voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
#OpenAI is announcing new #partnerships to combat #misinformation and offering its #cybersecurity products to state officials ahead of elections. The company is also endorsing transparency legislation to combat deepfakes. https://www.axios.com/2026/05/27/openai-cyber-misinformation-defenses-elections?eicker.news #tech #media #news
The secret to Roku’s success: not being cool
This is Lowpass by Janko Roettgers, a newsletter on the ever-evolving intersection of tech and entertainment, syndicated just for The Verge subscribers once a week. Roughly 10 years ago, someone told me that Roku was ma…
https://www.theverge.com/column/938879/roku-homescreen-redesign-not-cool
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #TheVerge [The Verge]
Credential Stealer EKZ Delivered via FortiClient EMS Exploitation
Attackers exploited CVE-2026-35616 in FortiClient EMS. Threat actors changes EMS settings and pushed a malicious VPN script to endpoints. The script downloaded EKZ Infostealer, disguised as a Fortinet patch. The malware steals browser passwords, cookies, and autofill data.
Pulse ID: 6a1879e15c8f2d2d2cf72b60
Pulse Link: https://otx.alienvault.com/pulse/6a1879e15c8f2d2d2cf72b60
Pulse Author: cryptocti
Created: 2026-05-28 17:22:41
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Browser #Cookies #CyberSecurity #Endpoint #InfoSec #InfoStealer #Malware #OTX #OpenThreatExchange #Password #Passwords #VPN #Word #bot #cryptocti
Credential Stealer EKZ Delivered via FortiClient EMS Exploitation
Attackers exploited CVE-2026-35616 in FortiClient EMS. Threat actors changes EMS settings and pushed a malicious VPN script to endpoints. The script downloaded EKZ Infostealer, disguised as a Fortinet patch. The malware steals browser passwords, cookies, and autofill data.
Pulse ID: 6a1879e2d85be08873d89445
Pulse Link: https://otx.alienvault.com/pulse/6a1879e2d85be08873d89445
Pulse Author: cryptocti
Created: 2026-05-28 17:22:42
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Browser #Cookies #CyberSecurity #Endpoint #InfoSec #InfoStealer #Malware #OTX #OpenThreatExchange #Password #Passwords #VPN #Word #bot #cryptocti
🚨 EUVD-2026-32860
📊 Score: 6.0/10 (CVSS v3.1)
📦 Product: DWR-X1820
🏢 Vendor: D-Link Corporation
📅 Updated: 2026-05-28
📝 Dlink DWR-X1820 router uses weak default password generated from its IMEI number and does not require users to change it. An attacker who knows how passwords are generated can easily crack the default password if they have the device IMEI number...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-32860
🚨 EUVD-2026-32764
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+9 more)
🏢 Vendor: Linux
📅 Updated: 2026-05-28
📝 In the Linux kernel, the following vulnerability has been resolved:
mptcp: pm: ADD_ADDR rtx: fix potential data-race
This mptcp_pm_add_timer() helper is executed as a timer callback in
softirq context. To avoid any data races, the socket lock needs to...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-32764
🚨 EUVD-2026-32767
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+7 more)
🏢 Vendor: Linux
📅 Updated: 2026-05-28
📝 In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: btmtk: validate WMT event SKB length before struct access
btmtk_usb_hci_wmt_sync() casts the WMT event response SKB data to
struct btmtk_hci_wmt_evt (7 bytes) and struct bt...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-32767
🚨 EUVD-2026-32765
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+13 more)
🏢 Vendor: Linux
📅 Updated: 2026-05-28
📝 In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt
hci_le_create_big_complete_evt() iterates over BT_BOUND connections for
a BIG handle using a wh...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-32765
🚨 EUVD-2026-32768
📊 Score: n/a
📦 Product: Linux, Linux, Linux (+5 more)
🏢 Vendor: Linux
📅 Updated: 2026-05-28
📝 In the Linux kernel, the following vulnerability has been resolved:
powerpc/xive: fix kmemleak caused by incorrect chip_data lookup
The kmemleak reports the following memory leak:
Unreferenced object 0xc0000002a7fbc640 (size 64):
comm "kworker/8:1"...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-32768
'Mainstream malware now regularly affects macOS users' — inside the relentless rise of the AMOS infostealer, one of the most dangerous macOS malware ever developed
Atomic macOS Stealer, also known as AMOS, is a persistent macOS security threat because it does not need sophisticated zero-day vulnerabilities to compromise Apple devices.
#apple #macos #security #cybersecurity #hackers #hacking #hacked
Habr » 🤖 🌐
@habr@zhub.link
Zero Trust для подрядного доступа: четыре слоя Identity, Device, Access и Monitoring
По данным BI.ZONE , почти треть инцидентов с шифрованием в России в 2025 году пришлась на атаки через подрядчика. Не через FW-периметр, а через легитимный канал: учетку внешнего исполнителя, общую сеть, привилегии, выданные под задачу и оставшиеся навсегда. Это разбор-практикум: как избежать подобного с помощью модели Zero Trust и как строится подрядный доступ, и как собрать такой контур у себя. Без теории ради теории — каждый слой идет с конкретными шагами, готовыми скриптами и проверкой, что у вас уже работает, а что нет. Материал для тех, кто проектирует или эксплуатирует доступ внешних исполнителей: ИБ-инженеров, архитекторов, системных администраторов. Zero Trust для подрядного доступа строится по четырем слоям: Identity (кто подключается), Device (с какого устройства), Access (к чему и как) и Monitoring (что делал). Пройдем каждый слой по шагам: от IdP и MFA до Posture Check, ZTNA и VDI, PAM и мониторинга на SIEM, UEBA (User and Entity Behavior Analytics, аналитика поведения пользователей и сущностей) и SOAR, с кейсами, цифрами, схемами и двумя рабочими bash-скриптами для Linux. Начать можно за одну рабочую неделю: аудит учеток, MFA на sudo, первые отчеты по забытым доступам. Полный контур занимает от нескольких месяцев до пары лет в зависимости от масштаба. К концу статьи у вас будет карта всех четырех слоев и понятный первый шаг, который реально сделать на своей инфраструктуре уже завтра.
https://habr.com/ru/companies/vktech/articles/1029230/
#vk_cloud #zero_trust #информационная_безопасность #ztna #cybersecurity #vk_tech #иб
These new Android phones go all in on zoom photography and battery life
Xiaomi's 17T series finally gives the cheaper model a proper zoom lens.
https://www.androidauthority.com/xiaomi-17t-and-17t-pro-debut-3672121/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Critical Ghost CMS Flaw Exploited: 700+ Sites Compromised by Competing Threat Actors https://deafnews.it/en/article/critical-ghost-cms-flaw-exploited-700-sites-compromised-by-competing-threat-actors #Cybersecurity
#chrome extension Ai For Amazon Listings Co seems malicious. Its #cybersecurity badness score is 91/100!
```json
{"id": "bfobpdekijjlmjndakaogdbfoajedioi", "score": 91, "platform": "chrome", "name": "Ai For Amazon Listings Co"}
```
Just as fitness trackers get interesting again, the Xiaomi Smart Band 10 Pro goes global
Xiaomi’s latest offers a brighter AMOLED display, upgraded tracking features, and fantastic battery life.
https://www.androidauthority.com/xiaomi-smart-band-10-pro-global-launch-3670474/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Possible Phishing 🎣
on: ⚠️hxxps[:]//rackspacebuildmail[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a17d3bc3b775000051b2910
#cybersecurity #phishing #infosec #urldna #scam #infosec
Snapdragon C is here to power $300 Windows laptops, undercutting the Macbook Neo
Snapdragon-powered Windows laptops usually start at $500 to $600, but this chip lowers the bar in a big way.
https://www.androidauthority.com/qualcomm-snapdragon-c-300-windows-laptops-3670900/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
🚨 𝗝𝗢𝗠𝗔𝗡𝗚𝗬 𝗪𝗲𝗯𝘀𝗵𝗲𝗹𝗹 𝗘𝗻𝗮𝗯𝗹𝗲𝘀 𝗟𝗼𝗻𝗴-𝗧𝗲𝗿𝗺 𝗖𝗼𝗺𝗽𝗿𝗼𝗺𝗶𝘀𝗲 𝗼𝗳 𝗩𝗼𝗜𝗣 𝗜𝗻𝗳𝗿𝗮𝘀𝘁𝗿𝘂𝗰𝘁𝘂𝗿𝗲
⚠️ #JOMANGY is an actively used PHP backdoor targeting FreePBX-based VoIP environments with stealth, self-recovery, and VoIP/SIP abuse capabilities.
Once deployed, it establishes persistent access, creates hidden root accounts, and abuses Asterisk/SIP services for toll fraud operations. Since VoIP systems are deeply integrated into enterprise environments, delayed detection can lead to prolonged unauthorized access, financial loss, and operational disruption.
❗️ The malware relies on stealth and defense-evasion techniques designed to survive cleanup attempts and complicate containment for SOC and IR teams once systems are compromised. MITRE ATT&CK techniques observed include:
🔹 𝗣𝗲𝗿𝘀𝗶𝘀𝘁𝗲𝗻𝗰𝗲 via Cron jobs and Unix shell configuration abuse
🔹 𝗗𝗲𝗳𝗲𝗻𝘀𝗲 𝗲𝘃𝗮𝘀𝗶𝗼𝗻 through log clearing, timestomping, and firewall modification
🔹 𝗖𝗿𝗲𝗱𝗲𝗻𝘁𝗶𝗮𝗹 𝗮𝗰𝗰𝗲𝘀𝘀 targeting `/etc/passwd` and `/etc/shadow`
🔹 𝗖𝗼𝗺𝗽𝗲𝘁𝗶𝘁𝗶𝘃𝗲 𝗲𝘃𝗶𝗰𝘁𝗶𝗼𝗻 of other webshells from compromised systems
🔹 𝗩𝗼𝗜𝗣/𝗦𝗜𝗣 𝗮𝗯𝘂𝘀𝗲 supporting toll fraud operations
Execution chain:
Vulnerable FreePBX instance ➡️ Exploit public vulnerabilities ➡️ Bash stager deployment ➡️ JOMANGY webshell deployment ➡️ Multiple persistence mechanisms ➡️ Self-healing loop ➡️ VoIP/SIP abuse
👨💻 Using #ANYRUN Sandbox, investigate JOMANGY behavior in real time, validate detection coverage, and observe webshell deployment, persistence mechanisms, and outbound C2 activity: https://app.any.run/tasks/6c779f0e-e422-4ef5-9bc7-6a799480cc20/?utm_source=mastodon&utm_medium=post&utm_campaign=jomangy_webshell&utm_content=linktoservice&utm_term=280526
Earlier visibility into persistence and webshell behavior helps SOC teams accelerate containment and reduce attacker dwell time. IOCs in the comments 💬
🔍 #ANYRUN TI Lookup reveals two active JOMANGY infrastructure clusters tied to attacker-controlled C2 servers, with activity traced back to April 2026. This visibility helps threat hunters uncover related activity, identify compromised environments, and track infrastructure reuse across campaigns: https://intelligence.any.run/analysis/lookup?utm_source=mastodon&utm_medium=post&utm_campaign=jomangy_webshell&utm_content=linktotilookup&utm_term=280526#%7B%2522query%2522:%2522destinationIP:%255C%2522160.119.69.4%255C%2522%2520OR%2520destinationIP:%255C%252245.95.147.178%255C%2522%2522,%2522dateRange%2522:180%7D
🚀 Scale your SOC’s triage and response with solutions trusted by 74 Fortune 100 companies and detect business risks earlier. Get an exclusive 10th anniversary deal for your team: https://app.any.run/plans/?utm_source=mastodon&utm_medium=post&utm_campaign=jomangy_webshell&utm_content=linktoplans&utm_term=280526
🚨 EUVD-2026-32727
📊 Score: n/a
📦 Product: Eupago Gateway For Woocommerce
🏢 Vendor: Unknown
📅 Updated: 2026-05-28
📝 The Eupago Gateway For Woocommerce WordPress plugin before 4.7.2 does not properly restrict access to its refund request handler, allowing unauthenticated attackers to initiate refunds against any WooCommerce order using the merchant's payment gatewa...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-32727
🚨 EUVD-2026-32726
📊 Score: 7.0/10 (CVSS v3.1)
📅 Updated: 2026-05-28
📝 A command injection vulnerability was discovered in the `rpmuncompress` utility of RPM. When extracting certain archive formats (ZIP, 7z, GEM) to a specified destination directory, the tool inserts the archive's top-level folder name into a shell command without properly sanitizing it. A specia...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-32726
Qilin Ransomware Gang Claims Breach of New Zealand Health Firm Alpha Group Holdings
New Zealand health supplement manufacturer Alpha Group Holdings has been listed on the Qilin ransomware leak site, though no stolen data has been published to verify the claim. The incident highlights the ongoing threat of Ransomware-as-a-Service groups targeting high-value intellectual property in the biotech sector.
****
#cybersecurity #infosec #incident #ransomware
https://beyondmachines.net/event_details/qilin-ransomware-gang-claims-breach-of-new-zealand-health-firm-alpha-group-holdings-2-7-h-w-s/gD2P6Ple2L
Tycoon 2FA Phishing Kit Bypasses MFA at Scale — 62% of Microsoft 365 Phishing Attempts Linked to Single Threat Actor
#CyberSecurity
https://securebulletin.com/tycoon-2fa-phishing-kit-bypasses-mfa-at-scale-62-of-microsoft-365-phishing-attempts-linked-to-single-threat-actor/
Habr » 🤖 🌐
@habr@zhub.link
Больше, чем просто безопасность, или Зачем контролировать зависимости
Привет, Хабр! Меня зовут Артём Бердашкевич, в Positive Technologies руковожу направления DevSecOps. Сегодня хочу поговорить о теме, которая с годами становится только острее — о контроле зависимостей и о том, почему привычных подходов к нему уже катастрофически не хватает. Современная разработка давно превратилась в сборку из готовых компонентов, где мы почти не пишем код с нуля, а комбинируем фреймворки, библиотеки и модули с открытым исходным кодом. Такой подход радикально ускоряет вывод продуктов на рынок, но за скорость приходится платить прозрачностью. Команда часто не знает точный состав своего приложения до финальной сборки. Почему это стало большой проблемой и что с ней делать — читайте под катом.
https://habr.com/ru/companies/pt/articles/1040080/
#cybersecurity #devsecops #sca #легаси #зависимости #cve #безопасная_разработка #docker #sandbox #appsec
I found a hidden way to use the Fitbit Air that Google didn’t tell you about
The Fitbit Air can solved a big problem for walking exercises where you don't swing your hands back and forth.
https://www.androidauthority.com/wear-fitbit-air-ankle-walking-test-3671524/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
BadHost (CVE-2026-48710): Critical Authentication Bypass Threatens Thousands of AI Agent Applications
#CyberSecurity
https://securebulletin.com/badhost-cve-2026-48710-critical-authentication-bypass-threatens-thousands-of-ai-agent-applications/
The FBI has issued a critical warning about the Silent Ransom Group (SRG), also known as Luna Moth. This sophisticated extortion gang is escalating its tactics beyond digital attacks, now physically infiltrating U.S. law firms and financial organizations. They use social engineering to gain remote access, but if that fails, they dispatch actors to physically insert USB drives into target…
#cybersecurity #fbi #silentransomgroup
🤖 This post was AI-generated.
Galaxy Z Fold 8 Wide dummy reveals an incredibly thin yet compact device
The Z Fold 8 Wide looks very thin and compact, if this dummy model can be trusted.
https://www.androidauthority.com/galaxy-z-fold-8-wide-dummy-3672005/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]
Possible Phishing 🎣
on: ⚠️hxxps[:]//accountsettingcenterrr[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/6a17cc153b77500007bc0cac
#cybersecurity #phishing #infosec #urldna #scam #infosec
These are the 5 popular apps I switched to this year
I have no regrets. For now, at least.
https://www.androidauthority.com/android-apps-i-switched-to-3670550/
#Tech #Technology #TechNews #AI #Gadgets #Software #Cybersecurity #Apple #Google #Microsoft #Startup #OpenSource #AndroidAuthority [Android Authority]