voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
🟠 CVE-2026-48373 - High (7.8)
Acrobat Reader is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-48373/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-45799 - High (7.5)
Wire provides gRPC and protocol buffers for Android, Kotlin, Swift, and Java. Prior to 6.3.0 and 7.0.0-alpha03, ByteArrayProtoReader32.skipGroup() and ProtoReader.skipGroup() in wire-runtime do not validate that a LENGTH_DELIMITED field length is ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45799/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Apple @ Work Podcast: Breaking down the recent IDC PC shipment report
Apple @ Work is exclusively brought to you by Mosyle, the only Apple Unified Platform. Mosyle is the only solution that integrates in a single professional-grade platform all the solutions necessary to seamlessly and au…
https://9to5mac.com/2026/07/14/apple-work-podcast-breaking-down-the-recent-idc-pc-shipment-report/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Safety regulator says Apple needs to do more to combat sextortion
An online safety regulator has said that tech giants need to do more to combat sextortion (sexual extortion), naming Apple, Meta and Google among the companies who need to do better. Victims of sexual blackmail tend to …
https://9to5mac.com/2026/07/14/safety-regulator-says-apple-needs-to-do-more-to-combat-sextortion/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Louis Pouzin and the datagram revolution #negativepid #digitalInvestigations #OSINT #cybersecurity #AI #tech #onlineInvestigations #robotics #cyberpsychology #cybercrime https://negativepid.blog/louis-pouzin-and-the-datagram-revolution/?utm_source=mastodon&utm_medium=social&utm_campaign=fedica-Negative-PID-Blog
Multinational Cybersecurity Threats and Data Privacy Concerns Highlighted in Weekly Security Report
📰 Original title: Your Period Tracker Is (Probably) Spying on You
🤖 IA: It's clickbait ⚠️
👥 Users: It's clickbait ⚠️
Multinational Cybersecurity Threats and Data Privacy Concerns Highlighted in Weekly Security Report
📰 Original title: Your Period Tracker Is (Probably) Spying on You
🤖 IA: It's clickbait ⚠️
👥 Users: It's clickbait ⚠️
Security Tip: Don't let attackers eavesdrop on your Incident Response. 🛡️ During a major compromise, assume your primary communication channels (Email, Slack, Teams) are compromised. If the attacker is watching, they can anticipate your containment steps. Establish a secure "Out-of-Band" (OOB) channel—like a hardened signal group or separate encrypted instance—ahead of time. Stay informed on the latest threats: https://cvedatabase.com #InfoSec #CyberSecurity #SOC
Possible Phishing 🎣
on: ⚠️hxxps[:]//wmailsignin0000z97jed2[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a5b6c343b77500007fe61cf
#cybersecurity #phishing #infosec #urldna #scam #infosec
Google is open-sourcing its 3D emoji
Now, if you want to, you can use Google's 3D emoji in your own creations. The company shared some details about how it went about designing the little pictograms and why, as part of World Emoji Day on Friday. Things you…
https://www.theverge.com/design/967606/google-open-source-3d-emoji
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Waze now learns your preferences, and gets more conversational but less chatty
Navigation app Waze is rolling out an update to its iPhone and Android app to introduce three new AI-powered features. The first uses your journey history to understand your routing preferences in order to provide perso…
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Possible Phishing 🎣
on: ⚠️hxxps[:]//bertchou[.]com/wp-content/languages-old/config/information[.]php
🧬 Analysis at: https://urldna.io/scan/6a5b48613b77500005565bb3
#cybersecurity #phishing #infosec #urldna #scam #infosec
🚨 EUVD-2026-45388
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: rt-claw, rt-claw
🏢 Vendor: zevorn
📅 Updated: 2026-07-18
📝 A vulnerability was identified in zevorn rt-claw up to 0.2.0. This affects the function claw_net_get/claw_net_post of the file claw/tools/tool_net.c of the component http_request. Such manipulation of the argument url leads to server-side request for...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45388
🚨 EUVD-2026-45387
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: rt-claw, rt-claw
🏢 Vendor: zevorn
📅 Updated: 2026-07-18
📝 A vulnerability was determined in zevorn rt-claw up to 0.2.0. The impacted element is the function handle_rpc_request of the file claw/services/swarm/swarm.c of the component Swarm RPC Receiver. This manipulation causes incorrect authorization. The a...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45387
🚨 EUVD-2026-45386
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: rt-claw, rt-claw
🏢 Vendor: zevorn
📅 Updated: 2026-07-18
📝 A vulnerability was found in zevorn rt-claw up to 0.2.0. The affected element is the function claw_net_get/claw_net_post of the file claw/services/tools/net.c of the component http_request. The manipulation of the argument url results in server-side ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45386
🖲️ #Cybersecurity #Ciberseguridad #Ciberseguranca #Security #Seguridad #Seguranca #News #Noticia #Noticias #Tecnologia #Technology
⚫ Claude Flaw Automatically Sends Malicious Prompts to AI Agents
🔗 https://www.darkreading.com/vulnerabilities-threats/claude-flaw-malicious-prompts-ai-agents
When combined with another exploit, the "PromptFiction" vulnerability, which has been fixed, could have enabled an end-to-end attack on a targeted system.
🚨 EUVD-2026-45385
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: GoClaw, GoClaw, GoClaw (+30 more)
🏢 Vendor: nextlevelbuilder
📅 Updated: 2026-07-18
📝 A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.15.0-beta.32. This affects the function CheckSSRF/isPrivateIP of the file internal/tools/web_shared.go of the component web_fetch. Such manipulat...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45385
🟠 CVE-2026-44739 - High (8.7)
Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.6, the columnConfigAction endpoint in bundles/CustomReportsBundle/src/Controller/Reports/CustomReportController.php passes malicious SQL configuration...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-44739/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-45260 - High (8.1)
Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.7, Pimcore's WebDAV asset endpoint exposes a MOVE operation through /asset/webdav{path} without an authentication plugin in bundles/CoreBundle/src/Con...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45260/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-15091 - Critical (9.3)
IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to execute arbitrary scripts due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15091/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Setting up AIWAF with Django is simple.
Add the middleware, let AIWAF inspect your routes, and generate application-aware security configuration from your project context.
Django support includes route discovery, AST analysis, forms, auth, admin, and payload-aware metadata.
🔒 Context Bombing: difesa contro agenti AI hacker
Tracebit ha trovato un metodo per bloccare gli agenti AI che violano cloud: inserire prompt di rifiuto nei dati sensibili. Attacchi crollati dal 57% al 5%.
Fonte: Wired
Segui 👇
#Cybersecurity #AI #Sicurezza 🔐🛡️💻
Fake IDs: uncovering inconsistencies #negativepid #digitalInvestigations #OSINT #cybersecurity #AI #tech #onlineInvestigations #robotics #cyberpsychology #cybercrime https://negativepid.blog/fake-ids-uncovering-inconsistencies/?utm_source=mastodon&utm_medium=social&utm_campaign=fedica-Negative-PID-Blog
Your X feed might now work, as platform finally does what everyone wanted
Many X users have found that their feed is rather random, with comments on their posts similarly more from randos than those who follow you. The platform says it has finally noticed this and is fixing it with a “tweak” …
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Microsoft has issued a critical warning about a significant surge in ACR Stealer attacks, observed between late April and mid-June 2026. This malware-as-a-service operation, active since 2024, is leveraging sophisticated social engineering and stealthy fileless execution to compromise enterprise M365 accounts and exfiltrate sensitive data. Discover the two primary intrusion chains and crucial…
#cybersecurity #microsoft #acrstealer
🤖 This post was AI-generated.
Also, around the corner....
Hugging face recently posted their disclosure of Security Incident they experienced
Several key notes:
- Autonomous agentic attack are here
- The attack are through their data-processing pipeline
- Rotate your access token keys!
https://huggingface.co/blog/security-incident-july-2026
#cybersecurity #infosec #aisecurity #huggingface #securityincident
Qubes OS Security in the Public Record
https://arxiv.org/abs/2607.14587
Comments: https://news.ycombinator.com/item?id=48956307
#HackerNews #QubesOS #Security #PublicRecord #Cybersecurity #OpenSource #Privacy
EY Notifies Clients After Breach of IT Support Platform Exposes Tax Documents
#CyberSecurity
https://securebulletin.com/ey-notifies-clients-after-breach-of-it-support-platform-exposes-tax-documents/
I let an AI take over my Google TV for a week — and it solved streaming’s biggest problem
Project Neo replaces endless TV browsing with conversational AI.
https://www.androidauthority.com/ai-took-over-google-tv-fixed-streaming-problem-3686072/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
The apps, gadgets, and tools every reader needs
Hi, friends! Welcome to Installer No. 136, your guide to the best and Verge-iest stuff in the world. (If you're new here, welcome, hope your neighborhood isn't as smoky as mine, and also you can read all the old edition…
https://www.theverge.com/tech/967544/best-apps-gadgets-reading-installer
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Possible Phishing 🎣
on: ⚠️hxxps[:]//urlz[.]fr/uMr7
🧬 Analysis at: https://urldna.io/scan/6a5b3a563b775000081c7235
#cybersecurity #phishing #infosec #urldna #scam #infosec
More games should be on rails (literally)
It's been a good few weeks for games on rails. Nintendo's Star Fox remake wisely kept the tightly scripted, action-packed levels from Star Fox 64 largely the same, and they're still fun to fly through nearly 20 years la…
https://www.theverge.com/games/961152/denshattack-review
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Google Confirms 2nd Critical Chrome Security Update Within 48 Hours https://www.forbes.com/sites/daveywinder/2026/07/18/google-confirms-2nd-critical-chrome-security-update-within-48-hours/ #cybersecurity #Chrome #vulnerabilities #2Updates
Sony’s flagship RGB LED TV is incredible
Sony’s flagship Bravia 9 II is the best RGB LED TV I’ve seen this year. The Sony Bravia 9 II is the most anticipated new TV in years. It's an amazing RGB LED TV. I watched Dungeons & Dragons: Honor Among Thieves on the …
https://www.theverge.com/tech/966788/sony-bravia-9-ii-tv-review
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
This video is a good simplified summary of the cyber threat ecosystems. If you just getting started in Cyber Security, I think this video might help you understand the general landscape of threat actors.
🚨 EUVD-2026-45371
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: Tomato
🏢 Vendor: Shibby
📅 Updated: 2026-07-18
📝 A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects the function sub_40BB50 of the file /proc/webmon_recent_domains. The manipulation leads to stack-based buffer overflow. It is possible to initiate the attack remotely. T...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45371
Possible Phishing 🎣
on: ⚠️hxxps[:]//merenciano[.]net/serviciodecorreo/login/
🧬 Analysis at: https://urldna.io/scan/6a5b48633b77500007fe5f36
#cybersecurity #phishing #infosec #urldna #scam #infosec
🟠 CVE-2026-16096 - High (8.8)
A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects the function sub_40BB50 of the file /proc/webmon_recent_domains. The manipulation leads to stack-based buffer overflow. It is possible to initiate the attac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16096/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-16097 - High (8.8)
A vulnerability was found in Shibby Tomato 1.28. This vulnerability affects the function sub_42537C of the component Scheduler Name Handler. The manipulation of the argument a1 results in stack-based buffer overflow. It is possible to launch the a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Ever feel like online privacy is more than just clicking a button? 🤔 This short dives into why a VPN alone isn't enough – it's about rethinking your whole approach. Brisket and VPNs? Trust me, you'll want to know why. Check it out! 💻 #Cybersecurity #Privacy #VPNs
WordPress: 165 CVEs tracked, 27 critical/high, avg CVSS 6.07. 100% unpatched. Trust Score: D. Third-party plugins are the weak link. Audit your stack now. #WordPress #infosec #cybersecurity
Apple Passed Nvidia to Become World's Most Valuable Company Again
Apple momentarily became the world's most valuable publicly traded company again today after its market valuation surpassed that of Nvidia, according to CNBC. However, the two companies have since traded places during t…
https://www.macrumors.com/2026/07/17/apple-passed-nvidia-most-valuable-company/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
📰 OnePlus has ended its phone releases in the US and Europe, reducing smartphone choice for consumers.
📰 OnePlus has ended its phone releases in the US and Europe, reducing smartphone choice for consumers.