Security Vulnerabilities & CVE Database

Browse the latest CVE vulnerability disclosures, CISA KEV alerts, and OSV advisories. Real-time security vulnerability database curated by 10alert.

U.S. DoJ Charges 12 Chinese Nationals in Massive State-Linked Cyber Espionage Campaign

The U.S. Department of Justice (DoJ) has charged 12 Chinese nationals, including government officers and hackers, for their roles in a global cyber espionage campaign. This coordinated effort involved data theft and suppression of dissent, targeting U.S. critics, Asian governments, and key U.S. agencies. The indictment reveals the intricate web of state-sponsored hacking and the U.S. response to safeguard national security.

#cybersecurity & data protection #chinese hackers #data theft

Read full article →

Webinar Learn How ASPM Transforms Application Security from Reactive to Proactive

Are you tired of dealing with outdated security tools that never seem to give you the full picture? You're not alone. Many organizations struggle with piecing together scattered information, leaving your apps vulnerable to modern threats. That's why we're excited to introduce a smarter, unified approach: Application Security Posture Management (ASPM). ASPM brings together the best of both worlds by combining proactive measures with reactive strategies to enhance your security posture.

#application security #cybersecurity #proactive measures

Read full article →

FBI Alerts: Cybercriminals Impersonate 'BianLian Group' to Extort Corporate Executives

The FBI's Internet Crime Complaint Center (IC3) has issued a critical alert about a data extortion scam targeting corporate executives. Cybercriminals, posing as the 'BianLian Group,' send threatening letters demanding payment to prevent the release of sensitive information. Learn how to protect your organization and report incidents to CISA.

#cybersecurity & data protection #data extortion #corporate executives

Read full article →

CISA Warns of Actively Exploited Mirasvit Cache Vulnerability

CISA added CVE-2026-45247, a critical deserialization flaw in Mirasvit Full Page Cache Warmer, to its Known Exploited Vulnerabilities (KEV) Catalog due to active exploitation. The vulnerability allows arbitrary code execution, posing severe risks to federal agencies and e-commerce platforms relying on the software, necessitating immediate patching.

CVEs: CVE-2026-45247

#cisa #cve-2026-45247 #vulnerability #deserialization #threat-intelligence

Read full article →

How 'doom spending' is about more than just consumer behaviour

• NewsAPI.org

How 'doom spending' is about more than just consumer behaviour

The article discusses 'doom spending'—a consumer behavior driven by financial anxiety—posing indirect cybersecurity risks to individuals and organizations. Financial stress can lead to risky online behaviors such as impulse purchases of counterfeit goods, which may involve fraudulent payment systems or compromised accounts. Affected parties include consumers, financial institutions, and businesses handling sensitive transaction data.

#security #news

Read full article →

Azure Key Vault Tutorial: Securely Store Application Secrets

• NewsAPI.org

Azure Key Vault Tutorial: Securely Store Application Secrets

The article describes a tutorial on Azure Key Vault for securely storing application secrets, but it does not address any specific vulnerabilities or security flaws. The impact is minimal, as the content is educational and does not expose users to immediate risks. Affected parties include developers or organizations following the tutorial to implement Azure Key Vault.

#security #news

Read full article →