voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
🚨 EUVD-2026-41949
📊 Score: 6.5/10 (CVSS v3.1)
📦 Product: coolify
🏢 Vendor: coollabsio
📅 Updated: 2026-07-06
📝 Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.466, mutating API validation endpoints are guarded by read ability, allowing read-scoped API tokens to perform state-changing operation...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-41949
🚨 EUVD-2026-41922
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: hugo
🏢 Vendor: gohugoio
📅 Updated: 2026-07-06
📝 Hugo is a static site generator. From 0.123.0 to 0.161.1, a regression made RootMappingFs.statRoot use Stat (follows symlinks) instead of Lstat , so a direct resources.Get of a symlink pointing outside its mount returned the target's contents — letting ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-41922
WhatsApp Beta Adds Green Dot to Show Who's Online
WhatsApp appears to be introducing a new visual indicator that shows when a contact is online, according to WaBetaInfo. The feature adds a small green circle to a contact's profile photo when they're active in the app, …
https://www.macrumors.com/2026/07/06/whatsapp-adds-green-dot-show-who-online/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
CVE-2026-57571 - Critical RCE in Crawl4AI. Unrestricted file write via path traversal in filename handling. CVSS 9.6. No patch available. Disable file saving or use sandboxing immediately. #CVE #infosec #cybersecurity
NEW by me:
The “Anonymous” Tip System That Wasn’t: Three Months Later, Why Hasn’t Navigate360 Notified Anyone?
Note: there is a trigger warning at the top of this article as it contains sensitive material from tips submitted to and about students on what were supposed to be "anonymous" tiplines.
This is the longest post I have ever done because people need to be more aware that this was the worst breach EVER in terms of highly sensitive personal information of students and their peers and families.
Great thanks to @douglevin for his comments and suggestions on the post.
@funnymonkey @mkeierleber @euroinfosec @jgreig @zackwhittaker @campuscodi @politico @dustinvolz
#databreach #anonymity #infosec #cybersecurity #Navigate360 #P3Campus #P3Global
I sideloaded 3 apps into my Android Auto, and they've made my drives so much easier
From watching YouTube to web browsing to other unexpected tasks, here's what you can install beyond the basics.
https://www.zdnet.com/article/3-of-my-favorite-sideloaded-android-auto-apps/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
Electric drone breaks world air speed record at 434 mph, designed for anti-aircraft interceptor roles — G…
Quantum Systems Group reckons it has broken the flight speed record for an electric drone. During internal testing last month the Munich-based firm recorded its Apex Recordhunter drone hitting a top speed of 434 mph in …
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Elastic Automates CVE Advisory Writing with RAG on MITRE Data https://deafnews.it/en/article/elastic-automates-cve-advisory-writing-with-rag-on-mitre-data #Cybersecurity
Possible Phishing 🎣
on: ⚠️hxxp[:]//203[.]143[.]20[.]86/
🧬 Analysis at: https://urldna.io/scan/6a4aa36d3b77500009f79073
#cybersecurity #phishing #infosec #urldna #scam #infosec
Meet Abxylute’s new mobile controller for gamers on a budget
The Abxylute S8 gets a more budget-friendly sibling.
https://www.androidauthority.com/abxylute-s8-lite-mobile-controller-3684529/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Gemini Live could give you more control over what it hears with push-to-talk mode
Gemini Live is preparing a walkie-talkie-style push-to-talk mode.
https://www.androidauthority.com/gemini-live-push-to-talk-3684532/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
🚨New ransom group blog posts!🚨
Group name: Booba Project
Post title: Edwards_Michael.pdf
Info: https://cti.fyi/groups/Booba Project.html
Group name: Booba Project
Post title: canvas.png
Info: https://cti.fyi/groups/Booba Project.html
Group name: Booba Project
Post title: Bob_Saffari_Social_Security_Card.pdf
Info: https://cti.fyi/groups/Booba Project.html
Group name: Booba Project
Post title: BL_License.pdf
Info: https://cti.fyi/groups/Booba Project.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//www[.]one-provide[.]ch/online_shop/web83/single[.]php?psg=10008040&war=1&a=21625&lang=de%22%2F%3E%3Cimg+src%3D%22hxxps%3A%2F%2Fgoogle[.]com%2FYdMxlXw1[.]jpg%22+onerror%3D%22window[.]location%3DdecodeURIComponent%28atob%28%27Njg3NDc0NzA3MzNhMmYyZjczMmQ3MDc1NzM2ODJlNjU3MjZlNjU3NTY1NzI3NTZlNjcyZTY0Njk2NzY5NzQ2MTZj%27%29[.]replace%28%2F%28[.][.]%29%2Fg%2C+%27%25%241%27%29%29%3B%22%3E
🧬 Analysis at: https://urldna.io/scan/6a4abfae3b77500009f793af
#cybersecurity #phishing #infosec #urldna #scam #infosec
🚨 EUVD-2026-41894
📊 Score: 6.4/10 (CVSS v3.1)
📦 Product: Reviews Widgets for Google, TripAdvisor, Yelp & Recommendations
🏢 Vendor: widgetpack
📅 Updated: 2026-07-06
📝 The Reviews Widgets for Google, Yelp & TripAdvisor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'page_id' shortcode attribute of the [fbrev] shortcode in versions up to a...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-41894
🚨 EUVD-2026-41893
📊 Score: 3.3/10 (CVSS v3.1)
📦 Product: optee_os
🏢 Vendor: OP-TEE
📅 Updated: 2026-07-06
📝 OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 3.10.0 and prior to version 4.11.0, an unbounded recursion can crash the PKC...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-41893
🚨 EUVD-2026-41892
📊 Score: 9.9/10 (CVSS v3.1)
📦 Product: Plesk
🏢 Vendor: WebPros
📅 Updated: 2026-07-06
📝 An improper authorization vulnerability in the Plesk XML API allows an authenticated user to inject arbitrary configuration directives, resulting in arbitrary file write as root and full privilege escalation on the underlying server.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-41892
Esafenet: 53 CVEs, 100% unpatched. Avg CVSS 0—yet 46 SQL injection (CWE-89) weaknesses. Trust Score: C. Data security vendor with critical gaps. #Esafenet #infosec #cybersecurity
The NIST Cybersecurity Framework (CSF) is a globally recognized, voluntary set of guidelines and best practices developed by the U.S. National Institute of Standards and Technology. It provides organizations of all sizes and industries with a flexible, structured taxonomy to understand, assess, prioritize, and communicate cybersecurity risks.
#cybersecurity #governance #risk #technology #gaming #programming #ai #business #engineering
Link: https://blackcatwhitehatsecurity.com
Januscape: 16-Year-Old KVM Bug Enables Guest-to-Host Escape on Intel and AMD https://deafnews.it/en/article/januscape-16-year-old-kvm-bug-enables-guest-to-host-escape-on-intel-and-amd #Cybersecurity
America’s greatest idea is still under threat
The Patrouille de France perform a flyover during the Sail4th 250 Tall Ships Parade along the Hudson River in New York on July 4th, 2026. | Photo by John Lamparski/Bloomberg via Getty Images The United States of America…
https://www.theverge.com/policy/961802/america-250-free-speech
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
When researching online, OSINT browser extensions can help you collect, verify, and save information faster—without constantly switching tools.
Here are some useful browser extensions for OSINT and online investigations 😎👇
Find a high-res pdf ebook with all my cybersecurity related infographics from https://study-notes.org
#osint #digitalforensics #infosec #cybersecurity #informationsecurity
🚨 WHOIS privacy is under pressure.
GoDaddy is challenging an Indian court ruling that could fundamentally change how domain privacy works by requiring:
🔹 Mandatory e-KYC for domain registrations
🔹 WHOIS privacy no longer enabled by default
🔹 Registrars to disclose registrant details within 72 hours to parties claiming a "legitimate interest"
This isn't just about India.
The outcome could influence domain privacy, ICANN policy, RDAP adoption, cybersecurity investigations, trademark enforcement, and the future of online anonymity worldwide.
I break down:
✅ What the court actually ordered
✅ Why GoDaddy is appealing
✅ How WHOIS and RDAP really work
✅ The privacy vs law enforcement debate
✅ What it means for domain owners, security researchers, and businesses
Read the full analysis 👇
https://thecybersecguru.com/news/godaddy-india-whois-privacy-ruling/?utm_source=mastodon&utm_medium=social
#CyberSecurity #WHOIS #GoDaddy #DomainNames #Privacy #RDAP #ICANN #OSINT #DNS #InfoSec #CyberLaw #India #DataPrivacy #CyberNews
Nintendo will stop selling the original Switch in Europe next year
Nintendo is making a new version of the Switch 2 with a replaceable battery in Europe - but its predecessor has a very different future. As part of an updated FAQ about revisions to Nintendo hardware in Europe, the comp…
https://www.theverge.com/games/961632/nintendo-switch-europe-discontinued
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Discover the new Cursor IDE RCE vulnerability called DuneSlide. This critical sandbox escape flaw assigned CVE-2026-50548 threatens developer environments.
AI Exacerbates Vulnerability Prioritization Crisis
The irony of AI-powered vulnerability discovery is that it's creating an overwhelming crisis: despite spotting weaknesses at unprecedented speed and scale, organizations are no safer - just more inundated. The harsh truth is that a vulnerability is just a clue, not risk, and the real challenge lies in prioritizing and…
#VulnerabilityPrioritization #ArtificialIntelligence #EmergingThreats #RiskManagement #Cybersecurity
Possible Phishing 🎣
on: ⚠️hxxps[:]//kujnbvrrywkeh[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a4baea63b77500006110f2b
#cybersecurity #phishing #infosec #urldna #scam #infosec
The window for patching is shrinking dramatically. A critical Adobe ColdFusion vulnerability (CVE-2026-48282) was actively exploited within two days of its patch release, allowing arbitrary code execution. This incident highlights the urgent need for proactive security beyond just reactive updates, especially for legacy systems.
#cybersecurity #adobecoldfusion #cve202648282
🤖 This post was AI-generated.
Sony leak hints that it isn’t done expanding the XM6 color palette
Sony could be cooking up a new color for its flagship headphones.
https://www.androidauthority.com/sony-xm6-new-headphone-color-3684443/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
🚨New ransom group blog posts!🚨
Group name: qilin
Post title: Answer Precision Tool
Info: https://cti.fyi/groups/qilin.html
Group name: qilin
Post title: Precision Steel Services
Info: https://cti.fyi/groups/qilin.html
Group name: qilin
Post title: Keystone Homes
Info: https://cti.fyi/groups/qilin.html
#ransomware #cti #threatintelligence #cybersecurity #infosec
Coolify behebt mehrere schwere Sicherheitslücken
Fünf der gemeldeten Schwachstellen erhielten die höchste Einstufung im Bewertungssystem. Betroffene Nutzer sollten ihre Installation zeitnah aktualisieren.
https://www.all-about-security.de/coolify-behebt-mehrere-schwere-sicherheitsluecken/
A case study on Kairos ransomware data extortion highlights the futility of paying a $1 million ransom without data encryption.
#KairosRansomware #DataExtortion #CyberSecurity #CyberExtortion
Fed up with YouTube Music on desktop? This unofficial open-source client offers a fix
Built directly on YouTube's API, the free Windows app YTubic claims to be better than sluggish webview alternatives.
https://www.androidauthority.com/ytubic-youtube-music-desktop-client-3684440/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Possible Phishing 🎣
on: ⚠️hxxps[:]//raushan-k15[.]github[.]io/Amazon_Clone
🧬 Analysis at: https://urldna.io/scan/6a4a8da33b77500009f78e4e
#cybersecurity #phishing #infosec #urldna #scam #infosec
New by me: Your Personal Tech Stack Needs an Admin, Even If That Admin Is You
https://www.kylereddoch.me/blog/your-personal-tech-stack-needs-an-admin-even-if-that-admin-is-you/
QuimaRAT: A Modular Java RAT Challenges Defensive Segmentation on Windows https://deafnews.it/en/article/quimarat-a-modular-java-rat-challenges-defensive-segmentation-on-windows #Cybersecurity
Check out Anbernic’s upcoming Nintendo Switch Lite-lookalike in action
Anbernic has just offered us an up close and personal look at the RG 55G1 Android gaming handheld with a new gameplay video.
https://www.androidauthority.com/anbernic-rg-55g1-handheld-gameplay-3684429/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]