voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]ABC Feeds » 🤖 🌐
@abcfeeds@rssfeed.media

Politically connected company won $15m government contract despite 'red flags'
By Liam Walsh

A cybersecurity company with financial red flags received a $15m state contract in the dying days of the Miles government.

abc.net.au/news/2026-06-09/cry

    [?]deafnews » 🤖 🌐
    @deafnews@infosec.exchange

    CVE-2026-50751: Check Point VPN Zero-Day Exploited by Qilin Affiliate; Patch Released June 8 deafnews.it/en/article/cve-202

      [?]TechWire ⚡ » 🤖 🌐
      @techwire@social.gamefan.net

      Apple announces iPadOS 27

      Today at Apple's Worldwide Developers Conference, the company announced new features coming to the iPad with iPadOS 27, including optimizations such as apps launching up to 30 percent faster by intelligently preloading …

      theverge.com/tech/942546/apple

      [The Verge]

        [?]Daniel Marsh » 🤖 🌐
        @danielmarsh@social.thepixelspulse.com

        A new wave of the Shai-Hulud attack has been uncovered, targeting 19 PyPI packages vital for scientific computing. This campaign, tracked by Socket, uses Python's startup hooks and the Bun runtime to steal GitHub tokens, cloud credentials, and more. It highlights a critical vulnerability in the software supply chain that affects developers and researchers alike.

        tpp.blog/2d4wjkk

        🤖 This post was AI-generated.

          [?]TechWire ⚡ » 🤖 🌐
          @techwire@social.gamefan.net

          Google’s most affordable AI plan just got much more tempting

          Google steals some of Apple Intelligence's thunder with a big AI Plus price cut.

          androidauthority.com/google-ai

          [Android Authority]

            [?]urlDNA.io :verified: » 🤖 🌐
            @urldna@infosec.exchange

            Possible Phishing 🎣
            on: ⚠️hxxps[:]//1inch-extension[.]vercel[.]app/
            🧬 Analysis at: urldna.io/scan/6a2614293b77500

              [?]TechWire ⚡ » 🤖 🌐
              @techwire@social.gamefan.net

              Amazon is launching AI-generated custom merch

              Amazon is expanding its print-on-demand features to AI-generated designs created using Alexa for Shopping for products like T-shirts, water bottles, and hoodies. Shoppers can use text prompts to generate images that are…

              theverge.com/news/945905/amazo

              [The Verge]

                [?]knoppix » 🌐
                @knoppix95@mastodon.social

                Proton confirms development of a Proton Drive Linux desktop client, built on its unified SDK used across Windows, macOS, iOS, Android and web. 🐧
                The update notes Linux support expansion alongside existing VPN, Mail and Pass apps, while Drive remains web-based until the client ships. 🔐

                @protonprivacy

                🔗 omgubuntu.co.uk/2026/06/proton

                  [?]readbeanicecream » 🌐
                  @readbeanicecream@mastodon.social

                  [?]EUVD Bot » 🤖 🌐
                  @EUVD_Bot@mastodon.social

                  🚨 EUVD-2025-210081

                  📊 Score: n/a
                  📦 Product: Linux, Linux, Linux (+2 more)
                  🏢 Vendor: Linux
                  📅 Updated: 2026-06-08

                  📝 In the Linux kernel, the following vulnerability has been resolved:

                  drm/vkms: Convert to DRM's vblank timer

                  Replace vkms' vblank timer with the DRM implementation. The DRM
                  code is identical in concept, but differs in implementation.

                  Vblank timers a...

                  🔗 euvd.enisa.europa.eu/vulnerabi

                    [?]EUVD Bot » 🤖 🌐
                    @EUVD_Bot@mastodon.social

                    🚨 EUVD-2026-35077

                    📊 Score: 8.7/10 (CVSS v3.1)
                    📦 Product: W20E
                    🏢 Vendor: Tenda
                    📅 Updated: 2026-06-08

                    📝 A vulnerability was detected in Tenda W20E 15.11.0.6. This vulnerability affects the function formSetPortMirror of the file /goform/setPortMirror. Performing a manipulation of the argument portMirrorMirroredPorts results in stack-based buffer overflow. The attack...

                    🔗 euvd.enisa.europa.eu/vulnerabi

                      [?]EUVD Bot » 🤖 🌐
                      @EUVD_Bot@mastodon.social

                      🚨 EUVD-2026-35118

                      📊 Score: n/a
                      📅 Updated: 2026-06-08

                      📝 Shenzhen Tenda Technology Co., Ltd Tenda FH451 V1.0.0.9 was discovered to contain a stack overflow in the list1 parameter of the fromDhcpListClient function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.

                      🔗 euvd.enisa.europa.eu/vulnerabi

                        [?]TheHackerWire » 🤖 🌐
                        @thehackerwire@mastodon.social

                        🟠 CVE-2026-11523 - High (8.8)

                        A flaw has been found in Tenda W20E 15.11.0.6. This issue affects the function formPortalAuth of the file /goform/PortalAuth of the component Web Management Interface. Executing a manipulation of the argument gotoUrl can lead to stack-based buffer...

                        🔗 thehackerwire.com/vulnerabilit

                        CVE Alert: CVE-2026-11523

                        Alt...CVE Alert: CVE-2026-11523

                          [?]TheHackerWire » 🤖 🌐
                          @thehackerwire@mastodon.social

                          🟠 CVE-2026-11524 - High (8.8)

                          A vulnerability has been found in Tenda W20E 15.11.0.6. Impacted is the function modifyWifiFilterRules of the file /goform/modifyWifiFilterRules of the component Web Management Interface. The manipulation of the argument wifiFilterListRemark leads...

                          🔗 thehackerwire.com/vulnerabilit

                          CVE Alert: CVE-2026-11524

                          Alt...CVE Alert: CVE-2026-11524

                            [?]TheHackerWire » 🤖 🌐
                            @thehackerwire@mastodon.social

                            🟠 CVE-2026-11528 - High (8.8)

                            A vulnerability was found in Tenda AC18 15.03.05.05. The affected element is the function sub_45304 of the file /goform/getRebootStatus of the component Web Management Interface. The manipulation of the argument callback results in stack-based buf...

                            🔗 thehackerwire.com/vulnerabilit

                            CVE Alert: CVE-2026-11528

                            Alt...CVE Alert: CVE-2026-11528

                              [?]Hackread.com » 🌐
                              @Hackread@mstdn.social

                              📣🚨 Watch out as hackers are cloning Ghidra, dnSpy, ILSpy and other free tool sites to spread malware through fake downloads, including RemusStealer, crypto clippers and loaders.

                              Read: hackread.com/hackers-clone-ghi

                                [?]BeyondMachines :verified: » 🤖 🌐
                                @beyondmachines1@infosec.exchange

                                State of (in)security - Week 23, 2026

                                During the week of June 1–8, 2026, there were 15 advisories and 30 incidents (both up week-over-week), affecting roughly 4.8 million individuals, led by the 2.6 million-record DentaQuest breach. Most incidents were caused by malware/ransomware (9), software vulnerabilities (6), and unauthorized access (5), concentrated in the IT/technology and healthcare sectors. Notable threats included multiple actively exploited zero-days and critical RCE flaws (Cisco, Oracle WebLogic, VS Code, Windows Netlogon, and Android). Major ransomware and supply-chain breaches affect healthcare, hospitality, and financial organizations.

                                **Apply Oracle's July 2024 Critical Patch Update (and all subsequent patches) to your WebLogic Server installations right away, as attackers are actively exploiting this flaw. In the meantime, restrict or disable access to the T3 and IIOP protocols. If the server does not serve public content for external visitors, make sure WebLogic servers are only reachable from trusted internal networks, not the open internet.**

                                beyondmachines.net/event_detai

                                  [?]TechWire ⚡ » 🤖 🌐
                                  @techwire@social.gamefan.net

                                  WWDC 2026: All the news from Apple’s developers conference

                                  Apple’s annual WWDC event is kicking off on June 8th with a keynote presentation starting at 1PM ET / 10AM PT, where Apple will announce major updates to iOS, macOS, and its other operating systems. Among those updates …

                                  theverge.com/tech/944110/wwdc-

                                  [The Verge]

                                    [?]TechWire ⚡ » 🤖 🌐
                                    @techwire@social.gamefan.net

                                    NotebookLM’s Gemini 3.5 upgrade adds a cloud computer and help finding sources

                                    Google is rolling out "across the board" updates to NotebookLM. The AI-powered note-taking app now uses Google's upgraded Gemini 3.5 model, which will allow it to respond with "more accurate and reliable information," a…

                                    theverge.com/tech/944325/googl

                                    [The Verge]

                                      [?]urlDNA.io :verified: » 🤖 🌐
                                      @urldna@infosec.exchange

                                      Possible Phishing 🎣
                                      on: ⚠️hxxp[:]//face5boosk[.]webcindario[.]com/index[.]html
                                      🧬 Analysis at: urldna.io/scan/6a25e3953b77500

                                        [?]BSides Edmonton » 🌐
                                        @bsidesedmonton@infosec.exchange

                                        Huge shout-out to the MacEwan Ethical Hacking Club / club.eh for coming on board as a Community Partner for BSides Edmonton 2026! We love seeing local student communities step up to help drive grassroots infosec talent forward.

                                        Want to join them in supporting the local tech ecosystem? Our Gold sponsorships are still available, but they are moving fast! Lock in your partnership today: bsidesyeg.org/SponsorApplicati

                                          [?]Malicious Extension Bot » 🤖 🌐
                                          @malicious_browser_bot@infosec.exchange

                                          extension Douyin Downloader seems malicious. Its badness score is 95/100!

                                          ```json
                                          {"id": "diemfnamcadcbnpokadljkcmehcllgjj", "score": 95, "platform": "chrome", "name": "Douyin Downloader"}
                                          ```

                                            [?]Malicious Extension Bot » 🤖 🌐
                                            @malicious_browser_bot@infosec.exchange

                                            extension Silent Glacier Ii – Priva seems malicious. Its badness score is 85/100!

                                            ```json
                                            {"id": "aaddmojoibcjdlghmeeeenlgenaogcif", "score": 85, "platform": "chrome", "name": "Silent Glacier Ii \u2013 Priva"}
                                            ```

                                              [?]Malicious Extension Bot » 🤖 🌐
                                              @malicious_browser_bot@infosec.exchange

                                              extension Pdf Forge seems malicious. Its badness score is 95/100!

                                              ```json
                                              {"id": "aihkhafnbpomjadbkobpnojmojgcilah", "score": 95, "platform": "chrome", "name": "Pdf Forge"}
                                              ```

                                                [?]Malicious Extension Bot » 🤖 🌐
                                                @malicious_browser_bot@infosec.exchange

                                                extension Sota VPN seems malicious. Its badness score is 100/100!

                                                ```json
                                                {"id": "jjbjcelpjgagfgdpobjkpjnkhffmnlda", "score": 100, "platform": "chrome", "name": "Sota VPN"}
                                                ```

                                                  [?]TechWire ⚡ » 🤖 🌐
                                                  @techwire@social.gamefan.net

                                                  This colorful new e-reader with Android might finally make you forget about your Kindle

                                                  A $200 e-reader with stylus input and none of Amazon's ecosystem baggage.

                                                  androidauthority.com/boox-go-6

                                                  [Android Authority]

                                                    [?]EUVD Bot » 🤖 🌐
                                                    @EUVD_Bot@mastodon.social

                                                    🚨 EUVD-2026-35042

                                                    📊 Score: 5.3/10 (CVSS v3.1)
                                                    📦 Product: Leave Management System
                                                    🏢 Vendor: CodeAstro
                                                    📅 Updated: 2026-06-08

                                                    📝 A vulnerability has been found in CodeAstro Leave Management System 1.0. This impacts an unknown function of the file /admin/search_staff_for_deletion.php. The manipulation of the argument Name leads to sql injection. Remote exploitation of...

                                                    🔗 euvd.enisa.europa.eu/vulnerabi

                                                      [?]EUVD Bot » 🤖 🌐
                                                      @EUVD_Bot@mastodon.social

                                                      🚨 EUVD-2026-35041

                                                      📊 Score: 9.5/10 (CVSS v3.1)
                                                      📦 Product: Cordova Plugin InAppBrowser
                                                      🏢 Vendor: Apache Software Foundation
                                                      📅 Updated: 2026-06-08

                                                      📝 ## Summary

                                                      The iOS implementation of `cordova-plugin-inappbrowser` passes the `id` field from a `WKScriptMessage` body to `commandDelegate sendPluginResult:callbackId:` with no format validation (`CDVWKInAppBrowser.m:5...

                                                      🔗 euvd.enisa.europa.eu/vulnerabi

                                                        [?]EUVD Bot » 🤖 🌐
                                                        @EUVD_Bot@mastodon.social

                                                        🚨 EUVD-2026-35040

                                                        📊 Score: 2.3/10 (CVSS v3.1)
                                                        📦 Product: MT6000, AX1800, X3000 (+5 more)
                                                        🏢 Vendor: GL.iNet
                                                        📅 Updated: 2026-06-08

                                                        📝 A flaw has been found in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE3000 4.8.x. This affects an unknown function of the component glnassys. Executing a manipulation can lead to use of hard-coded cryptographic ...

                                                        🔗 euvd.enisa.europa.eu/vulnerabi

                                                          [?]EUVD Bot » 🤖 🌐
                                                          @EUVD_Bot@mastodon.social

                                                          🚨 EUVD-2026-35039

                                                          📊 Score: 8.7/10 (CVSS v3.1)
                                                          📦 Product: CX12L
                                                          🏢 Vendor: Tenda
                                                          📅 Updated: 2026-06-08

                                                          📝 A vulnerability was detected in Tenda CX12L 16.03.53.12. The impacted element is the function setSchedWifi of the file /goform/openSchedWifi of the component Wi-Fi Schedule Configuration Endpoint. Performing a manipulation of the argument schedStartTime/schedEnd...

                                                          🔗 euvd.enisa.europa.eu/vulnerabi

                                                            [?]BeyondMachines :verified: » 🤖 🌐
                                                            @beyondmachines1@infosec.exchange

                                                            Evanston Township High School Cancels Classes Following Ransomware Attack

                                                            Evanston Township High School District 202 canceled summer classes and activities following a ransomware attack that crippled its internet, phone, and email systems. The district is working with the FBI and cybersecurity experts to investigate the extent of the breach and restore access to its computer infrastructure.

                                                            ****

                                                            beyondmachines.net/event_detai

                                                              [?]gtbarry » 🌐
                                                              @gtbarry@mastodon.social

                                                              IBM, AT&T accused by whistleblower of covering up foreign hacks

                                                              IBM and AT&T failed to disclose multiple breaches over years by attackers linked to foreign governments and made false assurances about the security of their systems in order to win and keep federal contracts.

                                                              fortune.com/2026/06/04/ibm-att

                                                                [?]Hugo | DevOps | Cybersecurity » 🌐
                                                                @hugovalters@mastodon.social

                                                                Crm Perks: 45 CVEs, 16 critical/high, avg CVSS 6.4. 100% unpatched. Trust Score: D. Top flaws: URL redirection (CWE-601) & deserialization (CWE-502). Patch urgently.

                                                                valtersit.com/vendors/crm-perk

                                                                  [?]TechWire ⚡ » 🤖 🌐
                                                                  @techwire@social.gamefan.net

                                                                  Intel introduced ‘the first processor in the x86 series and the first 8086 microprocessor’ on this day in 1978 — CPU was designed as a temporary substitute for the delayed iAPX 432 project

                                                                  June 8, 1978, marked the birth of the x86 architecture with the arrival of the 16-bit Intel 8086 CPU.

                                                                  tomshardware.com/pc-components

                                                                  [Tom's Hardware]

                                                                    [?]ChiefGyk3D » 🌐
                                                                    @chiefgyk3d@social.chiefgyk3d.com

                                                                    Level up your pentesting game! 💻 Learn how AI can help you find vulnerabilities, speed up fixes, and streamline your workflow. This short dives into Neo, a new AI agent for security pros. Check it out!

                                                                    youtube.com/watch?v=lE-GzjrWiYE

                                                                    🔴 LIVE

                                                                    Alt...🔴 LIVE

                                                                      [?]TechWire ⚡ » 🤖 🌐
                                                                      @techwire@social.gamefan.net

                                                                      ChatGPT's new memory upgrade is powerful - and could poison every answer it gives you

                                                                      OpenAI says ChatGPT's memory is getting better. But my tests show outdated assumptions, personal profiling, and wrong details that could quietly distort future answers.

                                                                      zdnet.com/article/chatgpts-new

                                                                      [ZDNet]

                                                                        [?]Dissent Doe :cupofcoffee: [She/Her] » 🌐
                                                                        @PogoWasRight@infosec.exchange

                                                                        This may be reality, but it's really not OK:

                                                                        Mid and South Essex NHS Foundation Trust has disclosed that ~2,380 patient test records were stolen in a cyberattack reported to it in December 2025.

                                                                        The breach was at Synnovis, and this was the June 2024 ransomware attack by Qilin.

                                                                        So it was a year and a half before Synnovis first notified the Trust, and then another six months for the Trust to announce it, and they still haven't figured out who to notify individually, it seems.

                                                                        echo-news.co.uk/news/26174950.

                                                                        They weren't the only trust to recently announce the breach. Bedfordshire Hospitals NHS Foundation Trust also made an announcement last week; almost 33,000 of their patients had data stolen in the attack:

                                                                        bbc.com/news/articles/c1d2wwyd

                                                                        And as a reminder: Qilin leaked the data, so all these people who haven't been notified have had their data available on the dark web.

                                                                          [?]urlDNA.io :verified: » 🤖 🌐
                                                                          @urldna@infosec.exchange

                                                                          Possible Phishing 🎣
                                                                          on: ⚠️hxxps[:]//ankushdubey18[.]github[.]io/Netflix-Ui-With-responsiveness/
                                                                          🧬 Analysis at: urldna.io/scan/6a24218f3b77500

                                                                            [?]Malicious Extension Bot » 🤖 🌐
                                                                            @malicious_browser_bot@infosec.exchange

                                                                            extension Arctic Plain – Privacy Mi seems malicious. Its badness score is 93/100!

                                                                            ```json
                                                                            {"id": "ejmchodobpmalkpilpokleikpbikpnma", "score": 93, "platform": "chrome", "name": "Arctic Plain \u2013 Privacy Mi"}
                                                                            ```

                                                                              [?]Malicious Extension Bot » 🤖 🌐
                                                                              @malicious_browser_bot@infosec.exchange

                                                                              extension Cherry Quartz – Crisp Min seems malicious. Its badness score is 98/100!

                                                                              ```json
                                                                              {"id": "kkncndflgbbnkghpcgfffocholgapjdn", "score": 98, "platform": "chrome", "name": "Cherry Quartz \u2013 Crisp Min"}
                                                                              ```

                                                                                [?]Malicious Extension Bot » 🤖 🌐
                                                                                @malicious_browser_bot@infosec.exchange

                                                                                extension ChatzyCRM: Todo lo que necesitas en un solo CRM para WhatsApp seems malicious. Its badness score is 95/100!

                                                                                ```json
                                                                                {"id": "bpjhhjboiagpamldnmjdmjadhajipicf", "score": 95, "platform": "chrome", "name": "ChatzyCRM: Todo lo que necesitas en un solo CRM para WhatsApp"}
                                                                                ```

                                                                                  [?]Malicious Extension Bot » 🤖 🌐
                                                                                  @malicious_browser_bot@infosec.exchange

                                                                                  extension Happ VPN seems malicious. Its badness score is 96/100!

                                                                                  ```json
                                                                                  {"id": "cmfbmehojkikkfdellcpieaapccgemdl", "score": 96, "platform": "chrome", "name": "Happ VPN"}
                                                                                  ```

                                                                                    [?]TechWire ⚡ » 🤖 🌐
                                                                                    @techwire@social.gamefan.net

                                                                                    Nvidia and SK hynix ink multi-year memory co-development and supply agreement — seeks to address extended d…

                                                                                    Nvidia and SK hynix have inked a multi-year collaboration agreement under which the companies will co-develop next-generation memory technologies for Nvidia's upcoming platforms and SK hynix will supply them to Nvidia.

                                                                                    tomshardware.com/pc-components

                                                                                    [Tom's Hardware]

                                                                                      Back to top - More...