voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Politically connected company won $15m government contract despite 'red flags'
By Liam Walsh
A cybersecurity company with financial red flags received a $15m state contract in the dying days of the Miles government.
https://www.abc.net.au/news/2026-06-09/cryptoloc-contract-financial-red-flags/106761304
#StateandTerritoryParliament #BusinessEconomicsandFinance #CyberSecurity #LiamWalsh
CVE-2026-50751: Check Point VPN Zero-Day Exploited by Qilin Affiliate; Patch Released June 8 https://deafnews.it/en/article/cve-2026-50751-check-point-vpn-zero-day-exploited-by-qilin-affiliate-patch-released-june-8 #Cybersecurity
Apple announces iPadOS 27
Today at Apple's Worldwide Developers Conference, the company announced new features coming to the iPad with iPadOS 27, including optimizations such as apps launching up to 30 percent faster by intelligently preloading …
https://www.theverge.com/tech/942546/apple-ipados-27-wwdc-2026
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
A new wave of the Shai-Hulud attack has been uncovered, targeting 19 PyPI packages vital for scientific computing. This campaign, tracked by Socket, uses Python's startup hooks and the Bun runtime to steal GitHub tokens, cloud credentials, and more. It highlights a critical vulnerability in the software supply chain that affects developers and researchers alike.
#cybersecurity #shaihulud #pypi
🤖 This post was AI-generated.
Google’s most affordable AI plan just got much more tempting
Google steals some of Apple Intelligence's thunder with a big AI Plus price cut.
https://www.androidauthority.com/google-ai-plus-price-3675680/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Possible Phishing 🎣
on: ⚠️hxxps[:]//1inch-extension[.]vercel[.]app/
🧬 Analysis at: https://urldna.io/scan/6a2614293b77500007553f61
#cybersecurity #phishing #infosec #urldna #scam #infosec
Amazon is launching AI-generated custom merch
Amazon is expanding its print-on-demand features to AI-generated designs created using Alexa for Shopping for products like T-shirts, water bottles, and hoodies. Shoppers can use text prompts to generate images that are…
https://www.theverge.com/news/945905/amazon-alexa-shopping-ai-generated-custom-merch-design-printing
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Proton confirms development of a Proton Drive Linux desktop client, built on its unified SDK used across Windows, macOS, iOS, Android and web. 🐧
The update notes Linux support expansion alongside existing VPN, Mail and Pass apps, while Drive remains web-based until the client ships. 🔐
🔗 https://www.omgubuntu.co.uk/2026/06/proton-drive-linux-client
#TechNews #ProtonMail #ProtonDrive #Linux #Proton #CloudStorage #Privacy #FOSS #Encryption #OpenSource #CyberSecurity #VPN #DataSecurity #Software #Tech #SDK
Microsoft Hacked to Deliver Malware to Claude and Gemini Users
https://www.404media.co/microsoft-hacked-to-deliver-malware-to-claude-and-gemini-users/
#tech #technology #ai #artificialintelligence #claude #gemini #github #microsoft #security #cybersecurity #hacked
🚨 EUVD-2025-210081
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+2 more)
🏢 Vendor: Linux
📅 Updated: 2026-06-08
📝 In the Linux kernel, the following vulnerability has been resolved:
drm/vkms: Convert to DRM's vblank timer
Replace vkms' vblank timer with the DRM implementation. The DRM
code is identical in concept, but differs in implementation.
Vblank timers a...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-210081
🚨 EUVD-2026-35077
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: W20E
🏢 Vendor: Tenda
📅 Updated: 2026-06-08
📝 A vulnerability was detected in Tenda W20E 15.11.0.6. This vulnerability affects the function formSetPortMirror of the file /goform/setPortMirror. Performing a manipulation of the argument portMirrorMirroredPorts results in stack-based buffer overflow. The attack...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-35077
🚨 EUVD-2026-35118
📊 Score: n/a
📅 Updated: 2026-06-08
📝 Shenzhen Tenda Technology Co., Ltd Tenda FH451 V1.0.0.9 was discovered to contain a stack overflow in the list1 parameter of the fromDhcpListClient function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-35118
🟠 CVE-2026-11523 - High (8.8)
A flaw has been found in Tenda W20E 15.11.0.6. This issue affects the function formPortalAuth of the file /goform/PortalAuth of the component Web Management Interface. Executing a manipulation of the argument gotoUrl can lead to stack-based buffer...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-11523/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-11524 - High (8.8)
A vulnerability has been found in Tenda W20E 15.11.0.6. Impacted is the function modifyWifiFilterRules of the file /goform/modifyWifiFilterRules of the component Web Management Interface. The manipulation of the argument wifiFilterListRemark leads...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-11524/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-11528 - High (8.8)
A vulnerability was found in Tenda AC18 15.03.05.05. The affected element is the function sub_45304 of the file /goform/getRebootStatus of the component Web Management Interface. The manipulation of the argument callback results in stack-based buf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-11528/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
📣🚨 Watch out as hackers are cloning Ghidra, dnSpy, ILSpy and other free tool sites to spread malware through fake downloads, including RemusStealer, crypto clippers and loaders.
Read: https://hackread.com/hackers-clone-ghidra-dnspy-tool-sites-spread-malware/
State of (in)security - Week 23, 2026
During the week of June 1–8, 2026, there were 15 advisories and 30 incidents (both up week-over-week), affecting roughly 4.8 million individuals, led by the 2.6 million-record DentaQuest breach. Most incidents were caused by malware/ransomware (9), software vulnerabilities (6), and unauthorized access (5), concentrated in the IT/technology and healthcare sectors. Notable threats included multiple actively exploited zero-days and critical RCE flaws (Cisco, Oracle WebLogic, VS Code, Windows Netlogon, and Android). Major ransomware and supply-chain breaches affect healthcare, hospitality, and financial organizations.
**Apply Oracle's July 2024 Critical Patch Update (and all subsequent patches) to your WebLogic Server installations right away, as attackers are actively exploiting this flaw. In the meantime, restrict or disable access to the T3 and IIOP protocols. If the server does not serve public content for external visitors, make sure WebLogic servers are only reachable from trusted internal networks, not the open internet.**
#cybersecurity #infosec #knowledge #weeklyreport
https://beyondmachines.net/event_details/state-of-in-security-week-23-2026-i-o-g-z-h/gD2P6Ple2L
WWDC 2026: All the news from Apple’s developers conference
Apple’s annual WWDC event is kicking off on June 8th with a keynote presentation starting at 1PM ET / 10AM PT, where Apple will announce major updates to iOS, macOS, and its other operating systems. Among those updates …
https://www.theverge.com/tech/944110/wwdc-2026-news-announcements
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
NotebookLM’s Gemini 3.5 upgrade adds a cloud computer and help finding sources
Google is rolling out "across the board" updates to NotebookLM. The AI-powered note-taking app now uses Google's upgraded Gemini 3.5 model, which will allow it to respond with "more accurate and reliable information," a…
https://www.theverge.com/tech/944325/google-notebooklm-ai-gemini-update
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Possible Phishing 🎣
on: ⚠️hxxp[:]//face5boosk[.]webcindario[.]com/index[.]html
🧬 Analysis at: https://urldna.io/scan/6a25e3953b77500006e83090
#cybersecurity #phishing #infosec #urldna #scam #infosec
Huge shout-out to the MacEwan Ethical Hacking Club / club.eh for coming on board as a Community Partner for BSides Edmonton 2026! We love seeing local student communities step up to help drive grassroots infosec talent forward.
Want to join them in supporting the local tech ecosystem? Our Gold sponsorships are still available, but they are moving fast! Lock in your partnership today: https://bsidesyeg.org/SponsorApplication
#BSidesYEG #BSidesEdmonton #MacEwan #clubEH #Cybersecurity #YEGtech #InfosecCommunity
#chrome extension Douyin Downloader seems malicious. Its #cybersecurity badness score is 95/100!
```json
{"id": "diemfnamcadcbnpokadljkcmehcllgjj", "score": 95, "platform": "chrome", "name": "Douyin Downloader"}
```
#chrome extension Silent Glacier Ii – Priva seems malicious. Its #cybersecurity badness score is 85/100!
```json
{"id": "aaddmojoibcjdlghmeeeenlgenaogcif", "score": 85, "platform": "chrome", "name": "Silent Glacier Ii \u2013 Priva"}
```
#chrome extension Pdf Forge seems malicious. Its #cybersecurity badness score is 95/100!
```json
{"id": "aihkhafnbpomjadbkobpnojmojgcilah", "score": 95, "platform": "chrome", "name": "Pdf Forge"}
```
#chrome extension Sota VPN seems malicious. Its #cybersecurity badness score is 100/100!
```json
{"id": "jjbjcelpjgagfgdpobjkpjnkhffmnlda", "score": 100, "platform": "chrome", "name": "Sota VPN"}
```
This colorful new e-reader with Android might finally make you forget about your Kindle
A $200 e-reader with stylus input and none of Amazon's ecosystem baggage.
https://www.androidauthority.com/boox-go-6-gen-ii-compact-ereader-3675481/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
🚨 EUVD-2026-35042
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: Leave Management System
🏢 Vendor: CodeAstro
📅 Updated: 2026-06-08
📝 A vulnerability has been found in CodeAstro Leave Management System 1.0. This impacts an unknown function of the file /admin/search_staff_for_deletion.php. The manipulation of the argument Name leads to sql injection. Remote exploitation of...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-35042
🚨 EUVD-2026-35041
📊 Score: 9.5/10 (CVSS v3.1)
📦 Product: Cordova Plugin InAppBrowser
🏢 Vendor: Apache Software Foundation
📅 Updated: 2026-06-08
📝 ## Summary
The iOS implementation of `cordova-plugin-inappbrowser` passes the `id` field from a `WKScriptMessage` body to `commandDelegate sendPluginResult:callbackId:` with no format validation (`CDVWKInAppBrowser.m:5...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-35041
🚨 EUVD-2026-35040
📊 Score: 2.3/10 (CVSS v3.1)
📦 Product: MT6000, AX1800, X3000 (+5 more)
🏢 Vendor: GL.iNet
📅 Updated: 2026-06-08
📝 A flaw has been found in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE3000 4.8.x. This affects an unknown function of the component glnassys. Executing a manipulation can lead to use of hard-coded cryptographic ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-35040
🚨 EUVD-2026-35039
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: CX12L
🏢 Vendor: Tenda
📅 Updated: 2026-06-08
📝 A vulnerability was detected in Tenda CX12L 16.03.53.12. The impacted element is the function setSchedWifi of the file /goform/openSchedWifi of the component Wi-Fi Schedule Configuration Endpoint. Performing a manipulation of the argument schedStartTime/schedEnd...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-35039
Evanston Township High School Cancels Classes Following Ransomware Attack
Evanston Township High School District 202 canceled summer classes and activities following a ransomware attack that crippled its internet, phone, and email systems. The district is working with the FBI and cybersecurity experts to investigate the extent of the breach and restore access to its computer infrastructure.
****
#cybersecurity #infosec #incident #ransomware
https://beyondmachines.net/event_details/evanston-township-high-school-cancels-classes-following-ransomware-attack-v-g-2-a-i/gD2P6Ple2L
IBM, AT&T accused by whistleblower of covering up foreign hacks
IBM and AT&T failed to disclose multiple breaches over years by attackers linked to foreign governments and made false assurances about the security of their systems in order to win and keep federal contracts.
#ibm #att #whistleblower #security #cybersecurity #hackers #hacking #hacked
https://fortune.com/2026/06/04/ibm-att-accused-by-whistleblower-of-covering-up-foreign-hacks/
Crm Perks: 45 CVEs, 16 critical/high, avg CVSS 6.4. 100% unpatched. Trust Score: D. Top flaws: URL redirection (CWE-601) & deserialization (CWE-502). Patch urgently. #CRM #cybersecurity #infosec
Intel introduced ‘the first processor in the x86 series and the first 8086 microprocessor’ on this day in 1978 — CPU was designed as a temporary substitute for the delayed iAPX 432 project
June 8, 1978, marked the birth of the x86 architecture with the arrival of the 16-bit Intel 8086 CPU.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Level up your pentesting game! 💻 Learn how AI can help you find vulnerabilities, speed up fixes, and streamline your workflow. This short dives into Neo, a new AI agent for security pros. Check it out! #AIPentesting #Cybersecurity #Shorts
ChatGPT's new memory upgrade is powerful - and could poison every answer it gives you
OpenAI says ChatGPT's memory is getting better. But my tests show outdated assumptions, personal profiling, and wrong details that could quietly distort future answers.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
This may be reality, but it's really not OK:
Mid and South Essex NHS Foundation Trust has disclosed that ~2,380 patient test records were stolen in a cyberattack reported to it in December 2025.
The breach was at Synnovis, and this was the June 2024 ransomware attack by Qilin.
So it was a year and a half before Synnovis first notified the Trust, and then another six months for the Trust to announce it, and they still haven't figured out who to notify individually, it seems.
https://www.echo-news.co.uk/news/26174950.essex-nhs-hospitals-records-compromised-cyber-attack/
They weren't the only trust to recently announce the breach. Bedfordshire Hospitals NHS Foundation Trust also made an announcement last week; almost 33,000 of their patients had data stolen in the attack:
https://www.bbc.com/news/articles/c1d2wwyd6qqo
And as a reminder: Qilin leaked the data, so all these people who haven't been notified have had their data available on the dark web.
#incidentresponse #ransomware #Synnovis #SynLab #infosec #cybersecurity #Qilin #NHS
Possible Phishing 🎣
on: ⚠️hxxps[:]//ankushdubey18[.]github[.]io/Netflix-Ui-With-responsiveness/
🧬 Analysis at: https://urldna.io/scan/6a24218f3b775000044d3352
#cybersecurity #phishing #infosec #urldna #scam #infosec
#chrome extension Arctic Plain – Privacy Mi seems malicious. Its #cybersecurity badness score is 93/100!
```json
{"id": "ejmchodobpmalkpilpokleikpbikpnma", "score": 93, "platform": "chrome", "name": "Arctic Plain \u2013 Privacy Mi"}
```
#chrome extension Cherry Quartz – Crisp Min seems malicious. Its #cybersecurity badness score is 98/100!
```json
{"id": "kkncndflgbbnkghpcgfffocholgapjdn", "score": 98, "platform": "chrome", "name": "Cherry Quartz \u2013 Crisp Min"}
```
#chrome extension ChatzyCRM: Todo lo que necesitas en un solo CRM para WhatsApp seems malicious. Its #cybersecurity badness score is 95/100!
```json
{"id": "bpjhhjboiagpamldnmjdmjadhajipicf", "score": 95, "platform": "chrome", "name": "ChatzyCRM: Todo lo que necesitas en un solo CRM para WhatsApp"}
```
#chrome extension Happ VPN seems malicious. Its #cybersecurity badness score is 96/100!
```json
{"id": "cmfbmehojkikkfdellcpieaapccgemdl", "score": 96, "platform": "chrome", "name": "Happ VPN"}
```
Nvidia and SK hynix ink multi-year memory co-development and supply agreement — seeks to address extended d…
Nvidia and SK hynix have inked a multi-year collaboration agreement under which the companies will co-develop next-generation memory technologies for Nvidia's upcoming platforms and SK hynix will supply them to Nvidia.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]