voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]Malicious Extension Bot » 🤖 🌐
@malicious_browser_bot@infosec.exchange

extension Lunethwatch seems malicious. Its badness score is 89/100!

```json
{"id": "ogkhkgoakclmbjbhbdpbapmjflflmhnc", "score": 89, "platform": "chrome", "name": "Lunethwatch"}
```

    [?]TechWire ⚡ » 🤖 🌐
    @techwire@social.gamefan.net

    T1 Phone PR firm is ‘not assisting Trump Mobile any further’

    Where's the Trump phone? We're going to keep talking about it every week. We don't have the phones we preordered yet, but this week we received unexpected news from Trump Mobile's media relations manager. If you've been…

    theverge.com/gadgets/952274/t1

    [The Verge]

      [?]urlDNA.io :verified: » 🤖 🌐
      @urldna@infosec.exchange

      Possible Phishing 🎣
      on: ⚠️hxxp[:]//login[.]credits-center[.]com/
      🧬 Analysis at: urldna.io/scan/6a34d4a73b77500

        [?]N_{Dario Fadda} » 🌐
        @nuke@poliversity.it

        ✨ Operation Endgame abbatte SocGholish: 100 server offline e 15.000 siti risanati nell’operazione contro Evil Corp

        insicurezzadigitale.com/operat

        @informatica

          [?]N_{Dario Fadda} » 🌐
          @nuke@poliversity.it

          ✨ LLMjacking si evolve: server Ollama esposti diventano il cervello di uno strumento di hacking autonomo, catturato in sviluppo da Sysdig

          insicurezzadigitale.com/llmjac

          @informatica

            [?]TechWire ⚡ » 🤖 🌐
            @techwire@social.gamefan.net

            Scammers in China sell $222 RTX 4090 with fake GPU die made out of plastic instead of real silicon — marked with 2030 production dates, the card didn't even have working VRAM

            Nvidia dupes keep getting more sophisticated as time goes on, with the latest example using a plastic die instead of real silicon on an RTX 4090.

            tomshardware.com/pc-components

            [Tom's Hardware]

              [?]The New Oil » 🤖 🌐
              @thenewoil@mastodon.thenewoil.org

              [?]EUVD Bot » 🤖 🌐
              @EUVD_Bot@mastodon.social

              🚨 EUVD-2026-37996

              📊 Score: 5.3/10 (CVSS v3.1)
              📦 Product: 2Download Connector for 2DL Hosted Checkout
              🏢 Vendor: 2download
              📅 Updated: 2026-06-19

              📝 The 2Download Connector for 2DL Hosted Checkout plugin for WordPress is vulnerable to unauthorized access in all versions up to, and including, 0.1.5. This is due to the plugin not properly verifying that a user is autho...

              🔗 euvd.enisa.europa.eu/vulnerabi

                [?]EUVD Bot » 🤖 🌐
                @EUVD_Bot@mastodon.social

                🚨 EUVD-2026-37995

                📊 Score: 5.3/10 (CVSS v3.1)
                📦 Product: STRABL – A checkout solution
                🏢 Vendor: strablengineering
                📅 Updated: 2026-06-19

                📝 The STRABL – A checkout solution plugin for WordPress is vulnerable to Missing Authentication in all versions up to and including 4.5. The plugin registers a REST API webhook endpoint at /wp-json/strabl/webhook/order with a per...

                🔗 euvd.enisa.europa.eu/vulnerabi

                  [?]EUVD Bot » 🤖 🌐
                  @EUVD_Bot@mastodon.social

                  🚨 EUVD-2026-37979

                  📊 Score: 5.9/10 (CVSS v3.1)
                  📦 Product: Armeria
                  🏢 Vendor: LY Corporation
                  📅 Updated: 2026-06-19

                  📝 A vulnerability has been identified in armeria-xds versions 1.38.0 through 1.39.0, where DataSourceStream in the xDS module can resolve control-plane-supplied filenames and environment variables without restriction, allowing a compromised or semi-trus...

                  🔗 euvd.enisa.europa.eu/vulnerabi

                    [?]BeyondMachines :verified: » 🤖 🌐
                    @beyondmachines1@infosec.exchange

                    Cisco Patches Critical Root RCE and Credential Theft Flaws in ISE

                    Cisco patched a critical root RCE vulnerability (CVE-2026-20181) and a high-severity information disclosure flaw (CVE-2026-20190) in its Identity Services Engine. These vulnerabilities allow authenticated root access or theft of hashed credentials.

                    **Make sure your Cisco ISE and ISE-PIC systems are isolated from the internet and reachable only from trusted management networks. Apply the latest patches immediately (ISE 3.3 Patch 11, 3.4 Patch 6, or 3.5 Patch 3) and for the 3.5 command-execution fix, request the hotfix from Cisco TAC now. Don't wait for Patch 4 in August 2026.**

                    beyondmachines.net/event_detai

                      [?]OTX Bot » 🤖 🌐
                      @techbot@social.raytec.co

                      Operation FlutterBridge: The FlutterShell macOS Backdoor

                      FlutterShell is a macOS backdoor campaign active from December 2025 to March 2026, identified as cluster CL-CRI-1089 under Operation FlutterBridge. The threat actors deliberately misused the Flutter framework to deliver malware through malvertising campaigns on Google and YouTube. The malware employs a two-component architecture: a thin Mach-O launcher and a large Flutter payload dylib. Across three generations, the operators rotated Apple Developer certificates, implemented progressive Dart obfuscation, and renamed bridge commands to evade detection. The backdoor uses a WKWebView to load attacker-controlled JavaScript from C2 servers, implementing a conditional execution model where commands are delivered at runtime via a JavaScript-to-native bridge called flutterInvoke. The primary impact includes Chrome browser hijacking to inject sinterfumesco[.]com as the default search provider and persistent infection through silent Sparkle framework updates.

                      Pulse ID: 6a34874a01c1f77a4c242d5b
                      Pulse Link: otx.alienvault.com/pulse/6a348
                      Pulse Author: AlienVault
                      Created: 2026-06-19 00:03:22

                      Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                        [?]TechWire ⚡ » 🤖 🌐
                        @techwire@social.gamefan.net

                        4 security upgrades in Android 17 you didn’t know about, but will be glad to have

                        Forget App Bubbles, Android 17 is all about tougher security.

                        androidauthority.com/android-1

                        [Android Authority]

                          [?]Daniel Marsh » 🤖 🌐
                          @danielmarsh@social.thepixelspulse.com

                          A massive credential leak, dubbed FortiBleed, has compromised nearly 74,000 Fortinet firewall and VPN devices globally, prompting an urgent warning from CISA. Security researchers discovered plaintext passwords and critical business intelligence circulating, enabling highly targeted attacks against major corporations and government agencies. This incident highlights how overlooked updates and exposed…

                          tpp.blog/1ts38pe

                          🤖 This post was AI-generated.

                            [?]TechWire ⚡ » 🤖 🌐
                            @techwire@social.gamefan.net

                            Apple's WebKit Rules Reportedly Cost iOS Users Almost 30% Browser Performance

                            Microsoft engineers have published benchmark results showing that a Chromium-based browser using its own rendering engine scores 28.6% higher than Safari on Apple's own Speedometer 3.1 performance test on iOS. Kyle Pflu…

                            macrumors.com/2026/06/17/webki

                            [MacRumors]

                              [?]urlDNA.io :verified: » 🤖 🌐
                              @urldna@infosec.exchange

                              Possible Phishing 🎣
                              on: ⚠️hxxps[:]//sonic999[.]weebly[.]com
                              🧬 Analysis at: urldna.io/scan/6a34c6aa3b77500

                                [?]OTX Bot » 🤖 🌐
                                @techbot@social.raytec.co

                                Popa: From Sourcing to Distribution

                                An Android proxyware SDK named Popa enrolls consumer devices including phones, tablets, and streaming boxes into a commercial residential proxy network. Operating since at least 2020, Popa and its variants (Loopop, Neupop, and Moneytiser) are distributed inside consumer streaming, IPTV, and utility applications. The SDK begins relaying third-party traffic at host-app launch without displaying informed-consent prompts in analyzed samples. Multiple variants communicate directly with NetNut SDK endpoints, sharing operational infrastructure and telemetry. Controlled testing showed traffic from Popa-enrolled devices egressing through NetNut's commercial gateway. The SDK uses encrypted Google Drive files to resolve relay servers in later versions. Analysis of over 20 publishers revealed significant links to piracy-related applications, with none observed requesting user consent despite later builds including this capability.

                                Pulse ID: 6a3447ad5cdebd92116d1c01
                                Pulse Link: otx.alienvault.com/pulse/6a344
                                Pulse Author: AlienVault
                                Created: 2026-06-18 19:31:57

                                Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                  [?]RedPacket Security » 🌐
                                  @RedPacketSecurity@mastodon.social

                                  [?]RedPacket Security » 🌐
                                  @RedPacketSecurity@mastodon.social

                                  [?]RedPacket Security » 🌐
                                  @RedPacketSecurity@mastodon.social

                                  [?]RedPacket Security » 🌐
                                  @RedPacketSecurity@mastodon.social

                                  [?]RedPacket Security » 🌐
                                  @RedPacketSecurity@mastodon.social

                                  [?]RedPacket Security » 🌐
                                  @RedPacketSecurity@mastodon.social

                                  [?]RedPacket Security » 🌐
                                  @RedPacketSecurity@mastodon.social

                                  [?]TechWire ⚡ » 🤖 🌐
                                  @techwire@social.gamefan.net

                                  This all-new OnePlus phone could deliver three days of battery life

                                  OnePlus also says the battery should last for seven years before dropping to 80% effective capacity.

                                  androidauthority.com/this-all-

                                  [Android Authority]

                                    [?]RedPacket Security » 🌐
                                    @RedPacketSecurity@mastodon.social

                                    [?]TheHackerWire » 🤖 🌐
                                    @thehackerwire@mastodon.social

                                    🟠 CVE-2026-12044 - High (8.8)

                                    SQL injection in pgAdmin 4 across every dialog template that renders ``COMMENT ON ... IS ''`` for a user-supplied description field. The Jinja templates for Domains (and their constraints), Foreign Tables, Languages, and Event Triggers, plus the V...

                                    🔗 thehackerwire.com/vulnerabilit

                                    CVE Alert: CVE-2026-12044

                                    Alt...CVE Alert: CVE-2026-12044

                                      [?]OTX Bot » 🤖 🌐
                                      @techbot@social.raytec.co

                                      Sayonara, SocGholish: Operation Endgame Disrupts Major Cybercrime Operation

                                      Pulse ID: 6a34cbbc7e4b5194d30dc276
                                      Pulse Link: otx.alienvault.com/pulse/6a34c
                                      Pulse Author: Tr1sa111
                                      Created: 2026-06-19 04:55:24

                                      Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                        [?]OTX Bot » 🤖 🌐
                                        @techbot@social.raytec.co

                                        Okendo Reviews Supply Chain Attack

                                        Pulse ID: 6a34cbc32e5c3ef69d3a9fda
                                        Pulse Link: otx.alienvault.com/pulse/6a34c
                                        Pulse Author: Tr1sa111
                                        Created: 2026-06-19 04:55:31

                                        Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                          [?]OTX Bot » 🤖 🌐
                                          @techbot@social.raytec.co

                                          May 2026 Infostealer Trend Report

                                          Pulse ID: 6a34cbb532c82b2bc8fcf275
                                          Pulse Link: otx.alienvault.com/pulse/6a34c
                                          Pulse Author: Tr1sa111
                                          Created: 2026-06-19 04:55:17

                                          Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                            [?]OTX Bot » 🤖 🌐
                                            @techbot@social.raytec.co

                                            Operation Endgame vs. SocGholish Fake Updates

                                            Pulse ID: 6a34cba974f9e6df17b34f2b
                                            Pulse Link: otx.alienvault.com/pulse/6a34c
                                            Pulse Author: Tr1sa111
                                            Created: 2026-06-19 04:55:05

                                            Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                              [?]OTX Bot » 🤖 🌐
                                              @techbot@social.raytec.co

                                              GitBait: Phishing targeting the Mexican financial sector

                                              Pulse ID: 6a34cba1798c13e7d298b759
                                              Pulse Link: otx.alienvault.com/pulse/6a34c
                                              Pulse Author: Tr1sa111
                                              Created: 2026-06-19 04:54:57

                                              Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                [?]deafnews » 🤖 🌐
                                                @deafnews@infosec.exchange

                                                Interpol: $40 Billion Scam Economy in Asia, Cybercrime Tops 30% of All Crime deafnews.it/en/article/interpo

                                                  [?]OTX Bot » 🤖 🌐
                                                  @techbot@social.raytec.co

                                                  Threat Actors Abuse claude.ai Shared Chat for ClickFix Malvertising Campaign

                                                  Pulse ID: 6a34cb9726e209e5c156ae25
                                                  Pulse Link: otx.alienvault.com/pulse/6a34c
                                                  Pulse Author: Tr1sa111
                                                  Created: 2026-06-19 04:54:47

                                                  Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                    [?]OTX Bot » 🤖 🌐
                                                    @techbot@social.raytec.co

                                                    Twitter Feed - nextronresearch - 17-06-2026

                                                    Pulse ID: 6a34cb876d27b0b85ae34466
                                                    Pulse Link: otx.alienvault.com/pulse/6a34c
                                                    Pulse Author: Tr1sa111
                                                    Created: 2026-06-19 04:54:31

                                                    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                      [?]OTX Bot » 🤖 🌐
                                                      @techbot@social.raytec.co

                                                      From package to postinstall payload: Inside the Mastra npm supply chain compromise

                                                      Pulse ID: 6a34cb8f55b5585c6ad763cf
                                                      Pulse Link: otx.alienvault.com/pulse/6a34c
                                                      Pulse Author: Tr1sa111
                                                      Created: 2026-06-19 04:54:39

                                                      Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                        [?]OTX Bot » 🤖 🌐
                                                        @techbot@social.raytec.co

                                                        Klue Integration Abused in Salesforce Data Theft | Threat Spotlight

                                                        Pulse ID: 6a34cb7f1611bbfeceb58197
                                                        Pulse Link: otx.alienvault.com/pulse/6a34c
                                                        Pulse Author: Tr1sa111
                                                        Created: 2026-06-19 04:54:23

                                                        Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                          [?]OTX Bot » 🤖 🌐
                                                          @techbot@social.raytec.co

                                                          Crypto Clipper uses Tor and worm-like propagation for persistence and control

                                                          Pulse ID: 6a34cb768b57470189224185
                                                          Pulse Link: otx.alienvault.com/pulse/6a34c
                                                          Pulse Author: Tr1sa111
                                                          Created: 2026-06-19 04:54:14

                                                          Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                                                            [?]TechWire ⚡ » 🤖 🌐
                                                            @techwire@social.gamefan.net

                                                            Save a whopping 62% on this 8-port multi-Gigabit 2.5G Ethernet switch in Amazon's Early Prime Day sale — upgrade your home network for just $49

                                                            Add more ports to your network setup with this unmanaged multi-Gigabit switch for just $49.

                                                            tomshardware.com/networking/ne

                                                            [Tom's Hardware]

                                                              [?]HackerNoon » 🌐
                                                              @hackernoon@mas.to

                                                              Defensive lessons from an exposed ICS/IoT honeypot: keep OT protocols private, block egress, kill default credentials, segment networks, and log behaviour. hackernoon.com/building-a-fake

                                                                [?]TechWire ⚡ » 🤖 🌐
                                                                @techwire@social.gamefan.net

                                                                Save a huge 85% on a two-year Surfshark VPN subscription for your home or office and grab three extra months free — huge…

                                                                This Surfshark One 2-year VPN deal is now just $75.33, giving you a huge $436.32 saving compared to a standard monthly subscription, with three months extra thrown in for free to keep you protected online.

                                                                tomshardware.com/software/vpn/

                                                                [Tom's Hardware]

                                                                  [?]urlDNA.io :verified: » 🤖 🌐
                                                                  @urldna@infosec.exchange

                                                                  Possible Phishing 🎣
                                                                  on: ⚠️hxxps[:]//t[.]co/3wB8JWip2I
                                                                  🧬 Analysis at: urldna.io/scan/6a3424333b77500

                                                                    Back to top - More...