expunerea la aceste vulnerabilități reprezintă un risc major. Utilizatorilor de pe toate platformele (Linux, Windows, macOS) li se recomandă să facă actualizarea la versiunea 4.6.7 cât mai curând posibil prin intermediul managerelor de pachete oficiale sau descărcând kitul direct de pe site-ul oficial.

          [?]TheHackerWire » 🤖 🌐
          @thehackerwire@mastodon.social

          🔴 CVE-2026-47646 - Critical (9.3)

          Improper neutralization of input during web page generation ('cross-site scripting') in Dynamics 365 Customer Voice allows an unauthorized attacker to perform spoofing over a network.

          🔗 thehackerwire.com/vulnerabilit

          CVE Alert: CVE-2026-47646

          Alt...CVE Alert: CVE-2026-47646

            [?]TheHackerWire » 🤖 🌐
            @thehackerwire@mastodon.social

            🔴 CVE-2026-54782 - Critical (10)

            CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF SAML 1.1 and SAML 2.0 token validation does not correctly resolve the issuer signing key or require signed tokens when ...

            🔗 thehackerwire.com/vulnerabilit

            CVE Alert: CVE-2026-54782

            Alt...CVE Alert: CVE-2026-54782

              [?]TheHackerWire » 🤖 🌐
              @thehackerwire@mastodon.social

              🟠 CVE-2026-59723 - High (8.8)

              Cline is an autonomous coding agent as an SDK, IDE extension, or CLI assistant. Prior to 3.0.30, the Cline Hub dashboard server launched by the cline dashboard command accepts WebSocket connections on the /browser endpoint without validating the O...

              🔗 thehackerwire.com/vulnerabilit

              CVE Alert: CVE-2026-59723

              Alt...CVE Alert: CVE-2026-59723

                [?]TechWire ⚡ » 🤖 🌐
                @techwire@social.gamefan.net

                Apple Loses EU Fight Over App Store Gatekeeper Label

                Apple's challenge against the EU's designation of its App Stores and iOS platform as "gatekeepers" was dismissed by Europe's top court on Wednesday, reports Reuters. "The General Court dismisses Apple's actions regardin…

                macrumors.com/2026/07/08/apple

                [MacRumors]

                  [?]OTX Bot » 🤖 🌐
                  @techbot@social.raytec.co

                  The Crown Prince, Nezha

                  Pulse ID: 6a4f3ddd3ae84e9d6d7977a0
                  Pulse Link: otx.alienvault.com/pulse/6a4f3
                  Pulse Author: Tr1sa111
                  Created: 2026-07-09 06:21:17

                  Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                    [?]OTX Bot » 🤖 🌐
                    @techbot@social.raytec.co

                    Bundled to Steal: The Salat Stealer Campaign

                    Pulse ID: 6a4f3cfbdcf769b123df1c9a
                    Pulse Link: otx.alienvault.com/pulse/6a4f3
                    Pulse Author: Tr1sa111
                    Created: 2026-07-09 06:17:31

                    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                      [?]OTX Bot » 🤖 🌐
                      @techbot@social.raytec.co

                      Cavern Manticore: Exposing Iran-Linked Modular C2 Framework

                      Pulse ID: 6a4f3d79dc413ae2ae14e701
                      Pulse Link: otx.alienvault.com/pulse/6a4f3
                      Pulse Author: Tr1sa111
                      Created: 2026-07-09 06:19:37

                      Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                        [?]N_{Dario Fadda} » 🌐
                        @nuke@poliversity.it

                        ☕ CYBERBRIEFING — Giovedì 9 luglio 2026

                        👉 Leggi tutti gli aggiornamenti delle ultime 24 ore:
                        ilpuntocyber.rfeed.it/article.


                        @informatica

                          [?]OTX Bot » 🤖 🌐
                          @techbot@social.raytec.co

                          One Email Closer to the Edge: UNK_MassTraction & the Physics of Exploitation

                          Pulse ID: 6a4f3cad6a4a7c8960e86657
                          Pulse Link: otx.alienvault.com/pulse/6a4f3
                          Pulse Author: Tr1sa111
                          Created: 2026-07-09 06:16:13

                          Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                            [?]OTX Bot » 🤖 🌐
                            @techbot@social.raytec.co

                            From Phishing to Persistence: A CrySome RAT Infection Chain Analysis

                            Pulse ID: 6a4f3bcc7b5e93ba34134649
                            Pulse Link: otx.alienvault.com/pulse/6a4f3
                            Pulse Author: Tr1sa111
                            Created: 2026-07-09 06:12:28

                            Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                              [?]TechWire ⚡ » 🤖 🌐
                              @techwire@social.gamefan.net

                              ChatGPT just got a Gemini Live rival that can actually keep talking while it thinks

                              GPT-Live is also bringing visual responses, remastered voices, and more to ChatGPT's voice mode.

                              androidauthority.com/openai-gp

                              [Android Authority]

                                [?]TechWire ⚡ » 🤖 🌐
                                @techwire@social.gamefan.net

                                iPhone Ultra Reportedly in Mass Production, No Delay Envisaged

                                Apple's foldable iPhone is on track to ship in September despite rumors of a delayed launch, reports Chinese financial outlet Cailian Press. The outlet says it spoke with several people within Apple's supply chain, who …

                                macrumors.com/2026/07/08/folda

                                [MacRumors]

                                  [?]EUVD Bot » 🤖 🌐
                                  @EUVD_Bot@mastodon.social

                                  🚨 EUVD-2026-42506

                                  📊 Score: 8.8/10 (CVSS v3.1)
                                  📦 Product: Divi Form Builder
                                  🏢 Vendor: Divi Engine
                                  📅 Updated: 2026-07-09

                                  📝 The Divi Form Builder plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 5.1.8. This is due to the update_user() function accepting a user ID parameter from form submissions without verifying that the ...

                                  🔗 euvd.enisa.europa.eu/vulnerabi

                                    [?]EUVD Bot » 🤖 🌐
                                    @EUVD_Bot@mastodon.social

                                    🚨 EUVD-2026-42505

                                    📊 Score: 7.1/10 (CVSS v3.1)
                                    📦 Product: BOSH CLI
                                    🏢 Vendor: CloudFoundry BOSH
                                    📅 Updated: 2026-07-09

                                    📝 A compromised or malicious BOSH Director can execute arbitrary shell commands on the operator's workstation when the operator runs bosh ssh (or bosh scp/bosh logs -f) with default flags.
                                    Affected versions: BOSH CLI versions prior to 7.10.5.

                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                      [?]urlDNA.io :verified: » 🤖 🌐
                                      @urldna@infosec.exchange

                                      Possible Phishing 🎣
                                      on: ⚠️hxxps[:]//zaimbara[.]weebly[.]com
                                      🧬 Analysis at: urldna.io/scan/6a4ed0283b77500

                                        [?]Daily CyberSecurity » 🌐
                                        @DailyCyberSecurity@infosec.exchange

                                        Seqrite ties a Rare Werewolf phishing campaign to Russian aerospace firms, using a fake invoice to plant AnyDesk for stealthy remote access.

                                        securityonline.info/rare-werew

                                          [?]Daily CyberSecurity » 🌐
                                          @DailyCyberSecurity@infosec.exchange

                                          Discover the details of the recent KDDI data breach. Hackers stole over 12 million email addresses and millions of passwords. Learn how to protect yourself.

                                          securityonline.info/kddi-data-

                                            [?]heise online English » 🤖 🌐
                                            @heiseonlineenglish@social.heise.de

                                            Massive data theft at US auto insurer affects nearly 7 million customers

                                            Criminals have stolen data from car insurer AssuranceAmerica, including driver's license information. 6.99 million customers in over 12 US states are affected.

                                            heise.de/en/news/Massive-data-

                                              [?]Hugo | DevOps | Cybersecurity » 🌐
                                              @hugovalters@mastodon.social

                                              Capgo: 48 CVEs, avg CVSS 7.0, max 8.8. 100% unpatched. Trust Score: D. Top flaws: missing auth (CWE-306) & info leaks. OTA updates demand security.

                                              valtersit.com/vendors/capgo/

                                                [?]TechWire ⚡ » 🤖 🌐
                                                @techwire@social.gamefan.net

                                                Apple Announces $30 Billion Broadcom Deal to Make More US Chips

                                                Apple today announced its multiyear partnership with Broadcom to design and produce custom silicon components and wireless technologies, confirming a Reuters report we covered on Monday. Apple says the new agreement is …

                                                macrumors.com/2026/07/08/apple

                                                [MacRumors]

                                                  [?]jbz » 🌐
                                                  @jbz@indieweb.social

                                                  ☃️ Hackers shoveled snow for company, were rewarded with network admin access
                                                  Fortunately, they were professional red teamers. Unfortunately, they pwned the network

                                                  theregister.com/security/2026/

                                                    [?]TechWire ⚡ » 🤖 🌐
                                                    @techwire@social.gamefan.net

                                                    Valve releases drivers, notes to make Windows work on Steam hardware, but refuses to support it — tells u…

                                                    These drivers will make it easier for your Steam Deck or Steam Machine to play nicely with Windows 11. However, Valve says it does not offer customer support for 'Windows on Steam Hardware,' and instead points stuck use…

                                                    tomshardware.com/video-games/c

                                                    [Tom's Hardware]

                                                      [?]TechWire ⚡ » 🤖 🌐
                                                      @techwire@social.gamefan.net

                                                      Save $527 on this 1440p gaming PC from Newegg with a 16GB RTX 5060 Ti right now — huge discount for high-end performance rig with an Intel Core i7-14700F, 32GB DDR5, and a 1TB…

                                                      This great value gaming PC from Newegg's ABS brand features a 16GB RTX 5060 Ti GPU and 32GB of DDR5-6400 RAM, giving you a rig ready for 1440p gaming.

                                                      tomshardware.com/peripherals/g

                                                      [Tom's Hardware]

                                                        [?]EUVD Bot » 🤖 🌐
                                                        @EUVD_Bot@mastodon.social

                                                        🚨 EUVD-2026-42494

                                                        📊 Score: 5.3/10 (CVSS v3.1)
                                                        📦 Product: mcp-text-editor, mcp-text-editor, mcp-text-editor
                                                        🏢 Vendor: tumf
                                                        📅 Updated: 2026-07-09

                                                        📝 A security vulnerability has been detected in tumf mcp-text-editor up to 1.0.2. This issue affects the function _validate_file_path of the file mcp_text_editor/text_editor.py. Such manipulation of the argument file_path...

                                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                                          [?]urlDNA.io :verified: » 🤖 🌐
                                                          @urldna@infosec.exchange

                                                          Possible Phishing 🎣
                                                          on: ⚠️hxxps[:]//ac-corsse[.]weebly[.]com
                                                          🧬 Analysis at: urldna.io/scan/6a4ede4c3b77500

                                                            [?]deafnews » 🤖 🌐
                                                            @deafnews@infosec.exchange

                                                            Mount Royal University Confirms Breach With Double Extortion: Data Theft and Deletion deafnews.it/en/article/mount-r

                                                              [?]TechWire ⚡ » 🤖 🌐
                                                              @techwire@social.gamefan.net

                                                              Modding tool 'DLSS Swapper' might infect your PC with malware if you download the wrong files — App creator warns against using random, user-subm…

                                                              The creator of DLSS Swapper is warning against using random DLLs that claim to fix issues pertaining to DLSS, FSR, or XeSS, even if said file is available on the app's GitHub repo.

                                                              tomshardware.com/video-games/p

                                                              [Tom's Hardware]

                                                                [?]David Hollingworth [Sometimes Bond, sometimes Broughton] » 🌐
                                                                @David_Hollingworth@mastodon.social

                                                                I actually got a whole wave of these scam posts from a friend's compromised Discord account while I was on the way to work today, so if you've had something similar happen... Here's what's going on!

                                                                cyberdaily.au/security/13878-b

                                                                  [?]TechWire ⚡ » 🤖 🌐
                                                                  @techwire@social.gamefan.net

                                                                  Cracked version of Assassin’s Creed Black Flag Resynced leaked days prior to official release despite Den…

                                                                  Ubisoft's remake of the 2013 game has been circulating online more than a month before its official release date, despite Denuvo DRM protection. Incident questions the effectivity of anti-piracy app, which causes perfor…

                                                                  tomshardware.com/video-games/p

                                                                  [Tom's Hardware]

                                                                    [?]urlDNA.io :verified: » 🤖 🌐
                                                                    @urldna@infosec.exchange

                                                                    Possible Phishing 🎣
                                                                    on: ⚠️hxxp[:]//www[.]layanan-shopee2[.]blogspot[.]com/
                                                                    🧬 Analysis at: urldna.io/scan/6a4efa543b77500

                                                                      [?]TechWire ⚡ » 🤖 🌐
                                                                      @techwire@social.gamefan.net

                                                                      Cooler Master V4 and V8 3DHP Review: A masterful engineering achievement

                                                                      Cooler Master’s 3DHP heatpipes, in its Master V4 and V8 coolers, are the biggest advancement in air cooling technology in years. But early adoption comes at a price.

                                                                      tomshardware.com/pc-components

                                                                      [Tom's Hardware]

                                                                        [?]ChiefGyk3D » 🌐
                                                                        @chiefgyk3d@social.chiefgyk3d.com

                                                                        Thanks for hanging out and diving deep into Matrix Protocol, Linux gaming, and all the cybersecurity rants! Really appreciate the chill vibes and the conversation. ✌️

                                                                          [?]Hackerdogs » 🌐
                                                                          @hackerdogs@mastodon.social

                                                                          Ubiquiti releases critical patches for 7 vulnerabilities including max-severity command injection flaw affecting network infrastructure.
                                                                          bleepingcomputer.com/news/secu

                                                                            [?]TechWire ⚡ » 🤖 🌐
                                                                            @techwire@social.gamefan.net

                                                                            Fi Ultra becomes first dog tracker powered by Starlink satellites – the Fi Ultra Dog Tracker makes Fido trackable via satellite, onboard GPS, and LTE connectivity

                                                                            Smart pet technology firm Fi has launched the Fi Ultra Dog Tracker today, the first such device with Starlink connectivity.

                                                                            tomshardware.com/peripherals/w

                                                                            [Tom's Hardware]

                                                                              [?]Brian Clark » 🌐
                                                                              @deepthoughts10@infosec.exchange

                                                                              RE: infosec.exchange/@badsamurai/1

                                                                              To block Cloudflare's latest abomination you'll need to block both cloudflare.com/drop (to prevent data exfil) and *.workers.dev (to prevent your users getting phished with pages hosted there

                                                                                [?]urlDNA.io :verified: » 🤖 🌐
                                                                                @urldna@infosec.exchange

                                                                                Possible Phishing 🎣
                                                                                on: ⚠️hxxp[:]//49[.]51[.]43[.]12/InteractiveLogin
                                                                                🧬 Analysis at: urldna.io/scan/6a4e97ef3b77500

                                                                                  [?]deafnews » 🤖 🌐
                                                                                  @deafnews@infosec.exchange

                                                                                  [?]heise online » 🌐
                                                                                  @heiseonline@social.heise.de

                                                                                  Massiver Datendiebstahl bei US-Autoversicherer betrifft fast 7 Millionen Kunden

                                                                                  Kriminelle haben Daten des Kfz-Versicherers AssuranceAmerica erbeutet, darunter Führerscheinangaben. Betroffen sind 6,99 Millionen Kunden in über 12 US-Staaten.

                                                                                  heise.de/news/Massiver-Datendi

                                                                                    [?]TechWire ⚡ » 🤖 🌐
                                                                                    @techwire@social.gamefan.net

                                                                                    'Slopfix' software team charges $10,000 a week to delete AI-generated code bloat — ironically, the team uses AI agents to trim messy repositories by up to 65%

                                                                                    A software house known as 'Slopfix' has launched a fixed-price service that refactors AI-generated codebases, charging $10,000 for one week of work.

                                                                                    tomshardware.com/tech-industry

                                                                                    [Tom's Hardware]

                                                                                      Back to top - More...