Comparison Overview

act.3

VS

TBWA\Worldwide

act.3

Käthe-Dassler Straße, Herzogenaurach, Bavaria, 91074, DE
Last Update: 2025-03-05 (UTC)
Between 900 and 1000

Excellent

We are act.3 - We are a community of real people who turn our passion into impact. We shape the future of brands through people, community and culture. We make ideas happen. Our purpose is to enable each other and brands to create real change in people’s lives, ultimately making our world a happier place. Community and culture are therefore a core part of our work. We approach cultural marketing holistically and have expertise in strategy, creative, and experiences. We are now a global community with an extensive international network. We collaborate with handpicked partners all over the world to bring beauty to the spheres of sport, culture, and sustainability. Originating from our headquarters in Herzogenaurach, today we have community bases in Berlin, Munich, Cologne, Paris, Lisbon, London, Amsterdam, Tel Aviv, Tokyo, Shanghai, Sydney, Rio De Janeiro, São Paulo, Panama, NYC, Los Angeles & Cape Town.

NAICS: 541613
NAICS Definition: Marketing Consulting Services
Employees: 410
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

TBWA\Worldwide

220 E 42nd St, New York, NY, 10017, US
Last Update: 2025-03-02 (UTC)

Excellent

Between 900 and 1000

TBWA is The Disruption Company®. We are a Collective of creative minds with an unlimited creative canvas. We create brand platforms that defy convention and compete with culture. Thanks to our trademarked Disruption® methodology, we build the world’s strongest brands. Brands that own an unfair share of the future. Named one of the World's Most Innovative Companies by Fast Company in 2023, 2022, 2021, 2020 and 2019, TBWA is also Adweek's 2024, 2022, 2021 and 2018 Global Agency of the Year and AdAge’s A-List 2022 Network of the Year. Our Collective has 11,000+ creative minds in over 40 countries, and also includes brands such as Auditoire, Digital Arts Network (DAN), eg+ worldwide, GMR, TBWA\Media Arts Lab, TBWA\Health Collective and TRO. Global clients include adidas, Apple, Gatorade, Henkel, Hilton Hotels, McDonald's, Nissan and Singapore Airlines. TBWA is part of Omnicom Group (NYSE: OMC).

NAICS: 541613
NAICS Definition: Marketing Consulting Services
Employees: 11,737
Subsidiaries: 72
12-month incidents
0
Known data breaches
0
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/act-³-gmbh.jpeg
act.3
ISO 27001
Not verified
SOC 2
Not verified
GDPR
No public badge
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/tbwa.jpeg
TBWA\Worldwide
ISO 27001
Not verified
SOC 2
Not verified
GDPR
No public badge
PCI DSS
No public badge
Compliance Summary
act.3
100%
Compliance Rate
0/4 Standards Verified
TBWA\Worldwide
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Advertising Services Industry Average (This Year)

No incidents recorded for act.3 in 2025.

Incidents vs Advertising Services Industry Average (This Year)

No incidents recorded for TBWA\Worldwide in 2025.

Incident History — act.3 (X = Date, Y = Severity)

act.3 cyber incidents detection timeline including parent company and subsidiaries

Incident History — TBWA\Worldwide (X = Date, Y = Severity)

TBWA\Worldwide cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/act-³-gmbh.jpeg
act.3
Incidents

No Incident

https://images.rankiteo.com/companyimages/tbwa.jpeg
TBWA\Worldwide
Incidents

Date Detected: 4/2025
Type:Vulnerability
Attack Vector: Bluetooth Protocol
Blog: Blog

FAQ

Both act.3 company and TBWA\Worldwide company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

TBWA\Worldwide company has historically faced a number of disclosed cyber incidents, whereas act.3 company has not reported any.

In the current year, TBWA\Worldwide company has reported more cyber incidents than act.3 company.

Neither TBWA\Worldwide company nor act.3 company has reported experiencing a ransomware attack publicly.

Neither TBWA\Worldwide company nor act.3 company has reported experiencing a data breach publicly.

Neither TBWA\Worldwide company nor act.3 company has reported experiencing targeted cyberattacks publicly.

TBWA\Worldwide company has disclosed at least one vulnerability, while act.3 company has not reported such incidents publicly.

TBWA\Worldwide company has more subsidiaries worldwide compared to act.3 company.

TBWA\Worldwide company employs more people globally than act.3 company, reflecting its scale as a Advertising Services.

Latest Global CVEs (Not Company-Specific)

Description

Flowise is a drag & drop user interface to build a customized large language model flow. In versions prior to 3.0.8, WriteFileTool and ReadFileTool in Flowise do not restrict file path access, allowing authenticated attackers to exploit this vulnerability to read and write arbitrary files to any path in the file system, potentially leading to remote command execution. Flowise 3.0.8 fixes this vulnerability.

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

A flaw has been found in code-projects E-Commerce Website 1.0. Affected is an unknown function of the file /pages/supplier_add.php. Executing manipulation of the argument supp_email can lead to sql injection. The attack may be launched remotely. The exploit has been published and may be used.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was detected in code-projects E-Commerce Website 1.0. This impacts an unknown function of the file /pages/product_add.php. Performing manipulation of the argument prod_name results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security vulnerability has been detected in code-projects Voting System 1.0. This affects an unknown function of the file /admin/voters_add.php. Such manipulation of the argument photo leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

Risk Information
cvss2
Base: 5.8
Severity: LOW
AV:N/AC:L/Au:M/C:P/I:P/A:P
cvss3
Base: 4.7
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MongoDB Connector for BI installation via MSI on Windows leaves ACLs unset on custom install directories allows Privilege Escalation.This issue affects MongoDB Connector for BI: from 2.0.0 through 2.14.24.

Risk Information
cvss4
Base: 8.8
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X