voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]TechWire ⚡ » 🤖 🌐
@techwire@social.gamefan.net

OpenAI just updated how ChatGPT’s most-used model works again, details here

ChatGPT users may notice something different about the AI chatbot experience over the next few days. That’s because OpenAI is tweaking how its most-used model works.

9to5mac.com/2026/06/24/openai-

[9to5Mac]

    [?]urlDNA.io :verified: » 🤖 🌐
    @urldna@infosec.exchange

    Possible Phishing 🎣
    on: ⚠️hxxps[:]//restore-gig[.]weebly[.]com
    🧬 Analysis at: urldna.io/scan/6a4136fd3b77500

      [?]TheHackerWire » 🤖 🌐
      @thehackerwire@mastodon.social

      🔴 CVE-2026-52785 - Critical (9.9)

      OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is a SQL injection in timestamps functionality. OpenProject baseline comparison allows callers to request historic work-package attributes using t...

      🔗 thehackerwire.com/vulnerabilit

      CVE Alert: CVE-2026-52785

      Alt...CVE Alert: CVE-2026-52785

        [?]TheHackerWire » 🤖 🌐
        @thehackerwire@mastodon.social

        🟠 CVE-2026-53281 - High (8.8)

        In the Linux kernel, the following vulnerability has been resolved:

        iommu/vt-d: Avoid NULL pointer dereference or refcount corruption

        Commit 60f030f7418d ("iommu/vt-d: Avoid use of NULL after WARN_ON_ONCE")
        fixed a NULL pointer dereference in an...

        🔗 thehackerwire.com/vulnerabilit

        CVE Alert: CVE-2026-53281

        Alt...CVE Alert: CVE-2026-53281

          [?]TheHackerWire » 🤖 🌐
          @thehackerwire@mastodon.social

          🔴 CVE-2026-52780 - Critical (9.6)

          OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, cache store poisoning leads to Remote Code Execution (RCE). This vulnerability is fixed in 17.3.3 and 17.4.1.

          🔗 thehackerwire.com/vulnerabilit

          CVE Alert: CVE-2026-52780

          Alt...CVE Alert: CVE-2026-52780

            [?]Hugo | DevOps | Cybersecurity » 🌐
            @hugovalters@mastodon.social

            Zoom: 111 CVEs tracked, 33 critical/high. 94% unpatched. Trust Score: C. Buffer overflow (CWE-120) leads weaknesses. Remote work tool, remote risk. Patch now.

            valtersit.com/vendors/zoom/

              [?]TechWire ⚡ » 🤖 🌐
              @techwire@social.gamefan.net

              iPhone 17 set to break a record no flagship has touched in 15 years

              When Apple released the iPhone 17 in September, the timer started for the new flagship model breaking a record set 15 years ago. The record will take more than a year to break, but based on current rumors, the iPhone 17…

              9to5mac.com/2026/06/24/iphone-

              [9to5Mac]

                [?]TechWire ⚡ » 🤖 🌐
                @techwire@social.gamefan.net

                MacBook Ultra is coming: Six new features launching this fall

                Apple has a new MacBook Ultra rumored to launch this fall as part of its expanding ‘Ultra’ lineup. Here are six new features expected with the MacBook Ultra.

                9to5mac.com/2026/06/24/macbook

                [9to5Mac]

                  [?]ChiefGyk3D » 🌐
                  @chiefgyk3d@social.chiefgyk3d.com

                  Favorite convention hardware: the GGtag. An open-source, reprogrammable e-ink badge. Set it once and the display takes zero power to keep showing it. The battery holder is only for sound-based programming. USB works too.

                  crowdsupply.com/eurolan-ltd/gg

                    [?]urlDNA.io :verified: » 🤖 🌐
                    @urldna@infosec.exchange

                    Possible Phishing 🎣
                    on: ⚠️hxxps[:]//hxxpp-roblox[.]co
                    🧬 Analysis at: urldna.io/scan/6a415af13b77500

                      [?]TechWire ⚡ » 🤖 🌐
                      @techwire@social.gamefan.net

                      Here’s how the AirPods’ heart rate sensor fares against Apple Watch and other wearables

                      One of the flagship additions to the AirPods Pro 3 was a built-in heart-rate sensor, which allows users to track more than 50 workout types. But how accurate is it?

                      9to5mac.com/2026/06/24/heres-h

                      [9to5Mac]

                        [?]TechWire ⚡ » 🤖 🌐
                        @techwire@social.gamefan.net

                        PNY's Performance 32GB DDR5-5600 RAM becomes the cheapest 2x16GB kit— DDR5 kit gets a $70 discount

                        This 32GB DDR5 memory kit won't impress enthusiasts with its timings or design, but its aggressive price makes it difficult to overlook.

                        tomshardware.com/pc-components

                        [Tom's Hardware]

                          [?]CyberNetsecIO » 🌐
                          @netsecio@mastodon.social

                          📰 Fortinet Launches FortiSOC, an AI-Powered Unified Security Operations Platform

                          Fortinet launches FortiSOC, a new unified SOC platform! 🚀 The cloud-delivered service combines SIEM, SOAR, TI, and more, using agentic AI to automate security investigations.

                          🌐 cyber[.]netsecops[.]io

                          🔗 cyber.netsecops.io/articles/fo

                            [?]CyberNetsecIO » 🌐
                            @netsecio@mastodon.social

                            📰 Redwood AI Enters Post-Quantum Cryptography Market with Acquisition of Quantum.IQ

                            Redwood AI is moving into quantum-resistant security! ⚛️ The company announced a deal to acquire Quantum.IQ, a specialist in post-quantum cryptography (PQC) solutions.

                            🌐 cyber[.]netsecops[.]io

                            🔗 cyber.netsecops.io/articles/re

                              [?]CyberNetsecIO » 🌐
                              @netsecio@mastodon.social

                              📰 Accenture Bets $4.175B on OT Security, Acquiring Dragos, runZero, and NetRise

                              🚨 BIG MOVE: Accenture invests $4.175B in OT security, acquiring a majority stake in Dragos and buying runZero & NetRise outright. This creates an end-to-end platform to defend critical infrastructure. 🏭⚡️

                              🌐 cyber[.]netsecops[.]io

                              🔗 cyber.netsecops.io/articles/ac

                                [?]CyberNetsecIO » 🌐
                                @netsecio@mastodon.social

                                📰 CISA Adds Actively Exploited PTC and Cisco Flaws to KEV Catalog, Mandates Federal Patching

                                📢 CISA adds two actively exploited vulnerabilities to its KEV catalog: CVE-2026-12569 in PTC products and CVE-2026-20230 in Cisco UCM. Federal agencies are mandated to patch. All orgs should prioritize these now! ⚠️ ...

                                🌐 cyber[.]netsecops[.]io

                                🔗 cyber.netsecops.io/articles/ci

                                  [?]EUVD Bot » 🤖 🌐
                                  @EUVD_Bot@mastodon.social

                                  🚨 EUVD-2026-39997

                                  📊 Score: 5.3/10 (CVSS v3.1)
                                  📦 Product: restaurent-management-system, restaurent-management-system, restaurent-management-system
                                  🏢 Vendor: yashpokharna2555
                                  📅 Updated: 2026-06-28

                                  📝 A security flaw has been discovered in yashpokharna2555 restaurent-management-system. This impacts an unknown function of the file login_register.php of the component R...

                                  🔗 euvd.enisa.europa.eu/vulnerabi

                                    [?]EUVD Bot » 🤖 🌐
                                    @EUVD_Bot@mastodon.social

                                    🚨 EUVD-2026-39996

                                    📊 Score: 6.9/10 (CVSS v3.1)
                                    📦 Product: restaurent-management-system, restaurent-management-system, restaurent-management-system
                                    🏢 Vendor: yashpokharna2555
                                    📅 Updated: 2026-06-28

                                    📝 A vulnerability was identified in yashpokharna2555 restaurent-management-system. This affects an unknown function of the file /forgotpassword.php of the component POST ...

                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                      [?]EUVD Bot » 🤖 🌐
                                      @EUVD_Bot@mastodon.social

                                      🚨 EUVD-2026-39995

                                      📊 Score: 5.3/10 (CVSS v3.1)
                                      📦 Product: Hospital Management System
                                      🏢 Vendor: itsourcecode
                                      📅 Updated: 2026-06-28

                                      📝 A vulnerability was determined in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /appointment.php. This manipulation of the argument editid causes sql injection. The attack can be ...

                                      🔗 euvd.enisa.europa.eu/vulnerabi

                                        [?]urlDNA.io :verified: » 🤖 🌐
                                        @urldna@infosec.exchange

                                        Possible Phishing 🎣
                                        on: ⚠️hxxps[:]//hiworkskr909[.]weebly[.]com
                                        🧬 Analysis at: urldna.io/scan/6a4136f53b77500

                                          [?]𝔸𝕟𝕠𝕟𝕪𝕞𝕠𝕦𝕤 :verified: » 🌐
                                          @youranonnewsirc@nerdculture.de

                                          ... [SENSITIVE CONTENT]

                                          Geopolitical tensions escalate with US-Iran strikes and Russia's Crimea declaration. In technology, AI market volatility rises as OpenAI's GPT-5.6 launch delays, while China's GLM 5.2 impresses. Cybersecurity faces urgent threats: CISA mandates fixing exploited Cisco flaws (June 28), and the FBI warns of Russian Signal hacks (June 28). AI also fuels cyberattacks, emphasizing hybrid security models.

                                            [?]Dumb Password Rules » 🤖 🌐
                                            @dumbpasswordrules@infosec.exchange

                                            This dumb password rule is from AirAsia.

                                            - Between 8 and 16 characters
                                            - Must contain a number, a lowercase letter, and an uppercase letter
                                            - Special characters allowed, but not periods, commas, tildes, or angle brackets

                                            dumbpasswordrules.com/sites/ai

                                              [?]TechWire ⚡ » 🤖 🌐
                                              @techwire@social.gamefan.net

                                              These are the best Prime Day deals on MacBook Air, MacBook Pro, more (up to $430 off)

                                              We are now officially into day 2 of the massive Amazon Prime Day event, and it’s time to look at the best MacBook deals up for grabs this year. We have $150 off across the M5 MacBook Air lineup and up to $250 the 2026 M…

                                              9to5mac.com/2026/06/24/these-a

                                              [9to5Mac]

                                                [?]deafnews » 🤖 🌐
                                                @deafnews@infosec.exchange

                                                [?]TechWire ⚡ » 🤖 🌐
                                                @techwire@social.gamefan.net

                                                Eddy Cue says ‘better and more’ coming to Apple TV

                                                Apple Services Head Eddy Cue has said that “better and more” programming is coming to Apple TV after accepting the 2026 Entertainment Person of the Year award at Cannes. Cue and producer Jerry Bruckheimer had already in…

                                                9to5mac.com/2026/06/24/eddy-cu

                                                [9to5Mac]

                                                  [?]urlDNA.io :verified: » 🤖 🌐
                                                  @urldna@infosec.exchange

                                                  Possible Phishing 🎣
                                                  on: ⚠️hxxps[:]//mega-finans[.]weebly[.]com/
                                                  🧬 Analysis at: urldna.io/scan/6a40c0363b77500

                                                    [?]Technoholic.me » 🌐
                                                    @technoholic@mastodon.social

                                                    A popular YouTube ad blocker, Adblock for YouTube, with 10M+ installs, can execute arbitrary JavaScript. Security risk? Handle with care. thehackernews.com/2026/06/chro

                                                      [?]:awesome:🐦‍🔥nemo™🐦‍⬛ 🇺🇦🍉 » 🌐
                                                      @nemo@mas.to

                                                      IT-Sicherheitsforscher warnen: Der YouTube-Werbeblocker „Adblock for Youtube“ (11 Mio. Installationen) könnte per serverseitiger Änderung beliebiges JavaScript einschleusen („BadBlocker“). Kein konkreter Missbrauch nachgewiesen—aber hohes Risikoprofil. Hersteller kündigt Code-Entfernung per Update an. heise.de/news/YouTube-Werbeblo 🔍🛡️

                                                        [?]:awesome:🐦‍🔥nemo™🐦‍⬛ 🇺🇦🍉 » 🌐
                                                        @nemo@mas.to

                                                        🚨 IT researchers warn that “Adblock for YouTube” (11M+ installs) could enable server-controlled JavaScript injection (“BadBlocker”). No confirmed misuse found—but risk profile is serious, and prior removed extensions raise questions. Update is reportedly coming. heise.de/en/news/YouTube-ad-bl

                                                        🙅 🚫 This one chromewebstore.google.com/deta 🙅 🚫

                                                          [?]TechWire ⚡ » 🤖 🌐
                                                          @techwire@social.gamefan.net

                                                          iPhone Ultra 3D-printed hinge problems reportedly solved, ready for September launch

                                                          Talk of a delayed launch for the upcoming iPhone Ultra now seems to have faded away, with all recent reports pointing to Apple’s foldable being unveiled during the September keynote. The latest supply-chain report says …

                                                          9to5mac.com/2026/06/24/iphone-

                                                          [9to5Mac]

                                                            [?]Negative PID SL » 🌐
                                                            @negativepid@mastodon.social

                                                            [?]TechWire ⚡ » 🤖 🌐
                                                            @techwire@social.gamefan.net

                                                            I tested MSI's Windows handheld PC, and it beats the Legion Go in a major way

                                                            MSI's Claw 8 EX AI+ is a worthy sequel, with stronger performance, better ergonomics, and highly effective cooling.

                                                            zdnet.com/article/msi-claw-8-e

                                                            [ZDNet]

                                                              [?]BeeSINT » 🌐
                                                              @BeeSINT@mastodon.social

                                                              🎣 Phishing Spotlight

                                                              Active phishing domain detected in the wild:
                                                              barclays-grads[.]twineapp[.]com

                                                              🔒 SSL exp. 2026-09-29
                                                              🌐 Stack: nginx

                                                              🔗 beesint.com/pulse/8b833905-179

                                                                [?]BeeSINT » 🌐
                                                                @BeeSINT@mastodon.social

                                                                💾 🟠 JCPenney (jcpenny.com)
                                                                ✓ Verified
                                                                📊 ~368K records compromised
                                                                📂 Dates of birth, Email addresses, Government issued IDs, Job titles +4 more
                                                                📅 2026-06-12 · disclosed 8d after incident
                                                                🌐 AkamaiNetStorage
                                                                ⚠️ No SPF/DMARC configured

                                                                🔗 beesint.com/pulse/50aa5a5a-313

                                                                  [?]hackmac » 🌐
                                                                  @hackmac@mastodon.social

                                                                  Ende Mai 2026 wurden über 20.000 Instagram-Konten über Metas KI-Support-System kompromittiert, nicht durch einen App-Exploit, sondern durch die Manipulation des automatisierten Account-Recovery-Chatbots. Der Chatbot ließ sich dazu bringen, fremde E-Mail-Adressen zu Konten hinzuzufügen. Das Problem: fehlende Verifikation bei hochsensiblen Aktionen, die der Bot autonom ausführen durfte. Meta hat reagiert.

                                                                    [?]urlDNA.io :verified: » 🤖 🌐
                                                                    @urldna@infosec.exchange

                                                                    Possible Phishing 🎣
                                                                    on: ⚠️hxxps[:]//bit[.]ly/3DAKPtZ?utsr=l1Yqe
                                                                    🧬 Analysis at: urldna.io/scan/6a40e29d3b77500

                                                                      [?]TheHackerWire » 🤖 🌐
                                                                      @thehackerwire@mastodon.social

                                                                      🔴 CVE-2026-54352 - Critical (9.6)

                                                                      Budibase is an open-source low-code platform. Prior to 3.39.9, `POST /api/pwa/process-zip` at packages/server/src/api/routes/static.ts:24 accepts a builder-uploaded .zip, extracts it with extract-zip@2.0.1 into a temp directory, then for each entr...

                                                                      🔗 thehackerwire.com/vulnerabilit

                                                                      CVE Alert: CVE-2026-54352

                                                                      Alt...CVE Alert: CVE-2026-54352

                                                                        [?]EUVD Bot » 🤖 🌐
                                                                        @EUVD_Bot@mastodon.social

                                                                        🚨 EUVD-2026-39986

                                                                        📊 Score: 6.9/10 (CVSS v3.1)
                                                                        📦 Product: Class and Exam Timetabling System, Class and Exam Timetabling System
                                                                        🏢 Vendor: SourceCodester
                                                                        📅 Updated: 2026-06-28

                                                                        📝 A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/6.php. This impacts an unknown function of the file /preview6.php. Executing a manipulation of the argu...

                                                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                                                          [?]EUVD Bot » 🤖 🌐
                                                                          @EUVD_Bot@mastodon.social

                                                                          🚨 EUVD-2026-39985

                                                                          📊 Score: 6.9/10 (CVSS v3.1)
                                                                          📦 Product: Class and Exam Timetabling System
                                                                          🏢 Vendor: SourceCodester
                                                                          📅 Updated: 2026-06-28

                                                                          📝 A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /preview.php. Performing a manipulation of the argument course_year_section results in sql inject...

                                                                          🔗 euvd.enisa.europa.eu/vulnerabi

                                                                            [?]TheHackerWire » 🤖 🌐
                                                                            @thehackerwire@mastodon.social

                                                                            🟠 CVE-2026-54353 - High (8.5)

                                                                            Budibase is an open-source low-code platform. Prior to 3.39.9, authenticated users with automation permissions can bypass Budibase's SSRF blacklist through DNS rebinding. The outbound fetch flow validates a hostname against the blacklist before th...

                                                                            🔗 thehackerwire.com/vulnerabilit

                                                                            CVE Alert: CVE-2026-54353

                                                                            Alt...CVE Alert: CVE-2026-54353

                                                                              [?]Tim Green » 🤖 🌐
                                                                              @rawveg@me.dm

                                                                              Autonomous AI agents are now discovering vulnerabilities and executing cyberattacks without human prompts, highlighting alarming security risks. The threat to personal and organisational data is escalating faster than regulations can keep up.
                                                                              Discover more at dev.to/rawveg/they-taught-them

                                                                                [?]TheHackerWire » 🤖 🌐
                                                                                @thehackerwire@mastodon.social

                                                                                🟠 CVE-2026-48778 - High (7.8)

                                                                                Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the tag in config.xml is read by NppXml::value() (Parameters.cpp:6430) and stored in _nppGUI._commandLineInterpreter without any validation, whitelist, or digital signature...

                                                                                🔗 thehackerwire.com/vulnerabilit

                                                                                CVE Alert: CVE-2026-48778

                                                                                Alt...CVE Alert: CVE-2026-48778

                                                                                  [?]eteryu » 🌐
                                                                                  @eteryu@infosec.exchange

                                                                                  Żar się leje dzisiaj z nieba,
                                                                                  w pełnym słońcu stać nie trzeba!
                                                                                  Usiądź w cieniu sobie bracie,
                                                                                  zrób porządek w swoim gracie.

                                                                                  Zamiast pocić się na słońcu,
                                                                                  zadbaj o prywatność w końcu!
                                                                                  Pozbądź się trackerów w chwilę,
                                                                                  niech nie śledzą cię debile.

                                                                                  Kilkanaście minut minie,
                                                                                  a ty ulżysz swej maszynie.
                                                                                  Poczuj wolność należycie,
                                                                                  zmień cyfrowe swoje życie!

                                                                                  👉 eteryu.space/cyfrowa-higiena-p
                                                                                  👉 eteryu.space/cyfrowa-higiena-b

                                                                                  (Nie osądzajcie 🫣🫣🫣)

                                                                                  [?]TechWire ⚡ » 🤖 🌐
                                                                                  @techwire@social.gamefan.net

                                                                                  Don’t buy a new smartphone in 2026 — buy these 5 older Android phones instead

                                                                                  Older phones are a much better proposition than new releases in 2026. These devices are the proof.

                                                                                  androidauthority.com/best-olde

                                                                                  [Android Authority]

                                                                                    [?]TechWire ⚡ » 🤖 🌐
                                                                                    @techwire@social.gamefan.net

                                                                                    I tested two of the best location-sharing apps for a month - this one was most accurate

                                                                                    Surfshark's HeyPolo is taking on the popular Life360. Here's how this latest contender in the location-sharing space competes.

                                                                                    zdnet.com/article/heypolo-vs-l

                                                                                    [ZDNet]

                                                                                      [?] Politico.eu (Unofficial RSS) » 🤖 🌐
                                                                                      @politico_eu_bot@social.espeweb.net

                                                                                      [?]urlDNA.io :verified: » 🤖 🌐
                                                                                      @urldna@infosec.exchange

                                                                                      Possible Phishing 🎣
                                                                                      on: ⚠️hxxps[:]//amazon-clone-umber-three[.]vercel[.]app
                                                                                      🧬 Analysis at: urldna.io/scan/6a4079e73b77500

                                                                                        [?]Technoholic.me » 🌐
                                                                                        @technoholic@mastodon.social

                                                                                        Turla, a Russian state-sponsored group, developed the .NET backdoor STOCKSTAY, targeting Ukrainian gov/mil and Italian foreign policy interests. Continuous updates found. thehackernews.com/2026/06/goog

                                                                                          [?]Malicious Extension Bot » 🤖 🌐
                                                                                          @malicious_browser_bot@infosec.exchange

                                                                                          extension Disparador WhatsApp WL seems malicious. Its badness score is 86/100!

                                                                                          ```json
                                                                                          {"id": "okhibkagcfjdiphcbpepgkcgpbeehmlf", "score": 86, "platform": "chrome", "name": "Disparador WhatsApp WL"}
                                                                                          ```

                                                                                            Back to top - More...