voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Possible Phishing 🎣
on: ⚠️hxxps[:]//activation-2d[.]web[.]app
🧬 Analysis at: https://urldna.io/scan/6a189eec3b77500004429a42
#cybersecurity #phishing #infosec #urldna #scam #infosec
Save up to $1,000 on Dell's elite gaming gear before it's gone — prebuilt PCs to laptops that will change the way you game.
Dell is selling a range of premium gaming products with up to $1,000 in savings for a limited time.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Supply-Chain-Angriffe auf Nx Console und GitHub-Repositorys
Eine manipulierte VS-Code-Erweiterung kompromittiert GitHub-interne Systeme, während eine koordinierte Masseninjektion in Tausende Open-Source-Repositories Zugangsdaten, Cloud-Tokens und SSH-Schlüssel abgreift.
https://www.all-about-security.de/supply-chain-angriffe-auf-nx-console-und-github-repositorys/
ASRock BC-250 used for Steam Machine duty gains third-party hack to unlock all 40 CUs — mining board now has more CUs than a base PS5
Enthusiasts of ASRock's BC-250 server board have figured out a way to unlock all 40CUs inside the system's PS5-derived SoC, giving it more GPU cores than a base PS5.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
🚨 EUVD-2026-33247
📊 Score: 4.3/10 (CVSS v3.1)
📦 Product: Poll Maker by AYS – Versus Polls, Anonymous Polls, Image Polls
🏢 Vendor: ays-pro
📅 Updated: 2026-05-29
📝 The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to and including 6.3.7. This is due to insufficient access ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33247
🚨 EUVD-2026-33246
📊 Score: 4.4/10 (CVSS v3.1)
📦 Product: Post Snippets – Custom WordPress Code Snippets Customizer
🏢 Vendor: saadiqbal
📅 Updated: 2026-05-29
📝 The Post Snippets plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.0.19. This is due to insufficient output escaping of imported snippet content when...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33246
Possible Phishing 🎣
on: ⚠️hxxps[:]//btconnectupdateformplan01[.]surveysparrow[.]com
🧬 Analysis at: https://urldna.io/scan/6a1898863b775000054a43d1
#cybersecurity #phishing #infosec #urldna #scam #infosec
Artificial intelligence company Anthropic said it had raised $65 billion in a new funding round that values the Claude maker at $965 billion, more than its archrival OpenAI, the maker of ChatGPT. https://www.japantimes.co.jp/business/2026/05/29/tech/anthropic-valuation/?utm_medium=Social&utm_source=mastodon #business #tech #mythos #anthropic #ai #openai #cybersecurity
FortiClient EMS Under Active Attack: Critical CVE-2026-35616 Exploited to Deploy Malware https://deafnews.it/en/article/forticlient-ems-attacchi-attivi-con-cve-2026-35616 #Cybersecurity
Get 32GB of Corsair Vengeance DDR5 RAM for $240 when paired with this Asus motherboard — start your AM5 PC for just $639, saving $245 in the process
Get 32GB of DDR5 RAM for $240 when you buy it bundled with an Asus ROG Strix X870E-E motherboard.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Sandisk brings back affordable storage to rescue buyers from the SSD crisis — new 320 and 520 SATA SSDs are ready to launch
Sandisk prepares to launch 520 and 320 SATA SSDs with capacities up to 4TB.
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
Congress Probes AI's Dual Role in Shaping Cybersecurity Landscape
As Congress probes the impact of artificial intelligence on cybersecurity, concerns are rising about China's aggressive pursuit of AI dominance, a technology that will shape the future of economic and military power. A crucial hearing on June 4 will bring together top experts to discuss how frontier AI models are…
#ArtificialIntelligence #NationalSecurity #EmergingThreats #China #Cybersecurity
Welp, this brings Qilin's attacks on Australian organisations to 17 this year alone, and in this case, the data has now been published, potentially compromising several of Kennedy McLaughlin's clients.
Possible Phishing 🎣
on: ⚠️hxxps[:]//site235744746[.]fo[.]team
🧬 Analysis at: https://urldna.io/scan/6a1890bd3b77500004429860
#cybersecurity #phishing #infosec #urldna #scam #infosec
Samsung Display announces world's first 360 Hz 4K QD-OLED panel — dual-mode support also offers 680Hz at …
Samsung just announced that it will launch a 360 Hz 4K QD-OLED panel at Computex 2026. The company says that this is the first panel that can hit those refresh rates at a native 4K, and that it's already in talks with s…
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TomsHardware [Tom's Hardware]
🚨 EUVD-2026-33211
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Out of bounds write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33211
🚨 EUVD-2026-33214
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Out of bounds read in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33214
🚨 EUVD-2026-33200
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Use after free in Accessibility in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33200
🚨 EUVD-2026-33204
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Integer overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33204
🚨 EUVD-2026-33219
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Heap buffer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33219
🚨 EUVD-2026-33209
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33209
🚨 EUVD-2026-33196
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33196
🚨 EUVD-2026-33201
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33201
🚨 EUVD-2026-33197
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Use after free in Accessibility in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33197
🚨 EUVD-2026-33210
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33210
🚨 EUVD-2026-33216
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Uninitialized Use in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker to leak cross-origin information via a crafted HTML page. (Chromium security severity: High)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33216
🚨 EUVD-2026-33180
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Insufficient validation of untrusted input in UI in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33180
🚨 EUVD-2026-33178
📊 Score: n/a
📦 Product: Chrome
🏢 Vendor: Google
📅 Updated: 2026-05-29
📝 Use after free in Base in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33178
NordVPN isn't just a VPN anymore, but a full security suite - here's what you get now
NordVPN argues that antivirus now means far more than it used to, so creating an app that combines VPN services with modern threat protection is the right path.
https://www.zdnet.com/article/nordvpn-combines-vpn-antivirus-in-one-app/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
The transport ministry called on infrastructure operators to take measures against the misuse of high-performance artificial intelligence models, including U.S. startup Anthropic's Claude Mythos. https://www.japantimes.co.jp/news/2026/05/28/japan/transport-ministry-ai-guard/?utm_medium=Social&utm_source=mastodon #japan #ai #cybersecurity #anthropic
Why I ditched Copilot for Claude in Word, Excel, and PowerPoint - and how you can, too
Need AI help in Microsoft 365, but don't love Copilot? Claude AI can help you create, edit, and analyze documents. Here's how.
https://www.zdnet.com/article/how-i-ditched-copilot-for-claude-in-word-excel-powerpoint/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
Possible Phishing 🎣
on: ⚠️hxxp[:]//w3s[.]link/ipfs/bafybeih2gfnjdhhabsfqj2menb5eoli7ecxoaroq6uwxhw4evf7gp7vwpi
🧬 Analysis at: https://urldna.io/scan/6a18dee33b7750000442a1a1
#cybersecurity #phishing #infosec #urldna #scam #infosec
How to watch the 2026 FIFA World Cup: 9 ways to stream (including free options)
One of the biggest sporting events of all time kicks off soon - and you don't need an expensive cable package to watch.
https://www.zdnet.com/article/how-to-watch-the-world-cup-2026/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #ZDNet [ZDNet]
🚨 EUVD-2026-33005
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: MPD
🏢 Vendor: MusicPlayerDaemon
📅 Updated: 2026-05-28
📝 Music Player Daemon (MPD) before version 0.24.11 contains a server-side request forgery vulnerability in CurlInputPlugin where CURLOPT_FOLLOWLOCATION is set without CURLOPT_REDIR_PROTOCOLS_STR, allowing unauthenticated attackers to bypass the http/http...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33005
🟠 CVE-2026-32847 - High (7.5)
DeepCode through commit c991dc2 contains a path traversal vulnerability in the SPA catch-all route in new_ui/backend/main.py that allows unauthenticated attackers to read arbitrary files by supplying percent-encoded path segments to the GET /{full...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-32847/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🚨 EUVD-2026-33004
📊 Score: 8.6/10 (CVSS v3.1)
📦 Product: C6
🏢 Vendor: XCharge
📅 Updated: 2026-05-28
📝 A configuration weakness in the device’s remote management service allows an authenticated session to be established over a communication channel intended solely for vehicle-charger signaling. The service is accessible on interfaces exposed through the charging c...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33004
🚨 EUVD-2026-33003
📊 Score: 8.6/10 (CVSS v3.1)
📦 Product: C6
🏢 Vendor: XCharge
📅 Updated: 2026-05-28
📝 A stack-based buffer overflow vulnerability in the charging controller’s signal-processing logic allows an attacker with physical access to the charging interface to supply message fields that exceed expected bounds. Because the input is not sufficiently validate...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33003
🚨 EUVD-2026-33002
📊 Score: 9.3/10 (CVSS v3.1)
📦 Product: C6
🏢 Vendor: XCharge
📅 Updated: 2026-05-28
📝 A firmware update mechanism in the affected charging controller fails to validate the authenticity of firmware packages delivered through the device's management interface. Because cryptographic signatures are not verified, an attacker with the ability to interfe...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33002
🚨 EUVD-2026-33000
📊 Score: 8.8/10 (CVSS v3.1)
📦 Product: MPD
🏢 Vendor: MusicPlayerDaemon
📅 Updated: 2026-05-28
📝 Music Player Daemon (MPD) before version 0.24.11 contains a stack buffer overflow vulnerability in the pcm_unpack_24be function in src/pcm/Pack.cxx that allows unauthenticated attackers to corrupt stack memory by triggering an off-by-one write in the P...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33000
🚨 EUVD-2026-33001
📊 Score: 8.7/10 (CVSS v3.1)
📦 Product: MPD
🏢 Vendor: MusicPlayerDaemon
📅 Updated: 2026-05-28
📝 Music Player Daemon (MPD) before version 0.24.11 contains a path traversal vulnerability in LocalStorage::MapFSOrThrow and LocalStorage::MapUTF8 within the local storage plugin, where the on-disk path is constructed by joining the storage root with a u...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-33001
🚨 EUVD-2026-32976
📊 Score: 8.2/10 (CVSS v3.1)
📦 Product: deepobj
🏢 Vendor: ranfdev
📅 Updated: 2026-05-28
📝 deepobj provides get, set, delete deep objects in javascript. Prior to 1.0.3, prototype pollution is possible when property paths contain __proto__/constructor/prototype. The property path must not be exposed as user input. This vulnerability is fixed in 1.0.3.
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-32976
🟠 CVE-2026-9095 - High (8.1)
Casdoor versions 2.362.0 and earlier map SAML assertions to user sessions without replay protection. The ParseSamlResponse() function in object/saml_sp.go calls sp.RetrieveAssertionInfo() and immediately maps the result to a user session. There is...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-9095/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-38702 - Critical (9.8)
A command injection vulnerability exists in the Admin Access feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier versions. Attackers can exploit this vulnerabil...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-38702/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
🔴 CVE-2026-38703 - Critical (9.8)
A command injection vulnerability exists in the ZeroTier VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier versions. Attackers can exploit this vulnerabil...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-38703/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack