Justice Department Appoints First Director of National Cryptocurrency Enforcement Team

Blog WriterThe Hacker News - Original news source is thehackernews.com

The U.S. Department of Justice (DoJ) earlier this week appointed Eun Young Choi to serve as the first Director of the National Cryptocurrency Enforcement Team (NCET) it established last year. …

U.S. Cybersecurity Agency Publishes List of Free Security Tools and Services

Blog WriterThe Hacker News - Original news source is thehackernews.com

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday published a repository of free tools and services to enable organizations to mitigate, detect, and respond effectively to malicious attacks and further …

New Linux Privilege Escalation Flaw Uncovered in Snap Package Manager

Blog WriterThe Hacker News - Original news source is thehackernews.com

Multiple security vulnerabilities have been disclosed in Canonical’s Snap software packaging and deployment system, the most critical of which can be exploited to escalate privilege to gain root privileges. Snaps are self-contained …

Microsoft Warns of ‘Ice Phishing’ Threat on Web3 and Decentralized Networks

Blog WriterThe Hacker News - Original news source is thehackernews.com

Microsoft has warned of emerging threats in the Web3 landscape, including “ice phishing” campaigns, as a surge in adoption of blockchain and DeFi technologies emphasizes the need to build security into the …

Critical Flaw Uncovered in WordPress Backup Plugin Used by Over 3 Million Sites

Blog WriterThe Hacker News - Original news source is thehackernews.com

Patches have been issued to contain a “severe” security vulnerability in UpdraftPlus, a WordPress plugin with over three million installations, that can be weaponized to download the site’s private data …

Another Critical RCE Discovered in Adobe Commerce and Magento Platforms

Blog WriterThe Hacker News - Original news source is thehackernews.com

Adobe on Thursday updated its advisory for an actively exploited zero-day affecting Adobe Commerce and Magento Open Source to patch a newly discovered flaw that could be weaponized to achieve arbitrary code …

Attackers Can Crash Cisco Email Security Appliances by Sending Malicious Emails

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cisco has released security updates to contain three vulnerabilities affecting its products, including one high-severity flaw in its Email Security Appliance (ESA) that could result in a denial-of-service (DoS) condition …

Iranian Hackers Targeting VMware Horizon Log4j Flaws to Deploy Ransomware

Blog WriterThe Hacker News - Original news source is thehackernews.com

A “potentially destructive actor” aligned with the government of Iran is actively exploiting the well-known Log4j vulnerability to infect unpatched VMware Horizon servers with ransomware. Cybersecurity firm SentinelOne dubbed the group “TunnelVision” …