voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
🟠 CVE-2026-42965 - High (7.7)
A flaw was found in the OpenShift Router. A user with EndpointSlice write access can exploit this vulnerability by creating a Service backed by an FQDN (Fully Qualified Domain Name) EndpointSlice that resolves to a cloud metadata endpoint. This al...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-42965/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-6075 - High (8.1)
The Media Library Assistant plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.35 This is due to missing nonce verification on the bulk action handlers in the settings tab handlers. This makes it p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-6075/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
JINX-0164 Campaign Targets Crypto Developers with macOS Malware
Hashes (SHA256) are commonly used to store information on social networks, but they can also reveal a range of ways of doing so. and the way that they are used in public.
Pulse ID: 6a1b8223ec51b13c613e101a
Pulse Link: https://otx.alienvault.com/pulse/6a1b8223ec51b13c613e101a
Pulse Author: cryptocti
Created: 2026-05-31 00:34:43
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #bot #developers #cryptocti
Apple TV’s new space-race thriller does something unique, first reviews here
Star City premieres on Apple TV this week, a spinoff of the space-race drama For All Mankind. Here’s what the first reviews for Star City are saying. more…
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Global Running Day Challenge coming to Apple Watch next week
June is just around the corner, and with the new month comes the next Apple Watch fitness challenge. more…
https://9to5mac.com/2026/05/26/global-running-day-challenge-coming-to-apple-watch-next-week/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Possible Phishing 🎣
on: ⚠️hxxps[:]//serviciomaillo[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a1b49a33b775000066b284d
#cybersecurity #phishing #infosec #urldna #scam #infosec
iOS 26.6 adds new alert when you try blocking too many contacts
iOS 26.6 beta 1 arrived today, and with iOS 27 right around the corner, it’s unsurprisingly very light on changes. But one difference was discovered by Aaron Perris: a new alert that appears in iOS 26.6 when you try to …
https://9to5mac.com/2026/05/26/ios-26-6-adds-new-alert-when-you-try-blocking-too-many-contacts/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #9to5Mac [9to5Mac]
Parallel Reconstruction of Lawful TLS Wiretapping
https://remyhax.xyz/posts/reproducing-lawful-tls-wiretapping/
#HackerNews #ParallelReconstruction #TLS #Wiretapping #Cybersecurity #Privacy #LawfulIntercept
FBI: Phishing-as-a-service kit hijacks Microsoft 365
Device-code phishing bypasses multifactor authentication by stealing the session token a user receives after passing the multifactor check. The second factor is satisfied, then sidestepped.
https://www.americanbanker.com/news/fbi-phishing-as-a-service-kit-hijacks-microsoft-365
Everything We Know About OpenAI's Planned iPhone Rival
OpenAI is developing a smartphone intended to compete directly with the iPhone, in what appears to be a significant departure from the company's previously stated hardware strategy. Here's everything we know so far. Ana…
https://www.macrumors.com/2026/05/29/everything-we-know-about-openai-iphone-rival/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
Der Vorfall mit der Hackergruppe Nimbus Manticore ist deshalb relevant, weil er eine Verschiebung zeigt: Die iranische Hackergruppe, die den iranischen Revolutionsgarden zugerechnet wird, nutzte offenbar SEO-Poisoning. Eine manipulierte Download-Seite für SQL Developer wurde so sichtbar gemacht, dass technische Nutzer über Suchmaschinen auf Schadsoftware gelenkt werden konnten. Viele Sicherheitsprogramme sind auf E-Mail, Awareness und Endpoint-Erkennung fokussiert. #CyberSecurity #Iran
iPhone Driver's License Feature Set to Expand to a 15th U.S. State
Apple's digital driver's license feature in the Wallet app is set to expand to Virginia, according to a person familiar with the matter. In select U.S. states, residents can add their driver's license or state ID to the…
https://www.macrumors.com/2026/05/29/apple-wallet-ids-coming-to-15th-state/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
🚨 EUVD-2026-33471
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: lin-cms-spring-boot, lin-cms-spring-boot
🏢 Vendor: TaleLin
📅 Updated: 2026-05-30
📝 A vulnerability was detected in TaleLin lin-cms-spring-boot up to 0.2.1. This issue affects some unknown processing of the file src/main/java/io/github/talelin/latticy/controller/v1/BookController.java of the component book E...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33471
Possible Phishing 🎣
on: ⚠️hxxps[:]//lycosweb[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/6a1b11463b77500003241ad2
#cybersecurity #phishing #infosec #urldna #scam #infosec
🟠 CVE-2026-10108 - High (7.5)
xiaomusic v0.5.7 contains an unauthenticated path traversal vulnerability in the GET /music/{file_path:path} endpoint that allows unauthenticated attackers to read arbitrary files outside the intended music directory by exploiting an incomplete pa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10108/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-10069 - High (7.5)
A vulnerability has been found in Shibby Tomato 1.28. The impacted element is an unknown function of the file usr/sbin/miniupnpd. Such manipulation leads to resource consumption. The attack may be launched remotely. This project is superseded by F...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10069/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-4290 - Critical (9.1)
The WP Travel Pro plugin for WordPress is vulnerable to arbitrary user deletion via the /wp-json/wp-travel/v1/travel-guide/{user_id} REST API endpoint in all versions up to, and including, 10.6.0. This is due to the check_permission() callback unc...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-4290/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Ranked: The 4 things I look for in a smartphone
It all starts with the way a phone looks and feels.
https://www.androidauthority.com/smartphone-fetaures-ranked-3672874/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
LG's 39-Inch Ultrawide 5K2K OLED Display Officially Begins Shipping Next Week
Back at CES in January, LG unveiled its UltraGear evo GX9 (39GX950B) display, which it claims is the world's first 39-inch ultrawide 5K2K OLED gaming monitor, offering a large curved canvas in the increasingly popular 2…
https://www.macrumors.com/2026/05/29/lg-39-inch-5k2k-oled-display-shipping/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
Possible Phishing 🎣
on: ⚠️hxxp[:]//metamaskwalletcustomerservice[.]blogspot[.]com
🧬 Analysis at: https://urldna.io/scan/6a1b41e23b775000066b278b
#cybersecurity #phishing #infosec #urldna #scam #infosec
Working on some new radio related content with my dogs! We are working on a Meshtastic as a dog tracker video and comparing to the new Apple AirTag gen 2 whilst at Hocking Hills with zero cell signal. Meshtastic and amateur radio for comms #meshtastic #amateurradio #airtag #apple #cybersecurity
DuckDuckGo's 'No AI' Search Traffic Climbs as Users Reject Google's AI Overhaul
Privacy-focused search engine DuckDuckGo has seen a surge in demand for its "No AI" search option in the wake of Google's May 19th I/O announcements. Google debuted a new "intelligent" search box reimagined with AI. It …
https://www.macrumors.com/2026/05/29/duckduckgo-no-ai-search/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
🚨 EUVD-2018-21931
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: SIM-PKH
🏢 Vendor: Simpkh
📅 Updated: 2026-05-30
📝 SIM-PKH 2.4.1 contains an arbitrary file upload vulnerability that allows authenticated attackers to upload malicious files by submitting PHP code through the fupload parameter. Attackers can upload PHP files via the aksi_pengurus.php endpoint with module=pen...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-21931
🚨 EUVD-2018-21930
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: Open ISES Project
🏢 Vendor: openises
📅 Updated: 2026-05-30
📝 The Open ISES Project 3.30A contains a path traversal vulnerability in the ajax/download.php endpoint that allows unauthenticated attackers to download arbitrary files by manipulating the filename parameter. Attackers can supply directory traversa...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-21930
🚨 EUVD-2018-21928
📊 Score: 8.8/10 (CVSS v3.1)
📦 Product: eNdonesia Portal
🏢 Vendor: Endonesia
📅 Updated: 2026-05-30
📝 eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through parameters in mod.php. Attackers can inject SQL through the artid, cid, ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-21928
🚨 EUVD-2018-21929
📊 Score: 8.8/10 (CVSS v3.1)
📦 Product: eNdonesia Portal
🏢 Vendor: Endonesia
📅 Updated: 2026-05-30
📝 eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through parameters in mod.php. Attackers can inject SQL through the artid, cid, ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-21929
🚨 EUVD-2018-21927
📊 Score: 8.8/10 (CVSS v3.1)
📦 Product: eNdonesia Portal
🏢 Vendor: Endonesia
📅 Updated: 2026-05-30
📝 eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through parameters in mod.php. Attackers can inject SQL through the artid, cid, ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-21927
🟠 CVE-2026-10124 - High (8.8)
A vulnerability was determined in Shibby Tomato up to 1.28. Affected is the function rip_zebra_read_ipv4 of the file /usr/sbin/ripd of the component Zserv Handler. Executing a manipulation can lead to stack-based buffer overflow. It is possible to...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10124/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-10125 - High (8.8)
A vulnerability was identified in Edimax BR-6478AC 1.23. Affected by this vulnerability is the function formPPPoESetup of the file /goform/formPPPoESetup of the component POST Request Handler. The manipulation of the argument pppUserName leads to ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-45629 - Critical (9.9)
Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.28.8 and earlier, authenticated OS command injection in the /listen-deployment WebSocket endpoint allows any organization member to execute arbitrary system commands on remote ser...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45629/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Backrooms is a certified blockbuster with a $38 million opening day
The wallpaper is the real star of the film. | Image: A24 The Kane Parsons' film Backrooms is expected to earn up to $90 million in its opening weekend after pulling down $38 million on Friday alone. That's not only abov…
https://www.theverge.com/entertainment/940421/backrooms-blockbuster-38-million-opening
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Ransomware Group Claims MyPillow Breach Amid Broader Cybersecurity and Surveillance Developments
📰 Original title: Cybercrime Crew Claims It Hacked Mike Lindell’s MyPillow
🤖 IA: It's not clickbait ✅
👥 Users: It's not clickbait ✅
Ransomware Group Claims MyPillow Breach Amid Broader Cybersecurity and Surveillance Developments
📰 Original title: Cybercrime Crew Claims It Hacked Mike Lindell’s MyPillow
🤖 IA: It's not clickbait ✅
👥 Users: It's not clickbait ✅
ATX12VO V3 standard shrinks the connector and maximizes power efficiency — new 8-pin connector also brings smarter power supply monitoring
Intel's next-generation 12V-only PSU standard reportedly adds PMBus support, smaller connectors, and improved power efficiency.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Fake Anthropic websites are being used to target #ClaudeCode users with a fileless infostealer campaign that steals browser credentials and evades detection.
Read: https://hackread.com/fake-anthropic-sites-fileless-infostealer-claude-code-users/
#CyberSecurity #Anthropic #Claude #AI #Infostealer #SEOPoisoning
Possible Phishing 🎣
on: ⚠️hxxps[:]//imtoken-app[.]com
🧬 Analysis at: https://urldna.io/scan/6a1a76a73b77500003240d5f
#cybersecurity #phishing #infosec #urldna #scam #infosec