voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]urlDNA.io :verified: » 🤖 🌐
@urldna@infosec.exchange

Possible Phishing 🎣
on: ⚠️hxxps[:]//wabah72059[.]wixsite[.]com/my-site
🧬 Analysis at: urldna.io/scan/6a4420533b77500

    [?]TechWire ⚡ » 🤖 🌐
    @techwire@social.gamefan.net

    Xbox weighs canceling Blade game and shuttering Arkane

    Microsoft is set to announce a wave of layoffs for its Xbox studios and employees next week. Sources familiar with Microsoft's plans tell The Verge that the layoffs will lead to studio closures or spinoffs, potential me…

    theverge.com/report/959467/mic

    [The Verge]

      [?]EUVD Bot » 🤖 🌐
      @EUVD_Bot@mastodon.social

      🚨 EUVD-2026-40374

      📊 Score: 7.1/10 (CVSS v3.1)
      📦 Product: nightingale
      🏢 Vendor: ccfos
      📅 Updated: 2026-06-30

      📝 Nightingale (n9e) before 9.0.0-beta.2 exposes full datasource configurations, including plaintext database passwords, HTTP bearer tokens, HTTP basic-auth passwords, and mTLS client keys, to any authenticated low-privilege (Standard role) user through POST ...

      🔗 euvd.enisa.europa.eu/vulnerabi

        [?]EUVD Bot » 🤖 🌐
        @EUVD_Bot@mastodon.social

        🚨 EUVD-2026-40372

        📊 Score: 4.8/10 (CVSS v3.1)
        📦 Product: Zephyr
        🏢 Vendor: zephyrproject
        📅 Updated: 2026-06-30

        📝 Zephyr's DNS resolver (subsys/net/lib/dns) parses resource records from DNS responses in dns_unpack_answer(), which validated only the fixed RR header (type, class, TTL, rdlength) and accepted any attacker-declared rdlength, including one extending past...

        🔗 euvd.enisa.europa.eu/vulnerabi

          [?]EUVD Bot » 🤖 🌐
          @EUVD_Bot@mastodon.social

          🚨 EUVD-2026-40371

          📊 Score: 8.7/10 (CVSS v3.1)
          📦 Product: ziti
          🏢 Vendor: openziti
          📅 Updated: 2026-06-30

          📝 OpenZiti through 2.0.0, fixed in commit 3027fdf, contains a privilege escalation vulnerability that allows authenticated non-admin identities with fine-grained enrollment management permissions to create enrollments for any identity, including the default admi...

          🔗 euvd.enisa.europa.eu/vulnerabi

            [?]Hugo | DevOps | Cybersecurity » 🌐
            @hugovalters@mastodon.social

            Your PowerShell script with $AdminPassword hardcoded is a gift to attackers. They scan public repos and network shares daily. Learn how to secure secrets properly before it's too late.

            valtersit.com/guides/security/

              [?]urlDNA.io :verified: » 🤖 🌐
              @urldna@infosec.exchange

              Possible Phishing 🎣
              on: ⚠️hxxps[:]//amazon-homepage-clone-beta[.]vercel[.]app/
              🧬 Analysis at: urldna.io/scan/6a43a1bb3b77500

                [?]The New Oil » 🤖 🌐
                @thenewoil@mastodon.thenewoil.org

                [?]TechWire ⚡ » 🤖 🌐
                @techwire@social.gamefan.net

                Google’s has a faster version of Nano Banana with three demo apps you can try right now

                Gemini is about to get a lot faster at generating images.

                androidauthority.com/gemini-na

                [Android Authority]

                  [?]Black Cat White Hat Security » 🌐
                  @BCWHQuiz@defcon.social

                  The Story: The Game II
                  You awaken to find yourself outside a red barn in the middle of nowhere. You have no idea what day or time it is. You enter the red barn to find computer kiosk and nothing else. What can you find in the barn?



                  Link: blackcatwhitehatsecurity.com/t

                  The Story: The Game II
You awaken to find yourself outside a red barn in the middle of nowhere. You have no idea what day or time it is. You enter the red barn to find computer kiosk and nothing else. What can you find in the barn?

                  Alt...The Story: The Game II You awaken to find yourself outside a red barn in the middle of nowhere. You have no idea what day or time it is. You enter the red barn to find computer kiosk and nothing else. What can you find in the barn?

                    [?]Malicious Extension Bot » 🤖 🌐
                    @malicious_browser_bot@infosec.exchange

                    extension Pn Copilot seems malicious. Its badness score is 88/100!

                    ```json
                    {"id": "kdkoofnpjboodmojoebcoliekojhhgdh", "score": 88, "platform": "chrome", "name": "Pn Copilot"}
                    ```

                      [?]TechWire ⚡ » 🤖 🌐
                      @techwire@social.gamefan.net

                      Attention span too fried for NotebookLM’s podcasts? Have it make you a TikTok instead

                      Now you can learn AP Biology in 60-second chunks.

                      androidauthority.com/notebookl

                      [Android Authority]

                        [?]urlDNA.io :verified: » 🤖 🌐
                        @urldna@infosec.exchange

                        Possible Phishing 🎣
                        on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vTfjcBpt0jsOjyQYiCdiV0V2tqE386QEi0Ju7KMLjUnSusYhI7_-NsmYCaCiI5FF2Niid8oaKgdVyij/pub?start=false&loop=false&delayms=3000&slide=id[.]p
                        🧬 Analysis at: urldna.io/scan/6a43d9fa3b77500

                          [?]The New Oil » 🤖 🌐
                          @thenewoil@mastodon.thenewoil.org

                          [?]BeyondMachines :verified: » 🤖 🌐
                          @beyondmachines1@infosec.exchange

                          Washington DSHS Discloses Data Breach Following Unauthorized Access by Former Employee

                          The Washington Department of Social and Health Services disclosed a data breach affecting 8,600 people after a former employee improperly accessed client records in March 2026. The agency has terminated the individual's access and is working with law enforcement to investigate the unauthorized activity.

                          ****

                          beyondmachines.net/event_detai

                            [?]Hugo | DevOps | Cybersecurity » 🌐
                            @hugovalters@mastodon.social

                            Juniper Networks: 234 CVEs, 100% unpatched. 3 CISA KEV exploited. Trust Score: D. Critical flaws (7) & high (80). Time to patch.

                            valtersit.com/vendors/juniper-

                              [?]TechWire ⚡ » 🤖 🌐
                              @techwire@social.gamefan.net

                              Google Home devices not listening to you today? You’re far from alone

                              Hey Google? Hey. Google. HEY! GOOGLE!

                              androidauthority.com/google-ho

                              [Android Authority]

                                [?]deafnews » 🤖 🌐
                                @deafnews@infosec.exchange

                                [?]TechWire ⚡ » 🤖 🌐
                                @techwire@social.gamefan.net

                                Google’s killing off Tenor GIF searches in other apps

                                The GIF-picking interfaces in some of your favorite online platforms might look different going forward, as Google prepares to shut down the Tenor API today. While the Tenor website, along with its searchable GIF librar…

                                theverge.com/tech/959658/googl

                                [The Verge]

                                  [?]urlDNA.io :verified: » 🤖 🌐
                                  @urldna@infosec.exchange

                                  Possible Phishing 🎣
                                  on: ⚠️hxxps[:]//ssssxxserver88888searchfigonline[.]weebly[.]com/
                                  🧬 Analysis at: urldna.io/scan/6a440bfc3b77500

                                    [?]The New Oil » 🤖 🌐
                                    @thenewoil@mastodon.thenewoil.org

                                    [?]The New Oil » 🤖 🌐
                                    @thenewoil@mastodon.thenewoil.org

                                    [?]TechWire ⚡ » 🤖 🌐
                                    @techwire@social.gamefan.net

                                    The INIU SnapGo Air is the slimmest 10,000mAh Qi 2.2 magnetic power bank you can get

                                    It's the ideal phone companion for quick battery top ups.

                                    androidauthority.com/iniu-snap

                                    [Android Authority]

                                      [?]EUVD Bot » 🤖 🌐
                                      @EUVD_Bot@mastodon.social

                                      🚨 EUVD-2026-40317

                                      📊 Score: 6.9/10 (CVSS v3.1)
                                      📦 Product: ADC, Gateway, ADC (+3 more)
                                      🏢 Vendor: NetScaler
                                      📅 Updated: 2026-06-30

                                      📝 Insufficient input validation leading to memory overread in NetScaler ADC and NetScaler Gateway if the TCP TimeStamp is enabled in TCP Profile and is associated with the virtual server (of type LB, CS, VPN) or the service configured on ...

                                      🔗 euvd.enisa.europa.eu/vulnerabi

                                        [?]EUVD Bot » 🤖 🌐
                                        @EUVD_Bot@mastodon.social

                                        🚨 EUVD-2026-40320

                                        📊 Score: 8.7/10 (CVSS v3.1)
                                        📦 Product: Gateway, ADC, ADC (+3 more)
                                        🏢 Vendor: NetScaler
                                        📅 Updated: 2026-06-30

                                        📝 Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Profile and associated with the virtual server (of type LB, CS, VPN) or the service configured on NetScaler

                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                          [?]EUVD Bot » 🤖 🌐
                                          @EUVD_Bot@mastodon.social

                                          🚨 EUVD-2026-40313

                                          📊 Score: 6.5/10 (CVSS v3.1)
                                          📅 Updated: 2026-06-30

                                          📝 A flaw was found in GLib. An out-of-bounds read of only 2 bytes can occur in the g_date_time_get_ymd function in the glib/gdatetime.c file when an invalid GDateTime object produced by the g_date_time_add_full function is processed. This flaw can corrupt the date output and potentially cause log...

                                          🔗 euvd.enisa.europa.eu/vulnerabi

                                            [?]EUVD Bot » 🤖 🌐
                                            @EUVD_Bot@mastodon.social

                                            🚨 EUVD-2026-40314

                                            📊 Score: 6.5/10 (CVSS v3.1)
                                            📅 Updated: 2026-06-30

                                            📝 A flaw was found in GLib. A buffer over-read can occur in the g_regex_replace function when used with the `G_REGEX_RAW` compile flag and case-change replacement escapes because the string_append function processes matched substrings using UTF-8 functions that assume valid UTF-8 input, even when...

                                            🔗 euvd.enisa.europa.eu/vulnerabi

                                              [?]EUVD Bot » 🤖 🌐
                                              @EUVD_Bot@mastodon.social

                                              🚨 EUVD-2026-40319

                                              📊 Score: 7.5/10 (CVSS v3.1)
                                              📅 Updated: 2026-06-30

                                              📝 A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malformed D-Bus introspection XML, specifically with a <node> element nested within other elements like <method>, <signal>, <property> or <arg>. This i...

                                              🔗 euvd.enisa.europa.eu/vulnerabi

                                                [?]EUVD Bot » 🤖 🌐
                                                @EUVD_Bot@mastodon.social

                                                🚨 EUVD-2026-40318

                                                📊 Score: 5.9/10 (CVSS v3.1)
                                                📅 Updated: 2026-06-30

                                                📝 A flaw was found in GLib. The D-Bus client-side implementation of the DBUS_COOKIE_SHA1 SASL authentication mechanism does not validate the cookie_context parameter received from the server. A malicious D-Bus server can supply a cookie_context containing path traversal sequences, causing the cli...

                                                🔗 euvd.enisa.europa.eu/vulnerabi

                                                  [?]EUVD Bot » 🤖 🌐
                                                  @EUVD_Bot@mastodon.social

                                                  🚨 EUVD-2026-40316

                                                  📊 Score: 7.3/10 (CVSS v3.1)
                                                  📅 Updated: 2026-06-30

                                                  📝 A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list function in the gkeyfile.c file when loading a key file with an empty value. This flaw can cause an out-of-bounds access of 1 byte or a denial of service when the out-of-bounds access crosses a page...

                                                  🔗 euvd.enisa.europa.eu/vulnerabi

                                                    [?]EUVD Bot » 🤖 🌐
                                                    @EUVD_Bot@mastodon.social

                                                    🚨 EUVD-2026-40315

                                                    📊 Score: 6.5/10 (CVSS v3.1)
                                                    📅 Updated: 2026-06-30

                                                    📝 A flaw was found in GLib. A buffer over-read can occur in g_io_channel_read_line_backend() in the giochannel.c file when a custom line terminator with a length greater than one is set, causing memcmp to read past the GString buffer. This vulnerability can cause a minor information disclosure of...

                                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                                      [?]EUVD Bot » 🤖 🌐
                                                      @EUVD_Bot@mastodon.social

                                                      🚨 EUVD-2026-40312

                                                      📊 Score: 6.5/10 (CVSS v3.1)
                                                      📅 Updated: 2026-06-30

                                                      📝 A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-serialiser.c file when doing an alignment padding check because the bounds check uses > instead of >=, causing an out-of-bounds read of only 1 byte. This issue can cause a minor info...

                                                      🔗 euvd.enisa.europa.eu/vulnerabi

                                                        [?]EUVD Bot » 🤖 🌐
                                                        @EUVD_Bot@mastodon.social

                                                        🚨 EUVD-2026-40311

                                                        📊 Score: 9.3/10 (CVSS v3.1)
                                                        📦 Product: LlamaFactory
                                                        🏢 Vendor: hiyouga
                                                        📅 Updated: 2026-06-30

                                                        📝 LLaMA-Factory through 0.9.5 contains a remote code execution vulnerability that allows attackers with WebUI access to execute arbitrary Python code by supplying a malicious model path in the Chat or Training interfaces. The application passes user-suppl...

                                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                                          [?]BeyondMachines :verified: » 🤖 🌐
                                                          @beyondmachines1@infosec.exchange

                                                          MCBS LLC Discloses Network Breach Impacting Patient PII and PHI

                                                          MCBS LLC, a medical billing provider, suffered a network breach in late 2025 that exposed the personal and health information of patients across seven healthcare practices. The company is offering identity protection services to affected individuals.

                                                          ****

                                                          beyondmachines.net/event_detai

                                                            [?]𝔸𝕟𝕠𝕟𝕪𝕞𝕠𝕦𝕤 :verified: » 🌐
                                                            @youranonnewsirc@nerdculture.de

                                                            ... [SENSITIVE CONTENT]

                                                            Geopolitical: The US and Iran have agreed to halt strikes in the Persian Gulf, with plans for talks in Qatar (June 29-30). Meanwhile, Israel launched strikes in southern Lebanon despite a recent framework agreement.

                                                            Technology: OpenAI and Anthropic are restricting new AI model releases for US government cybersecurity review (June 29).

                                                            Cybersecurity: CISA added a new vulnerability to its Known Exploited Vulnerabilities Catalog (June 29). The OTCC warns AI is compressing operational technology (OT) attack timelines to hours, challenging traditional defenses (June 30).

                                                              [?]deafnews » 🤖 🌐
                                                              @deafnews@infosec.exchange

                                                              [?]TechWire ⚡ » 🤖 🌐
                                                              @techwire@social.gamefan.net

                                                              Is your Pixel popping? Some users report bizarre audio glitch

                                                              A strange popping noise is coming out of some Pixel phones.

                                                              androidauthority.com/pixel-pho

                                                              [Android Authority]

                                                                [?]Negative PID SL » 🌐
                                                                @negativepid@mastodon.social

                                                                [?]TechWire ⚡ » 🤖 🌐
                                                                @techwire@social.gamefan.net

                                                                The Samsung Galaxy Watch 8 LTE model is still at a record-low price on Amazon!

                                                                The flagship Samsung watch is over $130 off at just $265.99, making it more affordable than the Bluetooth version.

                                                                androidauthority.com/samsung-g

                                                                [Android Authority]

                                                                  [?]Dumb Password Rules » 🤖 🌐
                                                                  @dumbpasswordrules@infosec.exchange

                                                                  This dumb password rule is from Citi.

                                                                  * Password is case-insensitive
                                                                  * Can't use ANY special characters (although, adding special characters increases the "password strength" meter?!)
                                                                  * Allows for a minimum password length of 6 characters
                                                                  * No runs of more than two identical characters (eg. "aaa" is not allowed.)
                                                                  * Does not allow you...

                                                                  dumbpasswordrules.com/sites/ci

                                                                    [?]urlDNA.io :verified: » 🤖 🌐
                                                                    @urldna@infosec.exchange

                                                                    Possible Phishing 🎣
                                                                    on: ⚠️hxxps[:]//rga158[.]webwave[.]dev
                                                                    🧬 Analysis at: urldna.io/scan/6a4347123b77500

                                                                      [?]The New Oil » 🤖 🌐
                                                                      @thenewoil@mastodon.thenewoil.org

                                                                      [?]Peter N. M. Hansteen » 🌐
                                                                      @pitrh@mastodon.social

                                                                      [?]TechWire ⚡ » 🤖 🌐
                                                                      @techwire@social.gamefan.net

                                                                      Our best look yet at Samsung’s new wide foldable

                                                                      Case designs for the wide-style Galaxy Z Fold 8 have appeared online, and some show the phone inside them. | Image: Android Headlines Samsung is expected to unveil its next generation of foldables at a Galaxy Unpacked e…

                                                                      theverge.com/tech/959372/samsu

                                                                      [The Verge]

                                                                        [?]urlDNA.io :verified: » 🤖 🌐
                                                                        @urldna@infosec.exchange

                                                                        Possible Phishing 🎣
                                                                        on: ⚠️hxxps[:]//bigpondmailmm[.]weebly[.]com
                                                                        🧬 Analysis at: urldna.io/scan/6a433f643b77500

                                                                          Back to top - More...