voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Duolingo’s big course upgrade is making some learners feel lost
This wasn’t the Duolingo upgrade I had in mind.
https://www.androidauthority.com/duolingo-course-upgrade-complaints-3685447/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
NIST SP 800-171 is a cybersecurity framework developed by the National Institute of Standards and Technology (NIST) that defines the security requirements for protecting Controlled Unclassified Information (CUI) in non-federal systems and organizations.
#cybersecurity #governance #risk #technology #gaming #programming #ai #business #engineering
Link: https://blackcatwhitehatsecurity.com
If Microsoft sold off Xbox, who would even buy it?
This week, Microsoft took a huge ax to its Xbox business. The company announced that it would be laying off 1,600 workers now, 1,600 more over the next fiscal year, and that it would be shedding four studios. Xbox CEO A…
https://www.theverge.com/games/962837/microsoft-xbox-spin-off-sell-divest-layoffs-asha-sharma
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
🚨 EUVD-2026-42344
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: pypdf
🏢 Vendor: py-pdf
📅 Updated: 2026-07-08
📝 pypdf is a free and open-source pure-python PDF library. Prior to 6.14.0, an attacker can craft a PDF with repeated malformed cross-reference streams that cause pypdf to spend long runtimes recovering broken cross-reference table entries. This issue is fixed in...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42344
🚨 EUVD-2026-42343
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: pypdf
🏢 Vendor: py-pdf
📅 Updated: 2026-07-08
📝 pypdf is a free and open-source pure-python PDF library. Prior to 6.14.0, an attacker can craft a PDF with declared image size values that are much too large compared to the actual data, causing large memory usage in pypdf image parsing. This issue is fixed in ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42343
🚨 EUVD-2026-42342
📊 Score: 4.9/10 (CVSS v3.1)
📦 Product: Shared library
🏢 Vendor: Hashicorp
📅 Updated: 2026-07-08
📝 HashiCorp memberlist before version 0.6.0 is vulnerable to a denial-of-service issue in its push/pull state handling that may allow an attacker with network access to the gossip port to exhaust memory on a receiving node and cause the process to ter...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42342
Possible Phishing 🎣
on: ⚠️hxxps[:]//kilhail[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a4e580b3b7750000688c54c
#cybersecurity #phishing #infosec #urldna #scam #infosec
Aerospace Phishing Campaign Leveraging AnyDesk and Blat SMTP for Data Exfiltration
Pulse ID: 6a4e9983359b19f10b66d843
Pulse Link: https://otx.alienvault.com/pulse/6a4e9983359b19f10b66d843
Pulse Author: cryptocti
Created: 2026-07-08 18:40:03
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#AnyDesk #CyberSecurity #InfoSec #OTX #OpenThreatExchange #Phishing #RAT #bot #cryptocti
Moodle: 61 CVEs, 1 high severity, avg CVSS 6.43. 91% unpatched. Trust Score: C. Top weakness: Missing Authorization (CWE-862). Open-source LMS, but patching lags. Secure your e-learning platform now. #Moodle #cybersecurity #infosec
FortiBleed: 74,000 FortiGates Exposed — Patching Alone Won't Fix It https://deafnews.it/en/article/fortibleed-74000-fortigates-exposed-patching-alone-wont-fix-it #Cybersecurity
#DuckDuckGo has added built-in YouTube ad blocking to its browser, no extensions required.
Listen/Read: https://hackread.com/duckduckgo-blocks-youtube-ads-inside-browser/
Google Play Store will look a little different the next time you open it
Google is given these two tabs a redesign.
https://www.androidauthority.com/google-play-store-july-ui-changes-3685473/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
New, by me: Felons, Fraudsters Flog Offensive Cybersecurity Startup
A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right conspiracy theorists and convicted felons whose most recent ventures included fake intelligence companies and a now-defunct AI-based lobbying platform they operated under assumed names.
https://krebsonsecurity.com/2026/07/felons-fraudsters-flog-offensive-cybersecurity-startup/
Gaming laptops are too expensive right now, but this one’s a good value
It’s not a great time to shop for a gaming laptop. The unprecedented rise in cost for RAM (and storage to a slightly lesser extent) has made laptops with low-to-midrange specs cost much more than they should. Recent dea…
https://www.theverge.com/gadgets/962754/msi-gaming-laptop-ethernet-switch-pc-steam-game-deal-sale
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
We are exploring some ambitious ideas around reducing external dependencies and relying more on our own libraries across MISP and related tooling. Over the past year, we have been working on a replacement network graph library for the new MISP interface and things are getting really interesting. Pivotick is already used in around ten open-source tools, including CTI Transmute, AIL Project, and Rulezet. It has also recently been integrated into the new MISP UI, OverMind. The library is, of course, open source and comes with extensive documentation, including AI-parseable documentation to make integration easier. We have just released Pivotick v1.2.0.
https://pivotick.github.io/Pivotick/
#Tuta One-Click Migration is now in closed beta!
🚨 EUVD-2026-42245
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: Tanium Server, Tanium Server, Tanium Server
🏢 Vendor: Tanium
📅 Updated: 2026-07-08
📝 Tanium addressed a denial of service vulnerability in Tanium Server.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42245
🚨 EUVD-2026-42244
📊 Score: 2.7/10 (CVSS v3.1)
📦 Product: PowerProtect Data Domain, PowerProtect Data Domain, PowerProtect Data Domain (+1 more)
🏢 Vendor: Dell
📅 Updated: 2026-07-08
📝 Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42244
🚨 EUVD-2026-42233
📊 Score: 9.2/10 (CVSS v3.1)
📦 Product: Blocksy Companion, Blocksy Companion
🏢 Vendor: Creative Themes
📅 Updated: 2026-07-08
📝 Blocksy Companion Pro plugin for WordPress before 2.1.47 contains an unauthenticated arbitrary file upload vulnerability that allows attackers to upload executable files by bypassing extension validation in the save_attac...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42233
🚨 EUVD-2026-42243
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: PowerProtect Data Domain, PowerProtect Data Domain, PowerProtect Data Domain (+1 more)
🏢 Vendor: Dell
📅 Updated: 2026-07-08
📝 Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42243
🚨 EUVD-2026-42242
📊 Score: 7.8/10 (CVSS v3.1)
📦 Product: Omnissa Workspace ONE® Tunnel for Windows
🏢 Vendor: Omnissa
📅 Updated: 2026-07-08
📝 Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42242
🚨 EUVD-2026-42241
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: MISP
🏢 Vendor: MISP
📅 Updated: 2026-07-08
📝 MISP’s importModule() path used getEnabledModule() to resolve a single import module by name, but this lookup did not enforce the per-organisation module restriction checked by getEnabledModules(). As a result, an authenticated user from an organisation that was n...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42241
🚨 EUVD-2026-42240
📊 Score: 8.8/10 (CVSS v3.1)
📦 Product: PowerProtect Data Domain, PowerProtect Data Domain, PowerProtect Data Domain (+1 more)
🏢 Vendor: Dell
📅 Updated: 2026-07-08
📝 Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42240
🚨 EUVD-2026-42239
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: MISP
🏢 Vendor: MISP
📅 Updated: 2026-07-08
📝 An authorization bypass in MISP’s EventsController::importModule() allowed authenticated users or read-only API keys with event view access to persist data to events they were not allowed to modify. When an import module returned results in the misp_standard forma...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42239
🚨 EUVD-2026-42238
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: Flask-MonitoringDashboard, Flask-MonitoringDashboard, Flask-MonitoringDashboard
🏢 Vendor: flask-dashboard
📅 Updated: 2026-07-08
📝 A vulnerability has been found in flask-dashboard Flask-MonitoringDashboard up to 5.0.2. Affected by this issue is some unknown functionality. Such manipulation leads to cross-si...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42238
🚨 EUVD-2026-42237
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: dgraph
🏢 Vendor: dgraph-io
📅 Updated: 2026-07-08
📝 Dgraph is an open source distributed GraphQL database. Prior to version 25.3.4, the `checkUserPassword` GraphQL query in Dgraph is vulnerable to DQL (Dgraph Query Language) injection. User-supplied password values are interpolated directly into a DQL `check...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42237
🚨 EUVD-2026-42235
📊 Score: 9.1/10 (CVSS v3.1)
📦 Product: dgraph
🏢 Vendor: dgraph-io
📅 Updated: 2026-07-08
📝 Dgraph is an open source distributed GraphQL database. Prior to version 25.3.5, Dgraph Alpha exposes the RPCs used for external snapshot import on the public gRPC port `:9080` without authentication or authorization. As a result, an unauthenticated network ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42235
🚨 EUVD-2026-42236
📊 Score: 7.1/10 (CVSS v3.1)
📦 Product: PowerProtect Data Domain, PowerProtect Data Domain, PowerProtect Data Domain (+1 more)
🏢 Vendor: Dell
📅 Updated: 2026-07-08
📝 Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42236
🚨 EUVD-2026-42234
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: check-peer-dependencies, check-peer-dependencies, check-peer-dependencies (+2 more)
🏢 Vendor: christopherthielen
📅 Updated: 2026-07-08
📝 A flaw has been found in christopherthielen check-peer-dependencies up to 4.3.4. Affected by this vulnerability is the function shelljs.exec of the file dist/packageUtils....
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42234
Accenture Confirms Security Breach After Hacker Claims 35 GB of Data Was Stolen
Accenture confirmed a data breach in July 2026 after a threat actor named "888" claimed to have stolen 35 GB of internal source code and other technical data from the company. The company stated the incident was isolated and remediated, with no impact on its global operations or service delivery.
****
#cybersecurity #infosec #incident #databreach
https://beyondmachines.net/event_details/accenture-confirms-security-breach-after-hacker-claims-35-gb-of-data-was-stolen-r-t-b-2-4/gD2P6Ple2L
🖲️ #Cybersecurity #Ciberseguridad #Ciberseguranca #Security #Seguridad #Seguranca #News #Noticia #Noticias #Tecnologia #Technology
⚫ State IDs for AI Agents: Will Estonia Set a Precedent?
🔗 https://www.darkreading.com/cybersecurity-operations/state-ids-ai-agents-estonia
The world's digital testing ground plans to help people use AI agents for government purposes.
CISA Orders 3-Day Patch for CVE-2026-55255 in Langflow https://deafnews.it/en/article/cisa-orders-3-day-patch-for-cve-2026-55255-in-langflow #Cybersecurity
Gemini could make avatars even better by letting you share them with friends
Would you trust your friends to place your likeness in their AI video creations?
https://www.androidauthority.com/gemini-avatar-share-3685289/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
🚨 A newly identified APT dubbed #ArmoredLikho is targeting government agencies and energy organizations with #BusySnake Stealer, a Python-based infostealer delivered through AI-generated loaders and spear-phishing campaigns.
The malware steals credentials, Telegram sessions, cryptocurrency wallets, and more, while built-in reverse SSH tunneling gives attackers long-term remote access.
Listen/Read: https://hackread.com/armored-likho-government-energy-busysnake-stealer/
#CyberSecurity #InfoSec #APT #Malware #Phishing #CyberEspionage
📰 New 'Bad Epoll' Linux Kernel Zero-Day (CVE-2026-46242) Grants Full Root Access
🚨 CRITICAL ZERO-DAY: 'Bad Epoll' (CVE-2026-46242) in Linux Kernel allows any local user to gain full root access. The use-after-free bug affects servers, desktops & Android. PoC exists. Patch immediately! 🐧💥 #Linux #CyberSecurity #ZeroDay #Infosec
🌐 cyber[.]netsecops[.]io
OpenBSD has a use-after-free allowing local privilege escalation to root
https://nvd.nist.gov/vuln/detail/cve-2026-57589
Comments: https://news.ycombinator.com/item?id=48831658
#HackerNews #OpenBSD #UseAfterFree #PrivilegeEscalation #Cybersecurity #Vulnerability #CVE-2026-57589
🎣 Phishing Spotlight
rwqsssd[.]s3[.]ap-northeast-3[.]amazonaws[.]com
🔒 SSL: exp. 2026-10-30
🌐 Stack: AmazonS3
🔗 https://beesint.com/pulse/64bf2f0e-fb7b-45d1-80be-bfbf66b403f5
#chrome extension Bookmark Atlas seems malicious. Its #cybersecurity badness score is 98/100!
```json
{"id": "fdeijohdonbnikplckachfblcpbpkacp", "score": 98, "platform": "chrome", "name": "Bookmark Atlas"}
```