voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]deafnews » 🤖 🌐
@deafnews@infosec.exchange

[?]TechWire ⚡ » 🤖 🌐
@techwire@social.gamefan.net

This massive 8TB SanDisk SSD is $1,200 off at Best Buy - but not for long

The price of SSDs has been skyrocketing, but you can still save nearly 64% on the 8TB SanDisk Desk Drive external SSD from Best Buy - until the deal ends tomorrow.

zdnet.com/article/sandisk-8tb-

[ZDNet]

    [?]Negative PID SL » 🌐
    @negativepid@mastodon.social

    [?]TechWire ⚡ » 🤖 🌐
    @techwire@social.gamefan.net

    This mesh system will make your at-home Wi-Fi lightning fast - and it's still 30% off for Prime Day

    The TP-Link Deco 7 Pro is perfect for large houses with many devices, and each configuration is on sale right now.

    zdnet.com/article/tp-link-deco

    [ZDNet]

      [?]urlDNA.io :verified: » 🤖 🌐
      @urldna@infosec.exchange

      Possible Phishing 🎣
      on: ⚠️hxxps[:]//dcncgbhug[.]web[.]app
      🧬 Analysis at: urldna.io/scan/6a3f12903b77500

        [?]TechWire ⚡ » 🤖 🌐
        @techwire@social.gamefan.net

        OpenAI details what to expect from the three new models in its GPT-5.6 preview

        Meet the heavenly Sol, Terra, and Luna trio.

        androidauthority.com/gpt-5-6-m

        [Android Authority]

          [?]TechWire ⚡ » 🤖 🌐
          @techwire@social.gamefan.net

          Expect a brutal price tag for one of the first Snapdragon 8 Elite Gen 6 Pro phones

          Xiaomi's next flagship could break the 6,000 yuan mark.

          androidauthority.com/xiaomi-18

          [Android Authority]

            [?]TechWire ⚡ » 🤖 🌐
            @techwire@social.gamefan.net

            Our favorite Prime Day gadgets under $100 you don’t need but will really want

            Govee’s floor lamps are just $60. | Image: Govee: Prime Day has a funny way of convincing you to buy things you weren’t shopping for in the first place. You sign on intending to buy something sensible you actually need,…

            theverge.com/gadgets/957473/pr

            [The Verge]

              [?]EUVD Bot » 🤖 🌐
              @EUVD_Bot@mastodon.social

              🚨 EUVD-2026-39913

              📊 Score: 8.2/10 (CVSS v3.1)
              📦 Product: budibase
              🏢 Vendor: budibase
              📅 Updated: 2026-06-26

              📝 Budibase is an open-source low-code platform. Prior to 3.39.0, an anonymous attacker who knows or can enumerate a workspace id (app_...) and an S3-source datasource id (ds_...) can call this endpoint with no auth and obtain a 15-minute pre-signed PUT URL m...

              🔗 euvd.enisa.europa.eu/vulnerabi

                [?]EUVD Bot » 🤖 🌐
                @EUVD_Bot@mastodon.social

                🚨 EUVD-2024-55645

                📊 Score: 6.7/10 (CVSS v3.1)
                📦 Product: Traveler for Microsoft Outlook
                🏢 Vendor: HCLSoftware
                📅 Updated: 2026-06-26

                📝 The HCL Traveler for Microsoft Outlook libraries are being flagged as potentially malicious software or an unrecognized application.

                🔗 euvd.enisa.europa.eu/vulnerabi

                  [?]EUVD Bot » 🤖 🌐
                  @EUVD_Bot@mastodon.social

                  🚨 EUVD-2026-39912

                  📊 Score: 7.4/10 (CVSS v3.1)
                  📦 Product: budibase
                  🏢 Vendor: budibase
                  📅 Updated: 2026-06-26

                  📝 Budibase is an open-source low-code platform. Prior to 3.39.3, the application server exposes an unauthenticated endpoint that generates S3 PutObject presigned URLs using credentials stored in a workspace datasource. The route is protected only by the reca...

                  🔗 euvd.enisa.europa.eu/vulnerabi

                    [?]EUVD Bot » 🤖 🌐
                    @EUVD_Bot@mastodon.social

                    🚨 EUVD-2026-39911

                    📊 Score: 7.3/10 (CVSS v3.1)
                    📦 Product: budibase
                    🏢 Vendor: budibase
                    📅 Updated: 2026-06-26

                    📝 Budibase is an open-source low-code platform. Prior to 3.39.0, `GET /api/chat-links/:instance/:token/handoff` is a public endpoint (no auth required) that performs a permanent, state-changing operation: it binds an external chat identity (Slack/Discord/MS ...

                    🔗 euvd.enisa.europa.eu/vulnerabi

                      [?]EUVD Bot » 🤖 🌐
                      @EUVD_Bot@mastodon.social

                      🚨 EUVD-2026-39910

                      📊 Score: 9.6/10 (CVSS v3.1)
                      📦 Product: budibase
                      🏢 Vendor: budibase
                      📅 Updated: 2026-06-26

                      📝 Budibase is an open-source low-code platform. Prior to 3.39.9, `POST /api/pwa/process-zip` at packages/server/src/api/routes/static.ts:24 accepts a builder-uploaded .zip, extracts it with extract-zip@2.0.1 into a temp directory, then for each entry listed ...

                      🔗 euvd.enisa.europa.eu/vulnerabi

                        [?]EUVD Bot » 🤖 🌐
                        @EUVD_Bot@mastodon.social

                        🚨 EUVD-2026-39909

                        📊 Score: n/a
                        📦 Product: golang.org/x/image/tiff
                        🏢 Vendor: golang.org/x/image
                        📅 Updated: 2026-06-26

                        📝 The TIFF decoder can panic when decoding an invalid image with an out-of-bounds strip offset.

                        🔗 euvd.enisa.europa.eu/vulnerabi

                          [?]EUVD Bot » 🤖 🌐
                          @EUVD_Bot@mastodon.social

                          🚨 EUVD-2026-39908

                          📊 Score: 5.0/10 (CVSS v3.1)
                          📦 Product: notepad-plus-plus
                          🏢 Vendor: notepad-plus-plus
                          📅 Updated: 2026-06-26

                          📝 Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, a local process in the same interactive Windows session can send a malformed WM_COPYDATA message to Notepad++ using the COPYDATA_FULL_CMDLINE path. The handler appe...

                          🔗 euvd.enisa.europa.eu/vulnerabi

                            [?]EUVD Bot » 🤖 🌐
                            @EUVD_Bot@mastodon.social

                            🚨 EUVD-2026-39907

                            📊 Score: 7.8/10 (CVSS v3.1)
                            📦 Product: notepad-plus-plus
                            🏢 Vendor: notepad-plus-plus
                            📅 Updated: 2026-06-26

                            📝 Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the <GUIConfig name="commandLineInterpreter"> tag in config.xml is read by NppXml::value() (Parameters.cpp:6430) and stored in _nppGUI._commandLineInterpreter witho...

                            🔗 euvd.enisa.europa.eu/vulnerabi

                              [?]EUVD Bot » 🤖 🌐
                              @EUVD_Bot@mastodon.social

                              🚨 EUVD-2026-39906

                              📊 Score: 7.5/10 (CVSS v3.1)
                              📦 Product: notepad-plus-plus
                              🏢 Vendor: notepad-plus-plus
                              📅 Updated: 2026-06-26

                              📝 Notepad++ is a free and open-source source code editor. Prior to 8.9.6.4, NppCommands.cpp checks the HMAC of the on-disk shortcuts.xml at the moment a user command fires (Time-of-Check). However, the command payload is taken from the in-m...

                              🔗 euvd.enisa.europa.eu/vulnerabi

                                [?]EUVD Bot » 🤖 🌐
                                @EUVD_Bot@mastodon.social

                                🚨 EUVD-2026-39905

                                📊 Score: 7.5/10 (CVSS v3.1)
                                📦 Product: notepad-plus-plus
                                🏢 Vendor: notepad-plus-plus
                                📅 Updated: 2026-06-26

                                📝 Notepad++ is a free and open-source source code editor. From 8.9.4 until 8.9.6, Notepad++ contains a local privilege escalation vulnerability in the installer. During installation, the installer invokes powershell.exe without using an abs...

                                🔗 euvd.enisa.europa.eu/vulnerabi

                                  [?]EUVD Bot » 🤖 🌐
                                  @EUVD_Bot@mastodon.social

                                  🚨 EUVD-2026-39904

                                  📊 Score: 7.8/10 (CVSS v3.1)
                                  📦 Product: notepad-plus-plus
                                  🏢 Vendor: notepad-plus-plus
                                  📅 Updated: 2026-06-26

                                  📝 Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the <Command> tag text content inside <UserDefinedCommands> in shortcuts.xml is read by NppXml::value(aNode) (Parameters.cpp:3658) in the feedUserCmds() function an...

                                  🔗 euvd.enisa.europa.eu/vulnerabi

                                    [?]EUVD Bot » 🤖 🌐
                                    @EUVD_Bot@mastodon.social

                                    🚨 EUVD-2026-39903

                                    📊 Score: 7.8/10 (CVSS v3.1)
                                    📦 Product: notepad-plus-plus
                                    🏢 Vendor: notepad-plus-plus
                                    📅 Updated: 2026-06-26

                                    📝 Notepad++ is a free and open-source source code editor. In v8.9.6.1, isInTrustedDirectory() does NOT canonicalize the path before checking. It uses a prefix-based check (PathIsPrefix() or equivalent) that matches paths starting with trust...

                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                      [?]Ivy Cyber » 🤖 🌐
                                      @ivycyber@privacysafe.social

                                      🛡️ news & tips across the

                                      “License Plate Cameras Are Tracking Your Life Without a Warrant Automatic license plate readers sold by surveillance companies are now using a technology called SignalTrace that uses sensors in the ALPRs to scrape electr...”

                                      mastodon.social/@gtbarry/11681

                                      🤖 via RSS feed. Not an endorsement.

                                        [?]TechWire ⚡ » 🤖 🌐
                                        @techwire@social.gamefan.net

                                        How I use Siri mode in the iOS 27 Camera app to ask questions about anything I see

                                        Now in iOS 27 developer beta, the Camera app adds a new Siri mode that provides AI-based assistance for anything within view. Here's what you need to try it yourself.

                                        zdnet.com/article/how-i-use-si

                                        [ZDNet]

                                          [?]TierraSapiens » 🤖 🌐
                                          @tierrasapiens@mastodon.social

                                          🖲️
                                          ⚫ Robinhood Cuts Access Approval Time to Support High-Velocity Development
                                          🔗 darkreading.com/application-se

                                          The fintech company's engineering-first application security team re-engineered the process for granting system access, making it easier and more secure for developers

                                            [?]TechWire ⚡ » 🤖 🌐
                                            @techwire@social.gamefan.net

                                            3 flagship Android phones are cheaper now than they were on day one of Prime Day, but not for long

                                            Prime Day is nearly over, but these three flagship deals have actually improved since the sale started.

                                            androidauthority.com/flagship-

                                            [Android Authority]

                                              [?]urlDNA.io :verified: » 🤖 🌐
                                              @urldna@infosec.exchange

                                              Possible Phishing 🎣
                                              on: ⚠️hxxp[:]//amazon-clone-green-seven[.]vercel[.]app
                                              🧬 Analysis at: urldna.io/scan/6a3e3fd33b77500

                                                [?]TechWire ⚡ » 🤖 🌐
                                                @techwire@social.gamefan.net

                                                OpenAI unveils GPT-5.6 amid US AI regulatory drama

                                                Less than 24 hours after news broke that OpenAI would stagger its next model release at the request of the Trump administration, that model, GPT-5.6, is here. On Friday, the company unveiled the limited preview of its n…

                                                theverge.com/ai-artificial-int

                                                [The Verge]

                                                  [?]TechWire ⚡ » 🤖 🌐
                                                  @techwire@social.gamefan.net

                                                  Oura Ring 5 vs. Oura Ring 4: I compared both smart rings for health tracking - you should buy this one

                                                  Your favorite smart ring is getting slimmer. Is the Oura Ring 5 worth the upgrade? I break it down.

                                                  zdnet.com/article/oura-ring-5-

                                                  [ZDNet]

                                                    [?]TechWire ⚡ » 🤖 🌐
                                                    @techwire@social.gamefan.net

                                                    Using T-Mobile abroad just got a lot pricier

                                                    Price increases make prepaid passes look like a better deal.

                                                    androidauthority.com/t-mobile-

                                                    [Android Authority]

                                                      [?]Black Cat White Hat Security » 🌐
                                                      @BCWHQuiz@defcon.social

                                                      Assessments: Front-End
                                                      Front-end development is the process of building the visual and interactive parts of websites or web applications that users interact with directly. It bridges the gap between design and backend systems, relying on three core technologies: HTML for structure, CSS for styling, and JavaScript for behavior.



                                                      Link: blackcatwhitehatsecurity.com/t

                                                      Assessments: Front-End
Front-end development is the process of building the visual and interactive parts of websites or web applications that users interact with directly. It bridges the gap between design and backend systems, relying on three core technologies: HTML for structure, CSS for styling, and JavaScript for behavior.

                                                      Alt...Assessments: Front-End Front-end development is the process of building the visual and interactive parts of websites or web applications that users interact with directly. It bridges the gap between design and backend systems, relying on three core technologies: HTML for structure, CSS for styling, and JavaScript for behavior.

                                                        [?]Negative PID SL » 🌐
                                                        @negativepid@mastodon.social

                                                        [?]The New Oil » 🤖 🌐
                                                        @thenewoil@mastodon.thenewoil.org

                                                        [?]EUVD Bot » 🤖 🌐
                                                        @EUVD_Bot@mastodon.social

                                                        🚨 EUVD-2026-39781

                                                        📊 Score: 5.3/10 (CVSS v3.1)
                                                        📦 Product: SiteGround Email Marketing
                                                        🏢 Vendor: SiteGround
                                                        📅 Updated: 2026-06-26

                                                        📝 Unauthenticated Broken Access Control in SiteGround Email Marketing <= 1.7.5 versions.

                                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                                          [?]EUVD Bot » 🤖 🌐
                                                          @EUVD_Bot@mastodon.social

                                                          🚨 EUVD-2025-210360

                                                          📊 Score: 6.5/10 (CVSS v3.1)
                                                          📦 Product: Image Carousel
                                                          🏢 Vendor: GhozyLab
                                                          📅 Updated: 2026-06-26

                                                          📝 Contributor Cross Site Scripting (XSS) in Image Carousel <= 1.0.0.41 versions.

                                                          🔗 euvd.enisa.europa.eu/vulnerabi

                                                            [?]EUVD Bot » 🤖 🌐
                                                            @EUVD_Bot@mastodon.social

                                                            🚨 EUVD-2025-210354

                                                            📊 Score: 5.3/10 (CVSS v3.1)
                                                            📦 Product: Donation Thermometer
                                                            🏢 Vendor: rhewlif
                                                            📅 Updated: 2026-06-26

                                                            📝 Unauthenticated Broken Access Control in Donation Thermometer <= 2.2.7 versions.

                                                            🔗 euvd.enisa.europa.eu/vulnerabi

                                                              [?]EUVD Bot » 🤖 🌐
                                                              @EUVD_Bot@mastodon.social

                                                              🚨 EUVD-2025-210351

                                                              📊 Score: 5.4/10 (CVSS v3.1)
                                                              📦 Product: Forget About Shortcode Buttons
                                                              🏢 Vendor: Code Amp
                                                              📅 Updated: 2026-06-26

                                                              📝 Contributor Broken Access Control in Forget About Shortcode Buttons <= 2.1.3 versions.

                                                              🔗 euvd.enisa.europa.eu/vulnerabi

                                                                [?]EUVD Bot » 🤖 🌐
                                                                @EUVD_Bot@mastodon.social

                                                                🚨 EUVD-2025-210358

                                                                📊 Score: 7.5/10 (CVSS v3.1)
                                                                📦 Product: Splash - Sport Club WordPress Theme for Basketball, Football, Hockey
                                                                🏢 Vendor: StylemixThemes
                                                                📅 Updated: 2026-06-26

                                                                📝 Contributor Local File Inclusion in Splash - Sport Club WordPress Theme for Basketball, Football, Hockey <= 4.4.3 versions.

                                                                🔗 euvd.enisa.europa.eu/vulnerabi

                                                                  [?]EUVD Bot » 🤖 🌐
                                                                  @EUVD_Bot@mastodon.social

                                                                  🚨 EUVD-2025-210356

                                                                  📊 Score: 5.3/10 (CVSS v3.1)
                                                                  📦 Product: BookPro
                                                                  🏢 Vendor: About Envato
                                                                  📅 Updated: 2026-06-26

                                                                  📝 Unauthenticated Insecure Direct Object References (IDOR) in BookPro <= 1.1.0 versions.

                                                                  🔗 euvd.enisa.europa.eu/vulnerabi

                                                                    [?]EUVD Bot » 🤖 🌐
                                                                    @EUVD_Bot@mastodon.social

                                                                    🚨 EUVD-2025-210361

                                                                    📊 Score: 6.5/10 (CVSS v3.1)
                                                                    📦 Product: BNE Testimonials
                                                                    🏢 Vendor: Kerry
                                                                    📅 Updated: 2026-06-26

                                                                    📝 Contributor Cross Site Scripting (XSS) in BNE Testimonials <= 2.0.8 versions.

                                                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                                                      [?]EUVD Bot » 🤖 🌐
                                                                      @EUVD_Bot@mastodon.social

                                                                      🚨 EUVD-2025-210357

                                                                      📊 Score: 8.8/10 (CVSS v3.1)
                                                                      📦 Product: Eagle Booking
                                                                      🏢 Vendor: Eagle-Themes
                                                                      📅 Updated: 2026-06-26

                                                                      📝 Unauthenticated Cross Site Request Forgery (CSRF) in Eagle Booking <= 1.3.4.3 versions.

                                                                      🔗 euvd.enisa.europa.eu/vulnerabi

                                                                        [?]EUVD Bot » 🤖 🌐
                                                                        @EUVD_Bot@mastodon.social

                                                                        🚨 EUVD-2025-210359

                                                                        📊 Score: 7.5/10 (CVSS v3.1)
                                                                        📦 Product: Goya Core
                                                                        🏢 Vendor: everthemess
                                                                        📅 Updated: 2026-06-26

                                                                        📝 Contributor Local File Inclusion in Goya Core < 1.0.9.4 versions.

                                                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                                                          [?]Ivy Cyber » 🤖 🌐
                                                                          @ivycyber@privacysafe.social

                                                                          🛡️ news & tips across the

                                                                          “RE: https:// mastodon.social/@Tutanota/1168 15262001889776 # NoMeansNo # Privacy # Surveillance”

                                                                          mastodon.art/@707Kat/116816645

                                                                          🤖 via RSS feed. Not an endorsement.

                                                                            [?]OTX Bot » 🤖 🌐
                                                                            @techbot@social.raytec.co

                                                                            Operation DragonReturn: China-Nexus Cyber Espionage Campaign Targeting Govt. of India/MoF Tax Infrastructure via Multi-Stage DcRAT Deployment

                                                                            A sophisticated China-aligned cyber espionage campaign targeting India's tax infrastructure was identified between May and June 2026. The operation impersonates the Income Tax Department, Ministry of Finance, exploiting the AY2026-27 ITR filing season to target corporate entities, tax professionals, chartered accountants, and taxpayers. The attack employs spear-phishing emails with malicious attachments mimicking legitimate government utilities. The multi-stage infection chain deploys DcRAT through steganographic payload concealment, fileless .NET execution, AMSI bypass, and Windows service persistence. The threat actor demonstrates operational maturity through active payload rotation achieving 0/66 detection rates, encrypted TLS-based C2 communications, and infrastructure hosted across multiple ASNs linked to China. The campaign shows overlaps with the China-nexus threat actor Silver Fox, featuring screen capture capabilities, data exfiltration, and systematic intelligence collection from high-value India...

                                                                            Pulse ID: 6a3e75975494e990e7421b4d
                                                                            Pulse Link: otx.alienvault.com/pulse/6a3e7
                                                                            Pulse Author: AlienVault
                                                                            Created: 2026-06-26 12:50:31

                                                                            Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                                              [?]deafnews » 🤖 🌐
                                                                              @deafnews@infosec.exchange

                                                                              [?]TechWire ⚡ » 🤖 🌐
                                                                              @techwire@social.gamefan.net

                                                                              Trump administration gets OpenAI to slow-track new model release over security concerns

                                                                              OpenAI limits initial rollout of new model at Trump administration's request.

                                                                              androidauthority.com/openai-li

                                                                              [Android Authority]

                                                                                [?]TechWire ⚡ » 🤖 🌐
                                                                                @techwire@social.gamefan.net

                                                                                T-Mobile just made satellite messaging far more practical with new app support

                                                                                T-Mobile satellite data quietly adds support for Discord, Signal, and LINE.

                                                                                androidauthority.com/t-mobile-

                                                                                [Android Authority]

                                                                                  Back to top - More...