voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]Negative PID SL » 🌐
@negativepid@mastodon.social

[?]Negative PID SL » 🌐
@negativepid@mastodon.social

[?]Malicious Extension Bot » 🤖 🌐
@malicious_browser_bot@infosec.exchange

extension Flash Game Emulator seems malicious. Its badness score is 98/100!

```json
{"id": "jncfmhhkhlbpglafcpjcjkimgadgiamc", "score": 98, "platform": "chrome", "name": "Flash Game Emulator"}
```

    [?]Malicious Extension Bot » 🤖 🌐
    @malicious_browser_bot@infosec.exchange

    extension Contactlayer seems malicious. Its badness score is 94/100!

    ```json
    {"id": "bkanalgjbfghmhemodhhdfnfbekiepem", "score": 94, "platform": "chrome", "name": "Contactlayer"}
    ```

      [?]Malicious Extension Bot » 🤖 🌐
      @malicious_browser_bot@infosec.exchange

      extension Browse Safely (in Chrome) seems malicious. Its badness score is 94/100!

      ```json
      {"id": "pianklkjanhlafllfjljmjhknlohpeim", "score": 94, "platform": "chrome", "name": "Browse Safely (in Chrome)"}
      ```

        [?]Malicious Extension Bot » 🤖 🌐
        @malicious_browser_bot@infosec.exchange

        extension Discord Id Lookup seems malicious. Its badness score is 96/100!

        ```json
        {"id": "ahjpgookabbplenlliddmdkelihifmkk", "score": 96, "platform": "chrome", "name": "Discord Id Lookup"}
        ```

          [?]TechWire ⚡ » 🤖 🌐
          @techwire@social.gamefan.net

          Gemini begins rolling out for existing Android Automotive vehicles

          Some months after its confirmation, Gemini for Android Automotive appears to be finally rolling out to existing vehicles.

          9to5google.com/2026/06/26/gemi

          [9to5Google]

            [?]TheHackerWire » 🤖 🌐
            @thehackerwire@mastodon.social

            🟠 CVE-2026-4967 - High (7.5)

            In IMS, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed.

            🔗 thehackerwire.com/vulnerabilit

            CVE Alert: CVE-2026-4967

            Alt...CVE Alert: CVE-2026-4967

              [?]TheHackerWire » 🤖 🌐
              @thehackerwire@mastodon.social

              🔴 CVE-2026-9725 - Critical (9.1)

              The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including, 2.5.2 This is due to insufficient path validation in the store_design_data() function, whic...

              🔗 thehackerwire.com/vulnerabilit

              CVE Alert: CVE-2026-9725

              Alt...CVE Alert: CVE-2026-9725

                [?]EUVD Bot » 🤖 🌐
                @EUVD_Bot@mastodon.social

                🚨 EUVD-2026-41785

                📊 Score: 6.9/10 (CVSS v3.1)
                📦 Product: Class and Exam Timetabling System, Class and Exam Timetabling System
                🏢 Vendor: SourceCodester
                📅 Updated: 2026-07-05

                📝 A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0/1.php. The impacted element is an unknown function of the file /edit_course1.php. The manipulation of t...

                🔗 euvd.enisa.europa.eu/vulnerabi

                  [?]EUVD Bot » 🤖 🌐
                  @EUVD_Bot@mastodon.social

                  🚨 EUVD-2026-41784

                  📊 Score: 4.3/10 (CVSS v3.1)
                  📦 Product: CrawlWP SEO
                  🏢 Vendor: properfraction
                  📅 Updated: 2026-07-05

                  📝 Cross-Site Request Forgery (CSRF) vulnerability in properfraction CrawlWP SEO allows Cross Site Request Forgery.

                  This issue affects CrawlWP SEO: from n/a through 3.0.16.

                  🔗 euvd.enisa.europa.eu/vulnerabi

                    [?]EUVD Bot » 🤖 🌐
                    @EUVD_Bot@mastodon.social

                    🚨 EUVD-2026-41783

                    📊 Score: 5.3/10 (CVSS v3.1)
                    📦 Product: FormLayer
                    🏢 Vendor: softaculous
                    📅 Updated: 2026-07-05

                    📝 Insertion of Sensitive Information Into Sent Data vulnerability in Softaculous FormLayer allows Retrieve Embedded Sensitive Data.

                    This issue affects FormLayer: from n/a through 1.0.6.

                    🔗 euvd.enisa.europa.eu/vulnerabi

                      [?]EUVD Bot » 🤖 🌐
                      @EUVD_Bot@mastodon.social

                      🚨 EUVD-2026-41782

                      📊 Score: 5.3/10 (CVSS v3.1)
                      📦 Product: Exclusive Addons Elementor
                      🏢 Vendor: Tim Strifler
                      📅 Updated: 2026-07-05

                      📝 Insertion of Sensitive Information Into Sent Data vulnerability in Tim Strifler Exclusive Addons Elementor allows Retrieve Embedded Sensitive Data.

                      This issue affects Exclusive Addons Elementor: from n/a through 2.7.9.9.

                      🔗 euvd.enisa.europa.eu/vulnerabi

                        [?]TheHackerWire » 🤖 🌐
                        @thehackerwire@mastodon.social

                        🟠 CVE-2026-14352 - High (7.5)

                        The AR for WooCommerce plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 8.40 via the 'file' parameter parameter. This makes it possible for unauthenticated attackers to read the contents of arbitrary ...

                        🔗 thehackerwire.com/vulnerabilit

                        CVE Alert: CVE-2026-14352

                        Alt...CVE Alert: CVE-2026-14352

                          [?]EUVD Bot » 🤖 🌐
                          @EUVD_Bot@mastodon.social

                          🚨 EUVD-2026-41781

                          📊 Score: 6.9/10 (CVSS v3.1)
                          📦 Product: Class and Exam Timetabling System, Class and Exam Timetabling System
                          🏢 Vendor: SourceCodester
                          📅 Updated: 2026-07-05

                          📝 A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0/1.php. The affected element is an unknown function of the file /edit_exam1.php. Executing a manipulation of the ...

                          🔗 euvd.enisa.europa.eu/vulnerabi

                            [?]deafnews » 🤖 🌐
                            @deafnews@infosec.exchange

                            Cisco Talos Releases ClamAV 1.5.3 and 1.4.5: Seven Legacy Vulnerabilities Patched deafnews.it/en/article/cisco-t

                              [?]TechWire ⚡ » 🤖 🌐
                              @techwire@social.gamefan.net

                              ‘Snapdragon 8 Elite Gen 6 Pro’ needed more words to prove its power, three other flagship chips coming

                              Qualcomm’s Snapdragon chipset lineup is eternally confusing, with slight variations generating new names and options that aren’t all that different. But it sounds like the next few releases are going to be especially co…

                              9to5google.com/2026/06/26/snap

                              [9to5Google]

                                [?]ChiefGyk3D » 🌐
                                @chiefgyk3d@social.chiefgyk3d.com

                                Happy Independence Weekend vibes are HERE! 🔴

                                SolarPunk dreams + Linux gaming = a chill time. Expect cybersecurity deep dives, some rants, and good company. Let's build a better future, one line of code (and rant) at a time. 😉

                                Come hang out!

                                twitch.tv/chiefgyk3d

                                🔴 LIVE • 3 viewers • Just Chatting

                                Alt...🔴 LIVE • 3 viewers • Just Chatting

                                  [?]ChiefGyk3D » 🌐
                                  @chiefgyk3d@social.chiefgyk3d.com

                                  Happy Independence Weekend vibes are HERE! 🎉

                                  Chiefgyk3d is live on YouTube with a wild mix:

                                  • Solarpunk explorations
                                  • Cybersecurity deep dives
                                  • Rants & chill hangs
                                  • Linux gaming goodness

                                  Let's build a better future (and play some games)! 🎮

                                  youtube.com/@chiefgyk3d/live

                                  🔴 LIVE • 6 viewers

                                  Alt...🔴 LIVE • 6 viewers

                                    [?]ChiefGyk3D » 🌐
                                    @chiefgyk3d@social.chiefgyk3d.com

                                    uConsole is ALIVE! 🎉

                                    DEFCON countdown is on, and things are about to get interesting.

                                    Expect cybersecurity deep dives, some rants, chill vibes, and Linux gaming. 🎮

                                    Let's watch the chaos unfold. 😉

                                    kick.com/chiefgyk3d

                                    🔴 LIVE • 1 viewers • Just Chatting

                                    Alt...🔴 LIVE • 1 viewers • Just Chatting

                                      [?]TheHackerWire » 🤖 🌐
                                      @thehackerwire@mastodon.social

                                      🟠 CVE-2026-57986 - High (7.5)

                                      Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

                                      🔗 thehackerwire.com/vulnerabilit

                                      CVE Alert: CVE-2026-57986

                                      Alt...CVE Alert: CVE-2026-57986

                                        [?]TheHackerWire » 🤖 🌐
                                        @thehackerwire@mastodon.social

                                        🟠 CVE-2026-28744 - High (8.1)

                                        Gitea versions up to and including 1.26.1 allow Git smart HTTP requests authenticated with bearer tokens to bypass repository token scope checks.

                                        🔗 thehackerwire.com/vulnerabilit

                                        CVE Alert: CVE-2026-28744

                                        Alt...CVE Alert: CVE-2026-28744

                                          [?]TheHackerWire » 🤖 🌐
                                          @thehackerwire@mastodon.social

                                          🟠 CVE-2026-56645 - High (8.8)

                                          Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

                                          🔗 thehackerwire.com/vulnerabilit

                                          CVE Alert: CVE-2026-56645

                                          Alt...CVE Alert: CVE-2026-56645

                                            [?]TheHackerWire » 🤖 🌐
                                            @thehackerwire@mastodon.social

                                            🟠 CVE-2026-57974 - High (8.8)

                                            Integer overflow or wraparound in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

                                            🔗 thehackerwire.com/vulnerabilit

                                            CVE Alert: CVE-2026-57974

                                            Alt...CVE Alert: CVE-2026-57974

                                              [?]TheHackerWire » 🤖 🌐
                                              @thehackerwire@mastodon.social

                                              🟠 CVE-2026-27771 - High (8.2)

                                              Gitea versions up to and including 1.26.1 have insufficient permission checks for Composer package source links, which can expose private or internal package source information.

                                              🔗 thehackerwire.com/vulnerabilit

                                              CVE Alert: CVE-2026-27771

                                              Alt...CVE Alert: CVE-2026-27771

                                                [?]Negative PID SL » 🌐
                                                @negativepid@mastodon.social

                                                [?]EUVD Bot » 🤖 🌐
                                                @EUVD_Bot@mastodon.social

                                                🚨 EUVD-2026-41773

                                                📊 Score: 6.9/10 (CVSS v3.1)
                                                📦 Product: Hotel and Tourism Reservation
                                                🏢 Vendor: code-projects
                                                📅 Updated: 2026-07-05

                                                📝 A flaw has been found in code-projects Hotel and Tourism Reservation 1.0. This affects an unknown function of the file /admin/tour_reserves.php of the component Tour Reservations Page. This manipulation of the argument tour causes...

                                                🔗 euvd.enisa.europa.eu/vulnerabi

                                                  [?]urlDNA.io :verified: » 🤖 🌐
                                                  @urldna@infosec.exchange

                                                  Possible Phishing 🎣
                                                  on: ⚠️hxxps[:]//hbciverify[.]weebly[.]com
                                                  🧬 Analysis at: urldna.io/scan/6a4a6b1f3b77500

                                                    [?]TheHackerWire » 🤖 🌐
                                                    @thehackerwire@mastodon.social

                                                    🟠 CVE-2026-28699 - High (8.1)

                                                    Gitea versions up to and including 1.26.1 allow OAuth2 access token scope enforcement to be bypassed through HTTP Basic authentication.

                                                    🔗 thehackerwire.com/vulnerabilit

                                                    CVE Alert: CVE-2026-28699

                                                    Alt...CVE Alert: CVE-2026-28699

                                                      [?]TechWire ⚡ » 🤖 🌐
                                                      @techwire@social.gamefan.net

                                                      iOS 27 helps apps detect when a user may be getting scammed in real time

                                                      A new iOS 27 framework will help apps fight back against social engineering scams as they unfold via voice calls, text messages, emails, and more. Here are the details.

                                                      9to5mac.com/2026/07/02/ios-27-

                                                      [9to5Mac]

                                                        [?]TechWire ⚡ » 🤖 🌐
                                                        @techwire@social.gamefan.net

                                                        Silo season three is streaming today on Apple TV

                                                        The hit sci-fi series Silo is back today for a third season, streaming exclusively on Apple TV. Based on the book series by Hugh Howey, the acclaimed series sees the human population living in a vast underground bunker,…

                                                        9to5mac.com/2026/07/02/apple-t

                                                        [9to5Mac]

                                                          [?]urlDNA.io :verified: » 🤖 🌐
                                                          @urldna@infosec.exchange

                                                          Possible Phishing 🎣
                                                          on: ⚠️hxxps[:]//desk-index-verify[.]weebly[.]com
                                                          🧬 Analysis at: urldna.io/scan/6a4a6b303b77500

                                                            [?]TechWire ⚡ » 🤖 🌐
                                                            @techwire@social.gamefan.net

                                                            Mr. Lif’s Emergency Rations EP is post-9/11 hip hop at its most daring

                                                            First, you drop bombs, then you send aid. Totally logical. | Image: Definitive Jux There was a period in the early aughts when Definitive Jux (nee: Def Jux) seemed like it was going to be the future of hip hop. While th…

                                                            theverge.com/entertainment/961

                                                            [The Verge]

                                                              [?]Negative PID SL » 🌐
                                                              @negativepid@mastodon.social

                                                              [?]TechWire ⚡ » 🤖 🌐
                                                              @techwire@social.gamefan.net

                                                              Prosser denies conspiring to steal Apple secrets in lawsuit response, blames Ramacciotti

                                                              After getting a second chance to formally respond to Apple’s lawsuit, Jon Prosser filed his answer today, disputing the company’s account of how he obtained and published details about the Liquid Glass revamp. Here are …

                                                              9to5mac.com/2026/07/02/prosser

                                                              [9to5Mac]

                                                                [?]EUVD Bot » 🤖 🌐
                                                                @EUVD_Bot@mastodon.social

                                                                🚨 EUVD-2026-41775

                                                                📊 Score: 7.1/10 (CVSS v3.1)
                                                                📦 Product: ail-framework
                                                                🏢 Vendor: ail-project
                                                                📅 Updated: 2026-07-05

                                                                📝 AIL Framework contains a path traversal vulnerability in its PDF object handling. Prior to commit 14c618fce4d1df02358717c48ea903706abecdf2, the PDF.get_filepath() function constructed a file path by joining the configured PDF storage directory with...

                                                                🔗 euvd.enisa.europa.eu/vulnerabi

                                                                  [?]urlDNA.io :verified: » 🤖 🌐
                                                                  @urldna@infosec.exchange

                                                                  Possible Phishing 🎣
                                                                  on: ⚠️hxxps[:]//pgeolded2025[.]weebly[.]com
                                                                  🧬 Analysis at: urldna.io/scan/6a4a6b423b77500

                                                                    [?]OTX Bot » 🤖 🌐
                                                                    @techbot@social.raytec.co

                                                                    TeamPCP Hackers Compromise Developer Tools to Steal Sensitive Data

                                                                    TeamPCP is a financially motivated cybercriminal group of unknown origin
                                                                    that targets the software development and cloud infrastructure sectors
                                                                    worldwide. The group is known for compromising software supply chains,

                                                                    deploying custom malware such as CanisterWorm, SANDCLOCK, Mini Shai-
                                                                    Hulud and Miasma and extorting victims by threatening to publicly disclose

                                                                    stolen data.

                                                                    Pulse ID: 6a4aaa8caca3baef9286e7ea
                                                                    Pulse Link: otx.alienvault.com/pulse/6a4aa
                                                                    Pulse Author: cryptocti
                                                                    Created: 2026-07-05 19:03:39

                                                                    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                                      [?]OTX Bot » 🤖 🌐
                                                                      @techbot@social.raytec.co

                                                                      TeamPCP Hackers Compromise Developer Tools to Steal Sensitive Data

                                                                      TeamPCP is a financially motivated cybercriminal group of unknown origin
                                                                      that targets the software development and cloud infrastructure sectors
                                                                      worldwide. The group is known for compromising software supply chains,

                                                                      deploying custom malware such as CanisterWorm, SANDCLOCK, Mini Shai-
                                                                      Hulud and Miasma and extorting victims by threatening to publicly disclose

                                                                      stolen data.

                                                                      Pulse ID: 6a4aa9c7fe07819ff6024376
                                                                      Pulse Link: otx.alienvault.com/pulse/6a4aa
                                                                      Pulse Author: cryptocti
                                                                      Created: 2026-07-05 19:00:23

                                                                      Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                                        [?]Negative PID SL » 🌐
                                                                        @negativepid@mastodon.social

                                                                        [?]Hugo | DevOps | Cybersecurity » 🌐
                                                                        @hugovalters@mastodon.social

                                                                        Atlassian: 41 CVEs, 6 CISA KEV exploited in wild. 100% unpatched. Trust Score: D. Jira & Confluence under fire. Patch now.

                                                                        valtersit.com/vendors/atlassia

                                                                          [?]TechWire ⚡ » 🤖 🌐
                                                                          @techwire@social.gamefan.net

                                                                          9to5Mac Daily: July 3, 2026 – Apple Creator Studio updates, more

                                                                          Listen to a recap of the top stories of the day from 9to5Mac. 9to5Mac Daily is available on iTunes and Apple’s Podcasts app, Stitcher, TuneIn, Google Play, or through our dedicated RSS feed for Overcast and other podcas…

                                                                          9to5mac.com/2026/07/03/daily-j

                                                                          [9to5Mac]

                                                                            Back to top - More...