voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #cybersecurity

[?]TheHackerWire » 🤖 🌐
@thehackerwire@mastodon.social

🟠 CVE-2026-48373 - High (7.8)

Acrobat Reader is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious ...

🔗 thehackerwire.com/vulnerabilit

CVE Alert: CVE-2026-48373

Alt...CVE Alert: CVE-2026-48373

    [?]TheHackerWire » 🤖 🌐
    @thehackerwire@mastodon.social

    🟠 CVE-2026-45799 - High (7.5)

    Wire provides gRPC and protocol buffers for Android, Kotlin, Swift, and Java. Prior to 6.3.0 and 7.0.0-alpha03, ByteArrayProtoReader32.skipGroup() and ProtoReader.skipGroup() in wire-runtime do not validate that a LENGTH_DELIMITED field length is ...

    🔗 thehackerwire.com/vulnerabilit

    CVE Alert: CVE-2026-45799

    Alt...CVE Alert: CVE-2026-45799

      [?]TechWire ⚡ » 🤖 🌐
      @techwire@social.gamefan.net

      Apple @ Work Podcast: Breaking down the recent IDC PC shipment report

      Apple @ Work is exclusively brought to you by Mosyle, the only Apple Unified Platform. Mosyle is the only solution that integrates in a single professional-grade platform all the solutions necessary to seamlessly and au…

      9to5mac.com/2026/07/14/apple-w

      [9to5Mac]

        [?]TechWire ⚡ » 🤖 🌐
        @techwire@social.gamefan.net

        Safety regulator says Apple needs to do more to combat sextortion

        An online safety regulator has said that tech giants need to do more to combat sextortion (sexual extortion), naming Apple, Meta and Google among the companies who need to do better. Victims of sexual blackmail tend to …

        9to5mac.com/2026/07/14/safety-

        [9to5Mac]

          [?]Negative PID SL » 🌐
          @negativepid@mastodon.social

          [?]KillBait » 🤖 🌐
          @killbait@mastodon.social

          Multinational Cybersecurity Threats and Data Privacy Concerns Highlighted in Weekly Security Report

          📰 Original title: Your Period Tracker Is (Probably) Spying on You

          🤖 IA: It's clickbait ⚠️
          👥 Users: It's clickbait ⚠️

          View full AI summary en.killbait.com/multinational-

          ...

            [?]KillBait News » 🤖 🌐
            @killbait@mastodon.world

            Multinational Cybersecurity Threats and Data Privacy Concerns Highlighted in Weekly Security Report

            📰 Original title: Your Period Tracker Is (Probably) Spying on You

            🤖 IA: It's clickbait ⚠️
            👥 Users: It's clickbait ⚠️

            View full AI summary en.killbait.com/multinational-

            ...

              [?]The New Oil » 🤖 🌐
              @thenewoil@mastodon.thenewoil.org

              [?]CVEDatabase.com » 🌐
              @cvedatabase@techhub.social

              Security Tip: Don't let attackers eavesdrop on your Incident Response. 🛡️ During a major compromise, assume your primary communication channels (Email, Slack, Teams) are compromised. If the attacker is watching, they can anticipate your containment steps. Establish a secure "Out-of-Band" (OOB) channel—like a hardened signal group or separate encrypted instance—ahead of time. Stay informed on the latest threats: cvedatabase.com

                [?]urlDNA.io :verified: » 🤖 🌐
                @urldna@infosec.exchange

                Possible Phishing 🎣
                on: ⚠️hxxps[:]//wmailsignin0000z97jed2[.]weebly[.]com
                🧬 Analysis at: urldna.io/scan/6a5b6c343b77500

                  [?]The New Oil » 🤖 🌐
                  @thenewoil@mastodon.thenewoil.org

                  [?]TechWire ⚡ » 🤖 🌐
                  @techwire@social.gamefan.net

                  Google is open-sourcing its 3D emoji

                  Now, if you want to, you can use Google's 3D emoji in your own creations. The company shared some details about how it went about designing the little pictograms and why, as part of World Emoji Day on Friday. Things you…

                  theverge.com/design/967606/goo

                  [The Verge]

                    [?]TechWire ⚡ » 🤖 🌐
                    @techwire@social.gamefan.net

                    Waze now learns your preferences, and gets more conversational but less chatty

                    Navigation app Waze is rolling out an update to its iPhone and Android app to introduce three new AI-powered features. The first uses your journey history to understand your routing preferences in order to provide perso…

                    9to5mac.com/2026/07/14/waze-no

                    [9to5Mac]

                      [?]urlDNA.io :verified: » 🤖 🌐
                      @urldna@infosec.exchange

                      Possible Phishing 🎣
                      on: ⚠️hxxps[:]//bertchou[.]com/wp-content/languages-old/config/information[.]php
                      🧬 Analysis at: urldna.io/scan/6a5b48613b77500

                        [?]EUVD Bot » 🤖 🌐
                        @EUVD_Bot@mastodon.social

                        🚨 EUVD-2026-45388

                        📊 Score: 6.9/10 (CVSS v3.1)
                        📦 Product: rt-claw, rt-claw
                        🏢 Vendor: zevorn
                        📅 Updated: 2026-07-18

                        📝 A vulnerability was identified in zevorn rt-claw up to 0.2.0. This affects the function claw_net_get/claw_net_post of the file claw/tools/tool_net.c of the component http_request. Such manipulation of the argument url leads to server-side request for...

                        🔗 euvd.enisa.europa.eu/vulnerabi

                          [?]EUVD Bot » 🤖 🌐
                          @EUVD_Bot@mastodon.social

                          🚨 EUVD-2026-45387

                          📊 Score: 6.9/10 (CVSS v3.1)
                          📦 Product: rt-claw, rt-claw
                          🏢 Vendor: zevorn
                          📅 Updated: 2026-07-18

                          📝 A vulnerability was determined in zevorn rt-claw up to 0.2.0. The impacted element is the function handle_rpc_request of the file claw/services/swarm/swarm.c of the component Swarm RPC Receiver. This manipulation causes incorrect authorization. The a...

                          🔗 euvd.enisa.europa.eu/vulnerabi

                            [?]EUVD Bot » 🤖 🌐
                            @EUVD_Bot@mastodon.social

                            🚨 EUVD-2026-45386

                            📊 Score: 6.9/10 (CVSS v3.1)
                            📦 Product: rt-claw, rt-claw
                            🏢 Vendor: zevorn
                            📅 Updated: 2026-07-18

                            📝 A vulnerability was found in zevorn rt-claw up to 0.2.0. The affected element is the function claw_net_get/claw_net_post of the file claw/services/tools/net.c of the component http_request. The manipulation of the argument url results in server-side ...

                            🔗 euvd.enisa.europa.eu/vulnerabi

                              [?]TierraSapiens » 🤖 🌐
                              @tierrasapiens@mastodon.social

                              🖲️
                              ⚫ Claude Flaw Automatically Sends Malicious Prompts to AI Agents
                              🔗 darkreading.com/vulnerabilitie

                              When combined with another exploit, the "PromptFiction" vulnerability, which has been fixed, could have enabled an end-to-end attack on a targeted system.

                                [?]EUVD Bot » 🤖 🌐
                                @EUVD_Bot@mastodon.social

                                🚨 EUVD-2026-45385

                                📊 Score: 5.3/10 (CVSS v3.1)
                                📦 Product: GoClaw, GoClaw, GoClaw (+30 more)
                                🏢 Vendor: nextlevelbuilder
                                📅 Updated: 2026-07-18

                                📝 A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.15.0-beta.32. This affects the function CheckSSRF/isPrivateIP of the file internal/tools/web_shared.go of the component web_fetch. Such manipulat...

                                🔗 euvd.enisa.europa.eu/vulnerabi

                                  [?]TheHackerWire » 🤖 🌐
                                  @thehackerwire@mastodon.social

                                  🟠 CVE-2026-44739 - High (8.7)

                                  Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.6, the columnConfigAction endpoint in bundles/CustomReportsBundle/src/Controller/Reports/CustomReportController.php passes malicious SQL configuration...

                                  🔗 thehackerwire.com/vulnerabilit

                                  CVE Alert: CVE-2026-44739

                                  Alt...CVE Alert: CVE-2026-44739

                                    [?]TheHackerWire » 🤖 🌐
                                    @thehackerwire@mastodon.social

                                    🟠 CVE-2026-45260 - High (8.1)

                                    Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.7, Pimcore's WebDAV asset endpoint exposes a MOVE operation through /asset/webdav{path} without an authentication plugin in bundles/CoreBundle/src/Con...

                                    🔗 thehackerwire.com/vulnerabilit

                                    CVE Alert: CVE-2026-45260

                                    Alt...CVE Alert: CVE-2026-45260

                                      [?]TheHackerWire » 🤖 🌐
                                      @thehackerwire@mastodon.social

                                      🔴 CVE-2026-15091 - Critical (9.3)

                                      IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to execute arbitrary scripts due to improper neutralization of input during web page generation.

                                      🔗 thehackerwire.com/vulnerabilit

                                      CVE Alert: CVE-2026-15091

                                      Alt...CVE Alert: CVE-2026-15091

                                        [?]AIWAF Project » 🌐
                                        @aiwafproject@mastodon.social

                                        Setting up AIWAF with Django is simple.

                                        Add the middleware, let AIWAF inspect your routes, and generate application-aware security configuration from your project context.

                                        Django support includes route discovery, AST analysis, forms, auth, admin, and payload-aware metadata.

                                          [?]AI_BEAR_NEWS » 🤖 🌐
                                          @AI_BEAR_NEWS@mastodon.social

                                          🔒 Context Bombing: difesa contro agenti AI hacker

                                          Tracebit ha trovato un metodo per bloccare gli agenti AI che violano cloud: inserire prompt di rifiuto nei dati sensibili. Attacchi crollati dal 57% al 5%.

                                          Fonte: Wired
                                          Segui 👇
                                          🔐🛡️💻

                                            [?]Negative PID SL » 🌐
                                            @negativepid@mastodon.social

                                            [?]TechWire ⚡ » 🤖 🌐
                                            @techwire@social.gamefan.net

                                            Your X feed might now work, as platform finally does what everyone wanted

                                            Many X users have found that their feed is rather random, with comments on their posts similarly more from randos than those who follow you. The platform says it has finally noticed this and is fixing it with a “tweak” …

                                            9to5mac.com/2026/07/14/your-x-

                                            [9to5Mac]

                                              [?]Daniel Marsh » 🤖 🌐
                                              @danielmarsh@social.thepixelspulse.com

                                              Microsoft has issued a critical warning about a significant surge in ACR Stealer attacks, observed between late April and mid-June 2026. This malware-as-a-service operation, active since 2024, is leveraging sophisticated social engineering and stealthy fileless execution to compromise enterprise M365 accounts and exfiltrate sensitive data. Discover the two primary intrusion chains and crucial…

                                              tpp.blog/19cmj4g

                                              🤖 This post was AI-generated.

                                                [?]AmmarSpaces » 🌐
                                                @AmmarSpaces@infosec.exchange

                                                Also, around the corner....

                                                Hugging face recently posted their disclosure of Security Incident they experienced

                                                Several key notes:
                                                - Autonomous agentic attack are here
                                                - The attack are through their data-processing pipeline
                                                - Rotate your access token keys!

                                                huggingface.co/blog/security-i

                                                  [?]Hacker News » 🤖 🌐
                                                  @h4ckernews@mastodon.social

                                                  [?]N_{Dario Fadda} » 🌐
                                                  @nuke@poliversity.it

                                                  [?]TechWire ⚡ » 🤖 🌐
                                                  @techwire@social.gamefan.net

                                                  I let an AI take over my Google TV for a week — and it solved streaming’s biggest problem

                                                  Project Neo replaces endless TV browsing with conversational AI.

                                                  androidauthority.com/ai-took-o

                                                  [Android Authority]

                                                    [?]TechWire ⚡ » 🤖 🌐
                                                    @techwire@social.gamefan.net

                                                    The apps, gadgets, and tools every reader needs

                                                    Hi, friends! Welcome to Installer No. 136, your guide to the best and Verge-iest stuff in the world. (If you're new here, welcome, hope your neighborhood isn't as smoky as mine, and also you can read all the old edition…

                                                    theverge.com/tech/967544/best-

                                                    [The Verge]

                                                      [?]urlDNA.io :verified: » 🤖 🌐
                                                      @urldna@infosec.exchange

                                                      Possible Phishing 🎣
                                                      on: ⚠️hxxps[:]//urlz[.]fr/uMr7
                                                      🧬 Analysis at: urldna.io/scan/6a5b3a563b77500

                                                        [?]TechWire ⚡ » 🤖 🌐
                                                        @techwire@social.gamefan.net

                                                        More games should be on rails (literally)

                                                        It's been a good few weeks for games on rails. Nintendo's Star Fox remake wisely kept the tightly scripted, action-packed levels from Star Fox 64 largely the same, and they're still fun to fly through nearly 20 years la…

                                                        theverge.com/games/961152/dens

                                                        [The Verge]

                                                          [?]Bob Carver » 🌐
                                                          @cybersecboardrm@infosec.exchange

                                                          [?]TechWire ⚡ » 🤖 🌐
                                                          @techwire@social.gamefan.net

                                                          Sony’s flagship RGB LED TV is incredible

                                                          Sony’s flagship Bravia 9 II is the best RGB LED TV I’ve seen this year. The Sony Bravia 9 II is the most anticipated new TV in years. It's an amazing RGB LED TV. I watched Dungeons & Dragons: Honor Among Thieves on the …

                                                          theverge.com/tech/966788/sony-

                                                          [The Verge]

                                                            [?]AmmarSpaces » 🌐
                                                            @AmmarSpaces@infosec.exchange

                                                            This video is a good simplified summary of the cyber threat ecosystems. If you just getting started in Cyber Security, I think this video might help you understand the general landscape of threat actors.

                                                            youtu.be/ndZKLjvLZiQ

                                                              [?]EUVD Bot » 🤖 🌐
                                                              @EUVD_Bot@mastodon.social

                                                              🚨 EUVD-2026-45371

                                                              📊 Score: 8.7/10 (CVSS v3.1)
                                                              📦 Product: Tomato
                                                              🏢 Vendor: Shibby
                                                              📅 Updated: 2026-07-18

                                                              📝 A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects the function sub_40BB50 of the file /proc/webmon_recent_domains. The manipulation leads to stack-based buffer overflow. It is possible to initiate the attack remotely. T...

                                                              🔗 euvd.enisa.europa.eu/vulnerabi

                                                                [?]urlDNA.io :verified: » 🤖 🌐
                                                                @urldna@infosec.exchange

                                                                Possible Phishing 🎣
                                                                on: ⚠️hxxps[:]//merenciano[.]net/serviciodecorreo/login/
                                                                🧬 Analysis at: urldna.io/scan/6a5b48633b77500

                                                                  [?]TheHackerWire » 🤖 🌐
                                                                  @thehackerwire@mastodon.social

                                                                  🟠 CVE-2026-16096 - High (8.8)

                                                                  A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects the function sub_40BB50 of the file /proc/webmon_recent_domains. The manipulation leads to stack-based buffer overflow. It is possible to initiate the attac...

                                                                  🔗 thehackerwire.com/vulnerabilit

                                                                  CVE Alert: CVE-2026-16096

                                                                  Alt...CVE Alert: CVE-2026-16096

                                                                    [?]TheHackerWire » 🤖 🌐
                                                                    @thehackerwire@mastodon.social

                                                                    🟠 CVE-2026-16097 - High (8.8)

                                                                    A vulnerability was found in Shibby Tomato 1.28. This vulnerability affects the function sub_42537C of the component Scheduler Name Handler. The manipulation of the argument a1 results in stack-based buffer overflow. It is possible to launch the a...

                                                                    🔗 thehackerwire.com/vulnerabilit

                                                                    CVE Alert: CVE-2026-16097

                                                                    Alt...CVE Alert: CVE-2026-16097

                                                                      [?]ChiefGyk3D » 🌐
                                                                      @chiefgyk3d@social.chiefgyk3d.com

                                                                      Ever feel like online privacy is more than just clicking a button? 🤔 This short dives into why a VPN alone isn't enough – it's about rethinking your whole approach. Brisket and VPNs? Trust me, you'll want to know why. Check it out! 💻

                                                                      youtube.com/watch?v=0ScSF_0YRYQ

                                                                      🔴 LIVE

                                                                      Alt...🔴 LIVE

                                                                        [?]Hugo | DevOps | Cybersecurity » 🌐
                                                                        @hugovalters@mastodon.social

                                                                        WordPress: 165 CVEs tracked, 27 critical/high, avg CVSS 6.07. 100% unpatched. Trust Score: D. Third-party plugins are the weak link. Audit your stack now.

                                                                        valtersit.com/vendors/wordpres

                                                                          [?]TechWire ⚡ » 🤖 🌐
                                                                          @techwire@social.gamefan.net

                                                                          Apple Passed Nvidia to Become World's Most Valuable Company Again

                                                                          Apple momentarily became the world's most valuable publicly traded company again today after its market valuation surpassed that of Nvidia, according to CNBC. However, the two companies have since traded places during t…

                                                                          macrumors.com/2026/07/17/apple

                                                                          [MacRumors]

                                                                            [?]SagaLinked » 🤖 🌐
                                                                            @sagalinked@mastodon.social

                                                                            📰 OnePlus has ended its phone releases in the US and Europe, reducing smartphone choice for consumers.

                                                                            🔗 arstechnica.com/gadgets/2026/0

                                                                              [?]SagaLinked | CYBER NEWS » 🤖 🌐
                                                                              @sagalinked@infosec.exchange

                                                                              📰 OnePlus has ended its phone releases in the US and Europe, reducing smartphone choice for consumers.

                                                                              🔗 arstechnica.com/gadgets/2026/0

                                                                                [?]SagaLinked » 🤖 🌐
                                                                                @sagalinked@mastodon.social

                                                                                📰 China and Russia could potentially disrupt Starlink's satellite constellation with their own similar satellite network, raising concerns about potential competition and interference.

                                                                                🔗 arstechnica.com/space/2026/07/

                                                                                  Back to top - More...