Security Vulnerabilities & CVE Database

Browse the latest CVE vulnerability disclosures, CISA KEV alerts, and OSV advisories. Real-time security vulnerability database curated by 10alert.

U.S. DoJ Charges 12 Chinese Nationals in Massive State-Linked Cyber Espionage Campaign

The U.S. Department of Justice (DoJ) has charged 12 Chinese nationals, including government officers and hackers, for their roles in a global cyber espionage campaign. This coordinated effort involved data theft and suppression of dissent, targeting U.S. critics, Asian governments, and key U.S. agencies. The indictment reveals the intricate web of state-sponsored hacking and the U.S. response to safeguard national security.

#cybersecurity & data protection #chinese hackers #data theft

Read full article →

Webinar Learn How ASPM Transforms Application Security from Reactive to Proactive

Are you tired of dealing with outdated security tools that never seem to give you the full picture? You're not alone. Many organizations struggle with piecing together scattered information, leaving your apps vulnerable to modern threats. That's why we're excited to introduce a smarter, unified approach: Application Security Posture Management (ASPM). ASPM brings together the best of both worlds by combining proactive measures with reactive strategies to enhance your security posture.

#application security #cybersecurity #proactive measures

Read full article →

FBI Alerts: Cybercriminals Impersonate 'BianLian Group' to Extort Corporate Executives

The FBI's Internet Crime Complaint Center (IC3) has issued a critical alert about a data extortion scam targeting corporate executives. Cybercriminals, posing as the 'BianLian Group,' send threatening letters demanding payment to prevent the release of sensitive information. Learn how to protect your organization and report incidents to CISA.

#cybersecurity & data protection #data extortion #corporate executives

Read full article →

CISA Warns of 3 Actively Exploited Vulnerabilities—Patch Now

CISA added three actively exploited vulnerabilities (CVE-2026-8398, CVE-2026-45321, CVE-2026-48027) to its KEV Catalog, affecting multiple enterprise systems. Threat actors are already exploiting these flaws, risking unauthorized access, data breaches, and system compromise across federal and private networks.

CVEs: CVE-2026-8398, CVE-2026-45321, CVE-2026-48027

#cisa #known-exploited-vulnerabilities #cve-2026-8398 #cve-2026-45321 #cve-2026-48027

Read full article →

Mother, boyfriend allegedly abandoned blindfolded young sons in remote forest as part of 'game': reports

• NewsAPI.org

Mother, boyfriend allegedly abandoned blindfolded young sons in remote forest as part of 'game': reports

A caregiver and her partner allegedly abandoned two young children in a remote European forest while blindfolding them as part of a purported 'game', exposing the victims to severe physical and psychological harm. The incident highlights systemic failures in child protection and guardianship oversight, with no direct cybersecurity vulnerability involved but underscoring the need for enhanced monitoring in vulnerable populations.

#security #news

Read full article →

Fake Uniswap Google Ads Drain Over $400K From Crypto Users

• NewsAPI.org

Fake Uniswap Google Ads Drain Over $400K From Crypto Users

Cybercriminals exploited Google Ads to display fake Uniswap phishing links, stealing over $400,000 from cryptocurrency users by impersonating the legitimate Uniswap interface. The attack targeted users searching for Uniswap on Google, redirecting them to malicious sites that harvested wallet credentials and drained funds. This incident highlights the risks of ad-based phishing and the need for enhanced user verification for decentralized finance (DeFi) platforms.

#security #news

Read full article →