voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
📰 Xona plans to deploy 258 satellites into low-Earth orbit as a potential alternative to GPS navigation systems.
📰 Xona plans to deploy 258 satellites into low-Earth orbit as a potential alternative to GPS navigation systems.
Roblox is Adding AI Game Creation to iPhone and iPad
Online game platform Roblox today said it is adding a new Build tool that will let iPhone and iPad users create games using AI. With the mobile-first Build option, Roblox users can write a text-based prompt and have AI …
https://www.macrumors.com/2026/07/16/roblox-ai-game-creation/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
Possible Phishing 🎣
on: ⚠️hxxps[:]//site-0iom9xtic[.]godaddysites[.]com/
🧬 Analysis at: https://urldna.io/scan/6a5ac9dc3b77500003e20e37
#cybersecurity #phishing #infosec #urldna #scam #infosec
🟠 CVE-2026-56740 - High (7.5)
JLine is a Java library for handling console input. Prior to 3.30.14, 4.0.16, and 4.2.1, the JLine3 Telnet server remote-telnet module does not limit the number of environment variables a client may inject via the Telnet NEW-ENVIRON option, and Te...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56740/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-56741 - High (7.5)
JLine is a Java library for handling console input. Prior to 3.30.14, 4.0.16, and 4.2.1, the JLine3 Telnet server remote-telnet module does not apply an upper bound to terminal dimensions received via the Telnet NAWS option, and TelnetIO.handleNAW...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56741/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-49485 - High (7.5)
HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.9 and 6.9.4.2, all implementations of FHIRPathEngine accept arbitrary FHIRPath expressions and evaluate them without input valida...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49485/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-50272 - High (7.5)
dd-trace is the Datadog APM client for Node.js. Prior to 5.100.0, W3C baggage propagation in packages/dd-trace/src/baggage.js and packages/dd-trace/src/opentracing/propagation/text_map.js parsed incoming baggage HTTP headers without enforcing DD_T...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50272/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-50274 - High (7.5)
Datadog dd-trace-go is a Go client library for Datadog application performance monitoring, profiling, and security monitoring. Prior to 2.8.1, Datadog tracing libraries that implement W3C baggage propagation parse incoming baggage HTTP headers wit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50274/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-54159 - Critical (10)
PrestaShop ps_facetedsearch is a module that adds layered navigation filters. From 3.0.0 until 4.0.4, the ps_facetedsearch module rebuilds selected search filters from the request URL, and the value of a slider filter, price or weight, is taken fr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54159/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
This dumb password rule is from SONY.
- between 8 and 30 characters
- at least one number or special character
- not part of email address
- avoid common passwords
- repeating characters 3 or more times should be avoided
- currency characters and 3 or more consecutive characters, also in reverse order, should be avoided
Somehow "$" i...
https://dumbpasswordrules.com/sites/sony/
#password #passwords #infosec #cybersecurity #dumbpasswordrules
Google Search Now Connects to Instacart, Canva and YouTube Music
Google is expanding AI Mode in Search, allowing users to connect apps to improve search results and "get more done." Instacart, YouTube Music, and Canva can be connected, and Google explains how the integrations can be …
https://www.macrumors.com/2026/07/16/google-search-app-connectors/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #MacRumors [MacRumors]
🟠 CVE-2026-54498 - High (8.7)
view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 4.0.0 until 4.12.0, ViewComponent::Base#around_render can return HTML-unsafe strings that bypass the escaping behavior applied t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54498/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-50271 - High (7.5)
Datadog dd-trace-py is the Datadog Python APM client. Prior to 4.8.2, Datadog tracing libraries that implement W3C baggage propagation parse incoming baggage HTTP headers without enforcing DD_TRACE_BAGGAGE_MAX_ITEMS or DD_TRACE_BAGGAGE_MAX_BYTES l...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50271/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Cocinando nuevo video para el canal! 🚀
Seguimos hablando sobre ciberseguridad, ahora específicamente sobre criptografía simétrica, conceptos y práctica con #openssl.
En breve estará publicado, no olviden suscribirse para enterarse! 👇️ 👇️
https://www.youtube.com/juncotic?sub_confirmation=1
Estén atentos/as!
#video #criptografia #crypto #youtube #juncotic ciberseguridad #cybersecurity
I tested this backup power station during a real blackout - don't make my mistakes
A real three-day blackout revealed problems I never would've found on a power station's spec sheet.
https://www.zdnet.com/article/i-tested-backup-power-station-during-blackout-dont-make-my-mistakes/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
Dell XPS 16 review: A sleek, high-end laptop perfect for creatives and professionals
Dell's XPS 16 screams 'Premium laptop' thanks to its sleek design, OLED screen, and powerful hardware.
https://www.zdnet.com/article/dell-xps-16-review/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
🚨 EUVD-2026-45338
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: org.hl7.fhir.core, org.hl7.fhir.core
🏢 Vendor: hapifhir
📅 Updated: 2026-07-17
📝 HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.9 and 6.9.4.2, all implementations of FHIRPathEngine accept arbitrary FHIRPath expressions and evaluate them w...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45338
🚨 EUVD-2026-45337
📊 Score: 3.7/10 (CVSS v3.1)
📦 Product: feathers
🏢 Vendor: feathersjs
📅 Updated: 2026-07-17
📝 Feathersjs is a framework for creating web APIs and real-time applications with TypeScript or JavaScript. In 5.0.44 and earlier, the _.merge(target, source) utility exported by @feathersjs/commons recursively merges source into target by iterating Object...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45337
Possible Phishing 🎣
on: ⚠️hxxps[:]//verfyacounthelp[.]start[.]page
🧬 Analysis at: https://urldna.io/scan/6a5a9f9b3b77500003e209fe
#cybersecurity #phishing #infosec #urldna #scam #infosec
Nvidia: 422 CVEs, 94% unpatched. 24 critical, avg CVSS 6.84. Trust Score: C. Top weakness: Code Injection (CWE-94). GPU security matters. #Nvidia #cybersecurity #infosec
📰 Buzz Aldrin sold a famous felt-tip pen used during the Apollo 11 mission to the Moon for $250,000, but it did not break sales records.
🔗 https://arstechnica.com/space/2026/07/apollo-11s-broken-switch-and-mission-saving-pen-sell-for-860k/
📰 Buzz Aldrin sold a famous felt-tip pen used during the Apollo 11 mission to the Moon for $250,000, but it did not break sales records.
🔗 https://arstechnica.com/space/2026/07/apollo-11s-broken-switch-and-mission-saving-pen-sell-for-860k/
This air purifier is helping keep my home's air free of wildfire smoke - and it's on sale
Get cleaner air for less with the Blueair Blue Pure 211i Max air purifier for 20% off on Amazon right now.
https://www.zdnet.com/article/blueair-blue-pure-211i-max-air-purifier-deal/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
This Levoit is the best smart air purifier I've tested (and it's on sale)
The Levoit Vital 200S-P is the smart air purifier to beat, with a washable prefilter and a capacity to clean up to 1,800 square feet in one hour.
https://www.zdnet.com/article/levoit-vital-200s-p-smart-air-purifier-deal/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
Possible Phishing 🎣
on: ⚠️hxxps[:]//www[.]borderclick[.]com/BC/media/Borderclick/Files/roblox-gift-card[.]html
🧬 Analysis at: https://urldna.io/scan/6a5a130d3b7750000661f5e1
#cybersecurity #phishing #infosec #urldna #scam #infosec
Robot vacuum flaw lets one stolen certificate run root commands on other Shark robovacs in the same AWS region — unpatched flaw exposes live camera feeds, stored home maps, and Wi-Fi credentials
The problem is an over-permissive AWS IoT policy.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Mario Kart Wii recompiled for PC using AI, with 4K potential and uncapped frame rates — 'first static recompilation of a Wii game' supports over 200 tracks thanks to Retro Rewind compatibility
Mario Kart Wiicompiled, a claimed 'first static recompilation of a Wii game,' is scheduled to be released in August.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Possible Phishing 🎣
on: ⚠️hxxps[:]//surl[.]li/clleke
🧬 Analysis at: https://urldna.io/scan/6a5a5fb13b775000099148ca
#cybersecurity #phishing #infosec #urldna #scam #infosec
APT37 Operation Capsule Vault Targets Academic Researchers
Pulse ID: 6a5acbd137d6b556397dbf71
Pulse Link: https://otx.alienvault.com/pulse/6a5acbd137d6b556397dbf71
Pulse Author: cryptocti
Created: 2026-07-18 00:41:53
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#APT37 #CyberSecurity #InfoSec #OTX #OpenThreatExchange #RAT #bot #cryptocti
ASML looks to increase prices of its Low-NA EUV tools beyond existing productivity-based model — company wants to capture the …
ASML's comments point to intentions to increase prices, though the company is expected to maintain its value-based approach to price setting. Yet, TSMC is reportedly unhappy about the potential plan.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
🛡️ هل تريد دخول عالم الأمن السيبراني والاختبار الاختراقي؟
ليس كل توزيعة لينكس مناسبة لنفس الغرض! في هذا الدليل نستعرض **أفضل 5 توزيعات لينكس للأمن السيبراني**، مع توضيح مميزات كل واحدة، وأفضل استخداماتها، ولمن تناسب، سواء كنت مبتدئًا أو محترفًا.
📖 اقرأ الدليل الكامل:
https://www.masdarx.com/posts/best-linux-distros-cybersecurity/
💬 ما هي توزيعتك المفضلة للأمن السيبراني؟ وهل تستخدم Kali Linux أم تفضل بديلًا آخر؟
#لينكس #Linux #CyberSecurity #KaliLinux #ParrotOS #BlackArch #BackBox #Fedora #OpenSource #المصدر_المفتوح #الأمن_السيبراني
🔴 CVE-2026-9103 - Critical (9.8)
IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to gain unauthorized access due to improper authentication in the /api/v1/login/auto_login endpoint. The endpoint issues long-lived superuser bearer tokens without requiring authe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-9103/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-9135 - Critical (9.9)
IBM Langflow OSS 1.0.0 through 1.10.0 Langflow versions up to 1.9.2 (commit 94981c443d4918517b9e8163d70fc598dc33a32d) contain a code injection vulnerability in the Policies component's ToolGuard integration that bypasses the allow_custom_component...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-9135/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🟠 CVE-2026-9171 - High (7.5)
IBM PowerVM Novalink are vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume memory resources.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-9171/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
Galaxy Z Fold 8 shows up on video as BTS joins Samsung’s hype train
BTS star J-Hope was just spotted with the unreleased Galaxy Z Fold 8.
https://www.androidauthority.com/bts-member-holding-galaxy-z-fold-8-3688932/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Apple’s plot to crush OpenAI
Apple is suing OpenAI. The complaint is readable and intense, as these things often are, though many experts seem to think many of the allegations are just the ways things are done. So what does Apple really want here, …
https://www.theverge.com/podcast/967244/apple-openai-lawsuit-vergecast
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Spotify could be about to fix one long-standing security omission
Our APK teardown suggests the streaming platform is finally working on passkeys.
https://www.androidauthority.com/spotify-passkey-login-apk-teardown-3688948/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Apple Music just quietly raised its prices
The service now costs between $1 and $3 more per month.
https://www.androidauthority.com/apple-music-price-increases-3688951/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Gboard could soon be able to understand sign language with your phone’s camera
Get ready for maybe Gboard's biggest accessibility feature ever: Sign-to-Text.
https://www.androidauthority.com/gboard-sign-to-text-3688910/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
So, it appears that, if you have LeapXPert, whatever the hell that is, you can fully record Signal conversations.
According to the US Government, that's how they record the, supposed, 'secure' conversations between top US officials for archival purposes.
Its nice of them to admit it.
Wow Signal, fully KYC SIM cards AND third-party eaves- dropping apps.
That's some secure, private, messaging app you've got there.
🚨 EUVD-2026-45281
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: joserfc
🏢 Vendor: authlib
📅 Updated: 2026-07-17
📝 joserfc is a Python library that provides an implementation of several JSON Object Signing and Encryption (JOSE) standards. Prior to 1.6.8, joserfc.jwt.decode accepts attacker-forged HMAC-signed tokens when the caller-supplied verification key is the empty s...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45281
🚨 EUVD-2026-45280
📊 Score: n/a
📦 Product: WordPress, WordPress
🏢 Vendor: WordPress
📅 Updated: 2026-07-17
📝 WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion issue which, combined with the author__not_in WP_Query SQL Injection (CVE-2026-60137), could allow an attacker to perform SQL Injection and achieve R...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45280
🚨 EUVD-2026-45279
📊 Score: n/a
📦 Product: WordPress, WordPress, WordPress
🏢 Vendor: WordPress
📅 Updated: 2026-07-17
📝 WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter of WP_Query, which could allow SQL Injection when a plugin or theme passes untrusted input to the parameter.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45279
🚨 EUVD-2026-45278
📊 Score: 8.8/10 (CVSS v3.1)
📦 Product: Langflow OSS
🏢 Vendor: IBM
📅 Updated: 2026-07-17
📝 IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters at runtime via the API. A critical security flaw exists in the parameter filtering mechanism within the `apply_tweaks()` function.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45278
🚨 EUVD-2026-45277
📊 Score: 7.1/10 (CVSS v3.1)
📦 Product: pimcore, pimcore
🏢 Vendor: pimcore
📅 Updated: 2026-07-17
📝 Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.6, CustomReports uses inconsistent authorization between the report listing endpoint and the report detail endpoint in bundles/CustomReportsBundle/src/C...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45277