voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Browser-Only Ransomware: From LLM Hallucinations to a Practical Attack Technique
Check Point Research discovered a novel browser-native ransomware technique that emerged from AI-generated code attributed to DeepSeek. The attack leverages the File System Access API in Chromium browsers to encrypt files without requiring native payloads, exploits, or app installations. A malicious sample disguised as an AI image upscaler was analyzed, revealing how LLMs can connect theoretical platform risks to practical attack workflows. The technique is particularly concerning on Android, where Chrome allows web pages to access photo directories after user approval through legitimate permission prompts. By using social engineering with a fake AI enhancement tool, attackers can persuade victims to grant folder-level access, enabling file exfiltration and encryption entirely within the browser. This demonstrates how frontier AI models can autonomously design novel attack chains by reasoning across existing knowledge.
Pulse ID: 6a4500ffd044499efcd70db1
Pulse Link: https://otx.alienvault.com/pulse/6a4500ffd044499efcd70db1
Pulse Author: AlienVault
Created: 2026-07-01 11:58:55
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Android #Browser #CheckPoint #Chrome #CyberSecurity #Edge #Encryption #InfoSec #OTX #OpenThreatExchange #RAT #RansomWare #SocialEngineering #bot #AlienVault
A new Android malware from Google
https://f-droid.org/2026/07/01/adv-malware.html
#HackerNews #Android #Malware #Google #Security #Threats #Cybersecurity #TechNews
More than 200k users said NO!
More than 70 organisations signed a letter saying NO!
#FDroid wrote posts on why NOT!
We've talked with you and your representatives, around the world.
We've made the #KeepAndroidOpen website to explain it.
If you read the #Android tech news, you saw it.
If you use a search engine, you found it.
If you've asked their own #Gemini, you got the summary.
But who didn't see, hear or read anything from above? Yes, #Google
For your saftety? https://f-droid.org/2026/07/01/adv-malware.html
I already have a couple of nice OTP clients on my phones and love to have alternatives, in case one is not compiled anymore for newer Android OS
Many years ago I stubled upon authy a closed variable OTP client for Android. It ran on Linux win64 Android
Authy has a model where it allows you to seamlessly sync your OTP parameters with their double blind server network Double blind just like private bin, a magnificient piece of encryption software you should also know / learn about.
The authy sync network never sees your data since there are multiple encryption layers.
Without checking the fine print (just like your ex- there is none) I used authy, migrating my multitude of OTP records because I loved the convenience of auto server sync. THe migration took a redacted time (many OTP records reside here) and I added a redacted ammount of records afterwards...
Horrors krept up when I wanted to see my OTP records from within authy, not the output the codes themselves
I could not find that option, which my other OTP client has.
I send a tweet to authy verified account which I had frequent daily & fun conversations with, promoting the program on twitter (many many years ago).
I asked which external switch I could use in the linux client to export my OTP codes
Authy twitter: dead silence...
On my tweets I normally got responses within 5 - 30 minutes
Baffled at this sudden chance in character (just like your ex- who ignores you in your own house all of a sudden) I did extensive research in the subject matter
What do they do you ask?
Simple:
Details
The OTP records are in encrypted vault(s) on your device, which could be your linux machine Android or mac / iphone
In order to get a OTP record decrypted contact was needed with the authy sync server network
Your client is not allowed to contact the servers for a set ammount of time, locking you out of accessing all your accounts which you got trapped in the authy jail, just like your failed relationship with your ex-
When contact is allowed again, you will usually stop messing with your main account, leaving you only to create new OTP records for your accounts, defeating the convenience of server sided sync.
There is no cloud, just someone else computer!
After that debacle I fetched Open and ad free Android clients, of which none have Linux programs. These clients give full export posibilities and backup
I am looking now for Linux clients and executed
apt install otpapt install otpclient Otpclient gave me a warning that my OS memlocklimit is too low, which means I need to tune that first to sane levels. otherwise insecure memory use may be the result for otpclient.
I shall execute what is written in the last source link
I have now linux native OTP programs in which I can import my OTP data on my Android devices
This is where freeOTP shall also participate
mnn otp(1)
man otpclient(1)
https://en.wikipedia.org/wiki/One-time_password
https://en.wikipedia.org/wiki/Multi-factor_authentication
https://en.wikipedia.org/wiki/OTPW
https://en.wikipedia.org/wiki/FreeOTP
https://github.com/paolostivanin/OTPClient/wiki/Secure-Memory-Limitations
#2FA #MFA #OTP #programming #Linux #Android #authy #bad #One #Time #Password #export
AlterSend is a free and open-source app for transferring files directly between devices without using cloud storage.
Files are sent peer-to-peer with end-to-end encryption, no accounts, no uploads, and no file size limits. It works across Windows, macOS, Linux, Android, and iOS.
More details: https://digitalescapetools.com/tools/tool.html?id=altersend
#OpenSource #Privacy #FileTransfer #Linux #Windows #macOS #Android #iOS
Android 17: Google erschwert das Knacken der Bildschirmsperre
Mit Android 17 führt Google strengere Limits für PIN-Eingaben am Sperrbildschirm ein. Damit soll das Erraten von PIN oder Passwörtern deutlich erschwert werden.
#Android #Datenschutz #Google #IT #Passwörter #Security #Updates #news
Wetter ist gerade ja Thema. Dass ausgerechnet wetter.com aktuell ganz oben in den Play-Store-Charts steht, sagt leider viel über Android-Apps: 10 Tracker, 37 Berechtigungen - für Wetter. 🌦
In der Datenschutzerklärung: genaue Standortdaten auch für ortsbezogene Werbung, auch durch Dritte. Nach WetterOnline und Databroker-Files sollte eigentlich klar sein, wohin so etwas führen kann.
Nehmt DWD WarnWetter, Kleine Wettervorschau Deutschland, Cirrus oder Breezy Weather aus F-Droid.
Weg mit dem Überwachungsmist. 🗑
https://reports.exodus-privacy.eu.org/de/reports/com.wetter.androidclient/latest/
https://netzpolitik.org/2026/wegen-handy-standortdaten-wetter-online-droht-bussgeld/
Let's get this out of the way: corporations like Google that have been busily scraping users' data to feed their monstrosities don't give a hoot about privacy. This response isn't about privacy or cybercrime. It's about Google trying to protect its own.
Google says EU proposals to open up its search data and Android operating system to competitors "could lead to people’s search queries being hacked and an increase in cybercrime across the content."
Wired: Top Google Security Staff Warn Search Data Could Be Hacked if EU Rules Change https://www.wired.com/story/top-google-security-staff-warn-search-data-could-be-hacked-thanks-to-eu-plans/ @WIRED @mattburgess #Google #infosec #privacy #Android
Polyhex Technology has introduced the DEBIX T62P-01, a compact industrial SBC built around Texas Instruments Sitara AM62P quad Cortex-A53/dual Cortex-R5F SoC designed for industrial IoT (IIoT), robotics, Edge computing, and smart terminal/HMI applications. Measuring 88 × 59 mm, the board supports up to 8GB of LPDDR4 memory, optional eMMC storage up to 256GB, and a MicroSD card slot. It also features two GbE ports, including one supporting PoE via an external PD module, as well as Wi-Fi 6 and Bluetooth 5.4 connectivity. Security features include hardware secure boot with Root-of-Trust (RoT), an Arm TrustZone-based Trusted Execution Environment (TEE), and a Hardware Security Module (HSM) for cryptographic operations. DEBIX T62P-01 specifications: SoC – Texas Instruments AM62P (AM62P54CVMHIAMHR) Application CPU – Quad-core Arm Cortex-A53 up to 1.4 GHz Real-time cores 1x Arm Cortex-R5F up to 800MHz (integrated with MCU channel) 1x Arm Cortex-R5F up to 800MHz (for device management) GPU – Imagination [...]
The post DEBIX T62P-01 Raspberry Pi-like industrial SBC features TI AM62P SoC, dual GbE with TSN, multi-domain UART appeared first on CNX Software - Embedded Systems News.
Żar się leje dzisiaj z nieba,
w pełnym słońcu stać nie trzeba!
Usiądź w cieniu sobie bracie,
zrób porządek w swoim gracie.
Zamiast pocić się na słońcu,
zadbaj o prywatność w końcu!
Pozbądź się trackerów w chwilę,
niech nie śledzą cię debile.
Kilkanaście minut minie,
a ty ulżysz swej maszynie.
Poczuj wolność należycie,
zmień cyfrowe swoje życie!
👉 https://eteryu.space/cyfrowa-higiena-podczas-przerwy-na-kawe-jak-atwo-odzyskac-kontrole-nad-telefonem/
👉 https://eteryu.space/cyfrowa-higiena-bez-kompromisow-jak-atwo-odizolowac-toksyczne-aplikacje/
(Nie osądzajcie 🫣🫣🫣)
#polskiefedi #fedipl #prywatność #cybersecurity #bezpieczeństwo #inwigilacja #android #ios #smartfon #technologia #blog #upał #lato #wolność #Mastopl
NFile: il #filemanager #opensource per #Android con #player #video e lettore #PDF integrati
@tecnologia @opensource
https://webappsmagazine.blogspot.com/2026/06/nfile-il-file-manager-open-source-per.html
🔮ArcaneChat Spoilers✨
some say first impressions are important, more when you are trying to convince friends and family to join you in ArcaneChat
that is why the next ArcaneChat version comes with a new revamped welcome screen!
bonus: the logo levitates smoothly, to give it that magic touch ✨
#ArcaneChat #ArcaneChatSpoilers #decentralization #opensource #design #UI #privacy #security #encryption #e2ee #android #anonymous #SoftwareDevelopment #androiddev #europe #european #autonomy #diday
Primed for #Malware: Stop Selling Compromised #Android Devices
https://www.eff.org/deeplinks/2026/06/primed-malware-stop-selling-compromised-android-devices
Saint-Cyr L'École: Permanences Logiciels Libres : pc et smartphones, Le jeudi 2 juillet 2026 de 14h00 à 17h00. https://www.agendadulibre.org/events/35087 #root66 #logiciellibre #linux #smartphone #android #adieuWindows #permanence #gnuLinux
Orange Pi 6 is a compact single board computer (SBC) powered by CIX P1 (CD8180) 12-core Arm Cortex-A720/A520 SoC coupled with up to 32 GB 128-bit LPDDR5 memory. It shares many of the features of the Orange Pi 6 Plus board introduced last October, but comes in a smaller and lighter form factor (90 x 90mm vs 115 x 100mm), features two 2.5GbE ports instead of two 5GbE jacks, drops support for LiPo batteries, and is offered with lower RAM capacity options (8GB-24GB vs 16GB-64GB). Orange Pi 6 specifications: SoC – Cix P1 (Codename: CD8180) 12-core DynamIQ processor 4x Cortex‑A720 big cores @ up to 2.6 GHz 4x Cortex‑A720 medium cores @ up to 2.4 GHz 4x Cortex‑A520 LITTLE cores @ up to 1.8 GHz Cache – 12MB shared L3 cache GPU – Arm Immortalis G720 MC10 with hardware ray-tracing support, graphics APIs: Vulkan 1.3, OpenGL ES 3.2, OpenCL 3.0 [...]
The post Orange Pi 6 CIX CD8180 12-core Arm SBC gets 2.5GbE networking, smaller form factor, drops battery support appeared first on CNX Software - Embedded Systems News.
Zerion is live on Product Hunt today.
A messenger with no servers, no accounts, no phone number. Everything over Tor, post-quantum encryption on every message.
If you believe privacy should be the default, a quick upvote genuinely helps us reach more people who need this.