voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
🟠 CVE-2026-62227 - High (7.7)
OpenClaw 2026.4.14 before 2026.5.26 contain a server-side request forgery vulnerability in browser snapshot routes that fail to validate post-navigation destinations. Attackers with lower-trust access can bypass OpenClaw policy checks to reach net...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62227/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-62228 - High (8.8)
OpenClaw before 2026.6.5 contain an authorization bypass vulnerability in node exec approvals that allows lower-trust callers to execute actions beyond their intended authorization by using different gateway and node environments. Attackers can ex...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62228/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Federal agents cracked a $220,000 cryptocurrency heist on Steam by tracking stolen funds to 150 Uber Eats gift cards. The malware infected 8,000 devices via 8 games that bypassed Valve's patch security. #Steam #Cybersecurity #Crypto #FBI #Gaming #TechNews
https://blazetrends.com/uber-eats-receipts-expose-220k-steam-crypto-malware-ring/?fsp_sid=54621
New Apple Store in Michigan Opening Later This Month
Apple's retail store at the Briarwood Mall in Ann Arbor, Michigan will be relocating to a new space at the mall on Friday, July 31 at 10 a.m. local time, according to the store's page. The Lawn, a new outdoor space at t…
https://www.macrumors.com/2026/07/19/new-apple-store-opening-in-michigan/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
The FBI reportedly won’t investigate ICE anymore
ICE agents hide behind masks while skulking through the halls of immigration court | Image: Michael Nigro/Pacific Press/LightRocket via Getty Images According to the New York Times, federal agents have been told that th…
https://www.theverge.com/policy/967674/fbi-wont-investigate-ice-assaults
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Apple's Latest Price Increases Go Beyond Macs and iPads
After raising prices on all Macs and iPads worldwide last month, Apple increased prices on more products and services on Friday. Apple has raised prices on Apple Music and Apple One plans around the world, iCloud+ plans…
https://www.macrumors.com/2026/07/19/apple-just-raised-more-prices/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
Hello Fediverse! 👋 #introduction
We're an indie team passionate about privacy. Standard VPNs get blocked by DPI firewalls daily, so we built something resilient.
Introducing Celestride Net: A next-gen VLESS Reality VPN. Zero logs, crypto payments, and designed to bypass strict censorship to keep the internet open & fast. 🛡️
Check out what we're building: https://celestride.pro
La privacy delle email torna protagonista con Aster Mail, un servizio open source che protegge messaggi, oggetti e allegati con crittografia avanzata. #Privacy #OpenSource #Linux #CyberSecurity #Email
https://www.linuxeasy.org/aster-mail-porta-la-posta-elettronica-privata-con-crittografia-end-to-end-e-tecnologia-post-quantum/
Microsoft faces a Windows zero-day after HiveLegacy exposed a flaw letting low-privilege users alter admin registry data under specific conditions. 🛡️
The exploit targets the User Profile Service, Microsoft is investigating, and researchers recommend tighter account controls. 🔍
#TechNews #Microsoft #Windows #ZeroDay #Cybersecurity #Vulnerability #Privacy #Security #InfoSec #DigitalRights #Technology #SoftwareUpdate #BillGates #Windows10 #Windows11
Microsoft restored a streamer's 25-year-old Xbox account after a hacker-triggered suspension locked access to games, OneDrive data, and family photos 🎮
The case reignited concerns over digital ownership after the account was first deemed irreversible before Microsoft reversed the decision 🔐
#TechNews #Microsoft #Xbox #DigitalOwnership #OneDrive #Account #Security #Privacy #Cybersecurity #Gaming #Game #Games #Gaming #GameDev #Cloud #Technology #DataProtection #Windows
LAPD will let its Flock Safety surveillance contract expire, citing unresolved civil liberties, privacy, and data-sharing concerns. 🚓
The decision follows broader scrutiny of license plate tracking over false matches, security lapses, and expanding surveillance risks. 🔒
#TechNews #Privacy #Surveillance #LAPD #FlockSafety #CivilLiberties #Cybersecurity #OpenSource #DigitalRights #Security #Technology #DataProtection #Transparency #GovTech
Cloudflare launched Precursor, replacing many CAPTCHA checks with continuous behavioral analysis of mouse, typing, scrolling, and browser activity. 🖱️
The system aims to detect advanced bots while raising fresh privacy concerns over persistent session monitoring despite limited data collection. 🔒
🔗 https://nerds.xyz/2026/07/cloudflare-precursor-bot-detection/
#TechNews #Cloudflare #Privacy #CAPTCHA #BotDetection #WebSecurity #OpenSource #Cybersecurity #DigitalRights #Technology #Browser #AI #Internet #Security
🚨 EUVD-2026-45787
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+15 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
RDMA/siw: Reject MPA FPDU length underflow before signed receive math
A malicious connected siw peer can send an iWARP FPDU whose MPA length
field (c_hdr->mpa_len, 16 bit big-endian,...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45787
🚨 EUVD-2026-45788
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+15 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
scsi: isci: Fix use-after-free in device removal path
The ISCI completion tasklet is initialized in isci_host_alloc()
(drivers/scsi/isci/init.c:496) and scheduled from both MSI-X and...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45788
🚨 EUVD-2026-45786
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+5 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
fwctl: pds: Validate RPC input size before parsing
The fwctl core allocates the device-specific RPC input buffer with
fwctl_rpc.in_len and passes that buffer to the driver callback.
...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45786
🚨 EUVD-2026-45785
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+5 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/msm: Fix shrinker deadlock
With PROVE_LOCKING on an Snapdragon X1 and VM reclaim pressure, we see:
======================================================
WARNING: possible ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45785
🚨 EUVD-2026-45787
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+15 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
RDMA/siw: Reject MPA FPDU length underflow before signed receive math
A malicious connected siw peer can send an iWARP FPDU whose MPA length
field (c_hdr->mpa_len, 16 bit big-endian,...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45787
🚨 EUVD-2026-45784
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+7 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/v3d: Fix use-after-free of CPU job query arrays on error path
The CPU job ioctl's fail label calls kvfree() on cpu_job's timestamp and
performance query arrays after v3d_job_clean...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45784
🚨 EUVD-2026-45786
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+5 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
fwctl: pds: Validate RPC input size before parsing
The fwctl core allocates the device-specific RPC input buffer with
fwctl_rpc.in_len and passes that buffer to the driver callback.
...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45786
🚨 EUVD-2026-45783
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+11 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/virtio: use uninterruptible resv lock for plane updates
virtio_gpu_cursor_plane_update() and virtio_gpu_resource_flush() lock
the framebuffer BO's dma_resv via virtio_gpu_array_l...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45783
🚨 EUVD-2026-45785
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+5 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/msm: Fix shrinker deadlock
With PROVE_LOCKING on an Snapdragon X1 and VM reclaim pressure, we see:
======================================================
WARNING: possible ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45785
🚨 EUVD-2026-45782
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+14 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Validate GPIO pin LUT table size before iterating
[Why&How]
The GPIO pin table parsers in get_gpio_i2c_info() and
bios_parser_get_gpio_pin_info() derive an element c...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45782
🚨 EUVD-2026-45784
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+7 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/v3d: Fix use-after-free of CPU job query arrays on error path
The CPU job ioctl's fail label calls kvfree() on cpu_job's timestamp and
performance query arrays after v3d_job_clean...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45784
🚨 EUVD-2026-45781
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+15 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
batman-adv: mcast: fix use-after-free in orig_node RCU release
batadv_mcast_purge_orig() removes entries from RCU-protected hlists but
does not wait for an RCU grace period before re...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45781
🚨 EUVD-2026-45780
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+15 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
batman-adv: bla: avoid double decrement of bla.num_requests
The bla.num_requests is increased when no request_sent was in progress. And
it is decremented in various places (announcem...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45780
🚨 EUVD-2026-45783
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+11 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/virtio: use uninterruptible resv lock for plane updates
virtio_gpu_cursor_plane_update() and virtio_gpu_resource_flush() lock
the framebuffer BO's dma_resv via virtio_gpu_array_l...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45783
🚨 EUVD-2026-45782
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+14 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Validate GPIO pin LUT table size before iterating
[Why&How]
The GPIO pin table parsers in get_gpio_i2c_info() and
bios_parser_get_gpio_pin_info() derive an element c...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45782
🚨 EUVD-2026-45779
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+15 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
batman-adv: bla: avoid NULL-ptr deref for claim via dropped interface
Without rtnl_lock held, a hardif might be retrieved as primary interface of
a meshif, but then (while operating ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45779
🚨 EUVD-2026-45781
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+15 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
batman-adv: mcast: fix use-after-free in orig_node RCU release
batadv_mcast_purge_orig() removes entries from RCU-protected hlists but
does not wait for an RCU grace period before re...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45781
🚨 EUVD-2026-45778
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+13 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
batman-adv: tp_meter: directly shut down timer on cleanup
batadv_tp_sender_cleanup() was calling timer_delete_sync() followed by
timer_delete() to guard against the timer handler re-...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45778
🚨 EUVD-2026-45780
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+15 more)
🏢 Vendor: Linux
📅 Updated: 2026-07-19
📝 In the Linux kernel, the following vulnerability has been resolved:
batman-adv: bla: avoid double decrement of bla.num_requests
The bla.num_requests is increased when no request_sent was in progress. And
it is decremented in various places (announcem...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45780
Hands-on: Satechi’s new color-matched MacBook Neo accessories add ports and extra functionality
A few months back, the MacBook Neo took the tech world by storm, delivering the best-value laptop of 2026. Even after the recent price increase, it remains the most recommended entry-level laptop for most people. And ju…
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
🔴 CVE-2026-12693 - Critical (9.4)
Authorization bypass through User-Controlled key vulnerability in Vimesoft Inc. Enterprise Video Platform allows Accessing Functionality Not Properly Constrained by ACLs.
This issue affects Enterprise Video Platform: from 3.11.0.0 before 3.25.0.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12693/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-12694 - Critical (9.1)
Missing Authorization vulnerability in Vimesoft Inc. Enterprise Video Platform allows Accessing Functionality Not Properly Constrained by ACLs.
This issue affects Enterprise Video Platform: from 3.11.0.0 before 3.25.0.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12694/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-63093 - High (8.8)
Cursor for Windows version 3.2.16 contains a binary planting vulnerability that allows remote attackers to achieve arbitrary code execution by placing a malicious git.exe file in the repository root directory. When a developer clones and opens a c...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63093/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-63094 - High (8.1)
SigNoz through 0.133.0 contains an open redirect vulnerability in the SSO authentication flow that allows unauthenticated attackers to steal session tokens from any user on instances configured with Google OAuth, SAML, or OIDC. Attackers can call ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63094/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-7488 - High (7.5)
Insertion of sensitive information into sent data vulnerability in IKAS Technology Inc. E-Commerce allows Retrieve Embedded Sensitive Data.
This issue affects E-Commerce: through 03062026.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-7488/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-51080 - Critical (9.8)
libpvestorage-perl v9.1.1 and libpve-storage-perl v8.3.7 were discovered to contain an XML External Entity (XXE) vulnerability.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-51080/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2025-60357 - High (8.1)
AhnLab EPP Management v1.0.14.32-6249 was discovered to contain a NoSQL injection vulnerability via the eventlog/agentEvent/list endpoint.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2025-60357/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-7189 - High (7.5)
Insertion of sensitive information into sent data vulnerability in Proliz Software Ltd. Co. Proliz's OBS allows Accessing Functionality Not Properly Constrained by ACLs.
This issue affects Proliz's OBS: before v3.6.0.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-7189/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Possible Phishing 🎣
on: ⚠️hxxps[:]//eatel484[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/6a5c2fb43b77500007bb25bc
#cybersecurity #phishing #infosec #urldna #scam #infosec
🟠 CVE-2026-8396 - High (7.5)
Improper restriction of XML external entity reference vulnerability in Netcad Software Inc. NetGIS allows Serialized Data External Linking.
This issue affects NetGIS: from 5.0.66 before 7.2.2.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-8396/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Archon OS Vulnerability Exposes AI API Keys to Web-To-Client Attacks
Archon OS versions up to 0.3.11 are vulnerable to a web-to-client attack (CVE-2025-69443) that allows malicious websites to steal AI API keys and run commands on local systems. The flaw exists because the backend port lacks authentication and CORS protections. There is no patch as of reporting.
**If you use Archon OS, know that any website you visit can silently steal your AI API keys and data from it, and there's no patch yet. Remove your API keys from Archon now. Bind port 8181 to localhost only, block outside access with your firewall, and don't run Archon when browsing untrusted websites.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/archon-os-vulnerability-exposes-ai-api-keys-to-web-to-client-attacks-o-j-c-7-f/gD2P6Ple2L
5 things Gemini still can’t do that keep me paying for ChatGPT
I use both AI chatbots daily, but only one is my default choice.
https://www.androidauthority.com/things-gemini-still-cant-do-vs-chatgpt-3687922/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Google Bets 'Agentic Defense' Strategy Can Outpace Attackers
https://www.darkreading.com/cloud-security/google-bets-agentic-defense-strategy-outpace-attackers #cybersecurity #AgenticAI #CyberDefense #Google #Wiz
The future of physical games is not looking great
Grand Theft Auto VI release won’t offer a disc. | Image: Rockstar Games This is The Stepback, a weekly newsletter breaking down one essential story from the tech world. For more on video games and physical media, follow…
https://www.theverge.com/column/967179/physical-discs-gta-vi-playstation-rockstar-games
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Possible Phishing 🎣
on: ⚠️hxxps[:]//notice38923[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a5c8bcb3b77500005fc500b
#cybersecurity #phishing #infosec #urldna #scam #infosec
GoSerpentMalware Targets GovermnentNetworks to Steal Classified Data
"A cyber-espionage campaign using the GoSerpentremote access Trojan targeted government and diplomatic organizations across Southeast Asia, silently collecting sensitive documents, dumping credentials, and staging stolen data for weeks before exfiltrating it through compromised network shares using an evolved toolchain.
Pulse ID: 6a5cbd8f107f8c3b9ebaf4d3
Pulse Link: https://otx.alienvault.com/pulse/6a5cbd8f107f8c3b9ebaf4d3
Pulse Author: cryptocti
Created: 2026-07-19 12:05:35
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #CyberSecurity #Espionage #Government #InfoSec #Malware #OTX #OpenThreatExchange #RAT #RemoteAccessTrojan #Trojan #bot #cyberespionage #cryptocti
The U.S. is launching a new AI cybersecurity coordination group to help AI developers and operators of critical infrastructure identify and share software vulnerabilities before they’re exploited.
#CyberSecurity #AI
#chrome extension NavVault: Chat Folders & Export(PDF, MD, JSON) for ChatGPT, Claude, Gemini seems malicious. Its #cybersecurity badness score is 89/100!
```json
{"id": "bifeecpjidkbnhmbbfgcfkjbfjlbkhof", "score": 89, "platform": "chrome", "name": "NavVault: Chat Folders & Export(PDF, MD, JSON) for ChatGPT, Claude, Gemini"}
```