voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Inside the Cross-Platform Propagation of a New Gafgyt Variant C0XMO
A new Gafgyt botnet variant named C0XMO has been discovered that spreads by exploiting a stack buffer overflow vulnerability in DD-WRT router firmware. Unlike earlier versions, this malware separates its lateral movement capabilities into a standalone Python script, enabling more efficient targeting of various system architectures including ARM, MIPS, PowerPC, and x86. The malware establishes persistence through cron jobs and shell profile modifications, eliminates competing botnets, and supports 19 different DDoS attack methods. Its scanner component performs weak-credential brute-force attacks on Telnet and SSH services while also exploiting multiple HTTP-based vulnerabilities and Android Debug Bridge unauthorized access. The malware connects to command-and-control infrastructure and demonstrates significantly more sophisticated architecture compared to traditional IoT botnets.
Pulse ID: 6a20a73f2ecb12c1ffd10df5
Pulse Link: https://otx.alienvault.com/pulse/6a20a73f2ecb12c1ffd10df5
Pulse Author: AlienVault
Created: 2026-06-03 22:14:23
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Android #CyberSecurity #DDoS #DoS #Gafgyt #HTTP #InfoSec #IoT #Malware #OTX #OpenThreatExchange #Python #RAT #RCE #RPC #SSH #Telnet #Vulnerability #bot #botnet #AlienVault
We noticed the Rockchip RK3572 mid-range HMI SoC a couple of months ago, and Forlinx has launched the first system-on-module (FET3572-C SoM) based on the processor, along with a development board (OK3572-C) and BSP (Board Support Package) with a fairly recent Linux 6.12 kernel. The octa-core Cortex-A73/A53 processor features a 4 TOPS NPU (the same as in the RK3588) and targets HMI applications leveraging Edge AI for consumer electronics, industrial control, edge computing, smart security, and in-vehicle terminals. Forlinx FET3572-C Rockchip RK3572 system-on-module Specifications: SoC – Rockchip RK3572 or RK3572J Octa-core CPU – 2x Arm Cortex-A73 @ up to 2.2 GHz+ 2x Arm Cortex-A53 @ up to 2.1 GHz + 4x Arm Cortex-A53 @ up to 2.1 GHz GPU – Arm Mali-G310V2 MC1 with support for OpenGL ES 1.1/2.0/3.2, OpenCL 3.0, and Vulkan 1.4 VPU Hardware Encoding -H.264, H265, 4K @ 60fps Hardware Decoding – H.264, H.265, VP9, AV1, AVS2, [...]
The post Forlinx launches Rockchip RK3572 system-on-module (SoM) and development board with Linux 6.12 BSP appeared first on CNX Software - Embedded Systems News.
Saint-Cyr L'École: Permanences Logiciels Libres : pc et smartphones, Le samedi 6 juin 2026 de 14h00 à 17h00. https://www.agendadulibre.org/events/35086 #root66 #logiciellibre #linux #smartphone #android #adieuWindows #permanence #gnuLinux
🧵 6/n BLOODY FINALLY, meaningful results on #FydeOS! 😅
👉 SWAP exists, already! (the point!)
👉 confirmed, Ctrl+Alt+t brings up a terminal (i've previously enabled a bunch of dev modes, in order to install the #Linux #Subsystem, as well as the #Android subsystem, which might've influenced my results)
👉 good news, everybody! 🤣 By default, we seem to get 2x the RAM in #SWAP space, on FydeOS! (that's what "free -h" says!)
👉 imma not bother to ID where exactly that swap space lives.
👉 👀 img alt txt
更新されたよ、見に来てね!→ 【ダイジェスト】信頼の土台を測り直す日 #Android ゼロデイから #SecureBoot 期限まで2026/6/3 #News #Security #Linux #KDE https://www.youtube.com/shorts/jzb2COomfdo
更新されたよ、見に来てね!→ 信頼の土台を測り直す日 #Android ゼロデイから #SecureBoot 期限まで2026/6/3 #News #Security #Linux #KDE https://www.youtube.com/watch?v=OLtJo-1O8AM
HelixNotes (hat tip @riiku )
https://helixnotes.com
#FOSS #markdown #Privacy #NoteTakingApp #helixnotes #android #windows #macos #Linux
"Cybersecurity researchers have disclosed details of a new malicious supply chain campaign that's targeting developers using OpenAI Codex through a legitimate-looking remote web UI.
The tool, named codexui-android, is advertised on GitHub and npm as a remote web UI for OpenAI Codex, attracting over 29,000 weekly downloads. The package is still available for download from the repository.
What makes this activity noteworthy is that it's not a traditional attack that uses a typosquat or throwaway package to trick developers. Rather, the malicious code is embedded into a functional npm package that has undergone active development. The associated GitHub repository remains clean.
"And for the past month, every single invocation has been quietly exfiltrating your Codex authentication tokens to an attacker-controlled server," Aikido Security researcher Charlie Eriksen said.
The nefarious changes are said to have been introduced about a month after the package was published to the registry, likely in an effort to build user trust and expand its reach. The npm account associated with the package is "friuns" (aka Igor Levochkin)."
https://thehackernews.com/2026/06/openai-codex-authentication-tokens.html
#AI #GenerativeAI #OpenAI #Codex #Android #CyberSecurity #NPM #GitHub
Scrambled #exif #Privacy in un clic per le tue #foto su #Android
@opensource @tecnologia
https://webappsmagazine.blogspot.com/2026/06/scrambled-exif-privacy-in-un-clic-per.html
A dangerous no-code Android malware known as BTMOB is raising fresh concerns after new research from ESET highlighted its ability to lower the barriers for cybercriminals. The Android remote access trojan (RAT) includes a toolkit that lets attackers generate new payloads and customise phishing lures without coding skills, potentially leading to faster-evolving threats and wider device compromise.
Story here: https://www.techfinitive.com/no-code-android-banking-trojan-btmob-could-cause-devastating-damage-says-eset/
A stealthy RAT burrowing deep into Android devices
BTMOB is an Android remote access trojan that evolved from SpySolr malware and poses significant threats beyond traditional banking trojans. The malware combines phishing-led delivery with an APK builder interface that enables rapid payload generation without coding skills. Distributed through fake app stores impersonating streaming services, cryptocurrency platforms, and government agencies, BTMOB abuses Android Accessibility Services to gain elevated permissions. Marketed as malware-as-a-service with a reported $5,000 lifetime license, it provides adversaries with capabilities to exfiltrate sensitive data, capture screenshots, record device activity, and establish remote control. The tool's customizable phishing lures have been adapted for specific regions, including campaigns impersonating Argentine tax authorities, making it a rapidly evolving threat with global reach.
Pulse ID: 6a1cc51d7c8f832f819a0a43
Pulse Link: https://otx.alienvault.com/pulse/6a1cc51d7c8f832f819a0a43
Pulse Author: AlienVault
Created: 2026-05-31 23:32:45
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#APK #Android #Bank #BankingTrojan #CyberSecurity #Government #InfoSec #Malware #MalwareAsAService #OTX #OpenThreatExchange #Phishing #RAT #RemoteAccessTrojan #Trojan #bot #cryptocurrency #AlienVault
Auditor app version 92 released:
https://github.com/GrapheneOS/Auditor/releases/tag/92
See the linked release notes for a summary of the improvements over the previous release and a link to the full changelog.
Forum discussion thread:
https://discuss.grapheneos.org/d/35939-auditor-app-version-92-released
New financial support for #FDroid thanks to FLOSS/Fund
Looper Player porta su Linux e Android un lettore musicale locale con audio ad alta fedeltà, interfaccia glassmorphism e totale privacy.
#musica #linux #android #opensource #audiophile #musicplayer #privacy #desktoplinux
New BTMOB and Grandoreiro malware campaigns are targeting Android and Windows users with phishing, banking credential theft, and remote access capabilities.
Researchers say the operations are expanding across multiple regions and using increasingly stealthy delivery methods.
👉 https://digitalescapetools.com/2026/05/btmob-grandoreiro-malware-campaigns.html
Saint-Cyr L'École: Permanences Logiciels Libres : pc et smartphones, Le samedi 30 mai 2026 de 14h00 à 17h00. https://www.agendadulibre.org/events/35139 #root66 #linux #smartphone #android #adieuWindows #permanence #gnuLinux #logicielsLibres
We've released Midori Android 11.8.3 with multiple improvements, including privacy and security enhancements, and we've also updated to Mozac 151.
https://play.google.com/store/apps/details?id=org.midorinext.android
They Built a Legendary #Privacy Tool. Now They’re Sworn Enemies
How #GrapheneOS lead developer #DanielMicay's legal fights with his former partner #JamesDonaldson over #CopperheadOS led to the privacy-focused tool's creation
There’s a lot of love all over the world for GrapheneOS, the gold standard of mobile security. There’s very little love between the two guys at the center of its history.
https://www.wired.com/story/they-built-privacy-tool-grapheneos-now-sworn-enemies/
https://archive.ph/K2uO1
#Android
WhatsApp is testing “After reading” disappearing messages on iOS, letting users delete chats 5 minutes, 1 hour or 2 hours after they are opened. 📱
Unread messages auto-delete after 24 hours, but screenshots and external captures can still bypass retention limits despite added privacy controls. 🔒
#TechNews #WhatsApp #Apple #iPhone #iOS #Android #Privacy #Encryption #Signal #Telegram #Cybersecurity #Messaging #Security #FOSS #Mobile #Meta #Tech #Instagram