Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

Allina HealthAllina Health
VS
UPMCUPMC
Allina Health

Allina Health

The Commons at Midtown Exchange, 2925 Chicago Ave., Minneapolis, MN, US, 55407

Last Update: 03/04/2026

View Profile
741/1000Moderate

People at Allina Health have a career of making a difference in the lives of the millions of patients we see each year at our 90+ clinics, 12 hospitals and through a wide variety of specialty care services in Minnesota and western Wisconsin. We’re a not-for-profit orga...

NAICS:62
NAICS Definition:Health Care and Social Assistance
Employees:15,999
Subsidiaries:0
12-month incidents
0
Known data breaches
0
Attack type number
1
UPMC

UPMC

US Steel Tower, 600 Grant Street, Pittsburgh, PA, US, 15219

Last Update: 01/04/2026

View Profile
Between 550 and 599
http://www.upmc.com
587/1000Very Poor

UPMC is a world-renowned, nonprofit health care provider and insurer committed to delivering exceptional, people-centered care and community services. Headquartered in Pittsburgh and affiliated with the University of Pittsburgh Schools of the Health Sciences, UPMC is sh...

NAICS:62
NAICS Definition:Health Care and Social Assistance
Employees:40,981
Subsidiaries:8
12-month incidents
1
Known data breaches
1
Attack type number
3

Compliance Ranges Comparison

Based On Specific Ai Models Category
Allina Health

Allina Health

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
UPMC

UPMC

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Hospitals and Health Care Industry Avg (This Year)

No incidents recorded for Allina Health in 2026.

Incidents

Incidents vs Hospitals and Health Care Industry Avg (This Year)

UPMC has 2.91% fewer incidents than the average of all companies with at least one recorded incident.

Incidents

Incident History - Allina Health (X = Date, Y = Severity)

Allina Health cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - UPMC (X = Date, Y = Severity)

UPMC cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
Allina Health

Allina Health

Incidents
🔒 Incident : Ransomware
ALL22226322
UPMC

UPMC

Incidents
🔒 Incident : Breach
UPM1773786562
🔒 Incident : Ransomware
UPMNOR1773678972
🔒 Incident : Data Leak
UPM2344101122

FAQ

Between Allina Health company and UPMC company, which one has the best AI Cybersecurity Score ?
Between Allina Health company and UPMC company, which one has experienced more cyber incidents in the past ?
Between Allina Health company and UPMC company, which one has experienced more cyber incidents this year ?
Between Allina Health company and UPMC company, which one has experienced at least one ransomware attack ?
Between Allina Health company and UPMC company, which one has experienced at least one data breach ?
Between Allina Health company and UPMC company, which one has experienced at least one targeted cyberattack ?
Between Allina Health company and UPMC company, which one has experienced at least one vulnerability ?
Between Allina Health company and UPMC company, which one holds the most compliance certifications ?
Between Allina Health company and UPMC company, which one holds the fewest compliance certifications ?
Between Allina Health company and UPMC company, which one has the most subsidiaries ?
Between Allina Health company and UPMC company, which one has the largest number of employees ?
Between Allina Health and UPMC, which company holds both SOC 2 Type 1 certifications ?
Between Allina Health and UPMC, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - Allina Health or UPMC ?
Which company is PCI DSS compliant - Allina Health or UPMC ?
Between Allina Health and UPMC, which company complies with HIPAA regulations for healthcare data ?
Between Allina Health and UPMC, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-9693
SUMMARY

Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membership records when a user is removed from or leaves a team, which allows a previously removed user who is later re-invited to the team to view private channel thread root post content and metadata via the team threads API.. Mattermost Advisory ID: MMSA-2026-00682

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 3.5)
CVSS3
Base Score: 3.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
IMPACT SCORE
1.4
EXPLOITABILITY
2.1
CVE-2026-75587
SUMMARY

Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a diagnostics report, which allows a local attacker with access to a user's diagnostics report or log files to obtain the plaintext pre-auth secret configured for a connected server via inspecting the Server Connectivity (Step-3) diagnostics output. Mattermost Advisory ID: MMSA-2026-00716

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 3.6)
CVSS3
Base Score: 3.6
Complexity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N
IMPACT SCORE
1.4
EXPLOITABILITY
1.8
CVE-2026-75078
SUMMARY

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSHRM1.php. Performing a manipulation of the argument course results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 4.3)
CVSS2
Base Score: 5.0
Complexity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
CVSS3
Base Score: 4.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
CVSS4
Base Score: 2.1
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
1.4
EXPLOITABILITY
2.8
CVE-2026-67961
SUMMARY

An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mechanism of the Invoke script execution.

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
IMPACT SCORE
NA
EXPLOITABILITY
NA
CVE-2026-67919
SUMMARY

An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.java, installFromUri method, and DefaultPluginApplicationContextFactory components

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
IMPACT SCORE
NA
EXPLOITABILITY
NA