ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

The Nation’s Premier Print and Digital Publisher of Local Business News American City Business Journals is a multi-platform media company providing in-depth coverage of local business communities and breaking news. Through print, digital products and face-to-face events, ACBJ offers business leaders many avenues for making connections and gives them a competitive edge locally, regionally and nationally. ACBJ is the premier media solutions platform for companies that target business decision-makers. In addition to its business newspapers, American City operates BizEquity. This online business valuation platform helps financial professionals create more valuable relationships with business owners. American City also publishes specialty publications, which include a high-tech business newspaper, a law journal, and Hemmings Motor News. American City is a unit of Advance, whose exceptional portfolio includes Condé Nast, Advance Local, Leaders Group, Stage Entertainment, Turnitin, 1010data, and POP. Advance is also among the largest shareholders in Charter Communications, Discovery and Reddit.

American City Business Journals A.I CyberSecurity Scoring

ACBJ

Company Details

Linkedin ID:

american-city-business-journals

Employees number:

2,211

Number of followers:

17,338

NAICS:

511

Industry Type:

Book and Periodical Publishing

Homepage:

acbj.com

IP Addresses:

0

Company ID:

AME_4309742

Scan Status:

In-progress

AI scoreACBJ Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/american-city-business-journals.jpeg
ACBJ Book and Periodical Publishing
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreACBJ Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/american-city-business-journals.jpeg
ACBJ Book and Periodical Publishing
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

ACBJ Company CyberSecurity News & History

Past Incidents
1
Attack Types
1
EntityTypeSeverityImpactSeenBlog DetailsIncident DetailsView
Condé NastBreach100405/2019
Rankiteo Explanation :
Attack with significant impact with customers data leaks

Description: Condé Nast notified about 1,100 WIRED subscribers of a breach involving their payment information. They stated that an unauthorized party accessed their vendor’s systems in an attempt to acquire information. The compromised information includes names, postal and email addresses, credit/debit card numbers, security codes, and card expiration dates.

Condé Nast
Breach
Severity: 100
Impact: 4
Seen: 05/2019
Blog:
Rankiteo Explanation
Attack with significant impact with customers data leaks

Description: Condé Nast notified about 1,100 WIRED subscribers of a breach involving their payment information. They stated that an unauthorized party accessed their vendor’s systems in an attempt to acquire information. The compromised information includes names, postal and email addresses, credit/debit card numbers, security codes, and card expiration dates.

Ailogo

ACBJ Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for ACBJ

Incidents vs Book and Periodical Publishing Industry Average (This Year)

No incidents recorded for American City Business Journals in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for American City Business Journals in 2025.

Incident Types ACBJ vs Book and Periodical Publishing Industry Avg (This Year)

No incidents recorded for American City Business Journals in 2025.

Incident History — ACBJ (X = Date, Y = Severity)

ACBJ cyber incidents detection timeline including parent company and subsidiaries

ACBJ Company Subsidiaries

SubsidiaryImage

The Nation’s Premier Print and Digital Publisher of Local Business News American City Business Journals is a multi-platform media company providing in-depth coverage of local business communities and breaking news. Through print, digital products and face-to-face events, ACBJ offers business leaders many avenues for making connections and gives them a competitive edge locally, regionally and nationally. ACBJ is the premier media solutions platform for companies that target business decision-makers. In addition to its business newspapers, American City operates BizEquity. This online business valuation platform helps financial professionals create more valuable relationships with business owners. American City also publishes specialty publications, which include a high-tech business newspaper, a law journal, and Hemmings Motor News. American City is a unit of Advance, whose exceptional portfolio includes Condé Nast, Advance Local, Leaders Group, Stage Entertainment, Turnitin, 1010data, and POP. Advance is also among the largest shareholders in Charter Communications, Discovery and Reddit.

Loading...
similarCompanies

ACBJ Similar Companies

EPH

EPH is the biggest newspaper and magazine publisher in Croatia and one of the biggest publishing companies in the greater region, with an average annual circulation of 177 million copies. Europapress Holding (EPH) is the leading publishing and media company in Croatia and one of the biggest compa

Lakeland Boating

Lakeland Boating magazine has been the voice of the Sweetwater Seas for more than 75 years. From in-depth boat tests and features on weekend getaways to product roundups and stories about colorful Ports of Call, we’ve got the Great Lakes region covered. Meet the people who love the lake lifestyle an

FCW is merging with longtime competitor Nextgov to create a single publication, Nextgov/FCW. Nextgov/FCW provides federal executives insights on business management, policy, pending legislation and technology in its print magazine, nextgov.com and other digital platforms. If it's worth knowing, it's

wandr

wandr's mission is to find the best adventure travel stories and publish them to the world. We believe in the power of storytelling, and using our stories to encourage people to travel outdoors and experience new adventures. we regularly publish content to our website, and we also offer a paid yearl

Providence Publications

Providence Publications provides Credible Authoritative Trustworthy News and Information Products to a wide variety of niche markets. Award winning journalism combined with extraordinary software and marketing makes ProvPubs a winner. Providence Publications provides Traffic with Meaning™ which i

WordCo Indexing Services, Inc.

Since 1988 WordCo Indexing Services, America's most trusted indexing company, has been providing clients with high-quality indexes and quick turnaround times. Our team of highly trained indexers, along with stringent quality control measures, make WordCo your one-stop source for all of your indexin

newsone

ACBJ CyberSecurity News

November 26, 2025 02:36 PM
How Tamara Coleman turned Bark Bistro into a multimillion-dollar pet-treat brand - Bizwomen

Tamara Coleman started Bark Bistro in 2018, growing a homemade dog treat business into a $10 million brand sold in more than 15000 stores...

November 20, 2025 12:00 PM
OPSWAT to bring manufacturing onshore with $3M Ybor City facility

Tampa-based global cybersecurity firm OPSWAT has opened a U.S. production facility in Tampa to bring its hardware manufacturing onshore.

November 18, 2025 08:00 AM
The National Observer: Government reopening doesn't mean things are back to normal

The government shutdown is over, but that doesn't mean business is back to normal. We identify the challenges and some potential workarounds...

November 15, 2025 08:44 PM
DC Inno - Arlington cybersecurity firm merging with Md. firm | Local ed-tech firm hits bump in its stride

DC Inno features local news and analysis about Washington DC's startup and tech ecosystems. We also provide tools to help growing businesses scale,...

November 14, 2025 05:13 PM
5 for '25: Five steps for cybersecurity that begin in the C-suite

PwC's Matt Gorham explains how C-suite leaders can collaborate to create a cybersecurity strategy that protects and grows the business.

November 03, 2025 08:00 AM
Cyber threats aren’t just IT problems – they’re business killers

When cybersecurity falls to the backburner, companies risk more than just data; they risk reputation, revenue and resilience.

October 30, 2025 07:00 AM
Erin Whitmore leads Cynturion's proactive cyber defense push - Bizwomen

Former CIA officer Erin Whitmore leads Cynturion, a new cybersecurity division blending physical and digital defense for proactive threat...

October 22, 2025 07:00 AM
SOFTwarfare hires Greco as first COO to drive company's expansion

SOFTwarfare LLC, a cybersecurity company based in Prairie Village, hired its first chief operating officer. Chris Greco brings experience in...

October 15, 2025 07:00 AM
Seattle cybersecurity company reveals breach by 'nation-state threat actor'

F5 Inc. faces nation-state hack stealing source code. Company hires cybersecurity firms, works with law enforcement to contain threat.

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

ACBJ CyberSecurity History Information

Official Website of American City Business Journals

The official website of American City Business Journals is http://www.acbj.com.

American City Business Journals’s AI-Generated Cybersecurity Score

According to Rankiteo, American City Business Journals’s AI-generated cybersecurity score is 760, reflecting their Fair security posture.

How many security badges does American City Business Journals’ have ?

According to Rankiteo, American City Business Journals currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does American City Business Journals have SOC 2 Type 1 certification ?

According to Rankiteo, American City Business Journals is not certified under SOC 2 Type 1.

Does American City Business Journals have SOC 2 Type 2 certification ?

According to Rankiteo, American City Business Journals does not hold a SOC 2 Type 2 certification.

Does American City Business Journals comply with GDPR ?

According to Rankiteo, American City Business Journals is not listed as GDPR compliant.

Does American City Business Journals have PCI DSS certification ?

According to Rankiteo, American City Business Journals does not currently maintain PCI DSS compliance.

Does American City Business Journals comply with HIPAA ?

According to Rankiteo, American City Business Journals is not compliant with HIPAA regulations.

Does American City Business Journals have ISO 27001 certification ?

According to Rankiteo,American City Business Journals is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of American City Business Journals

American City Business Journals operates primarily in the Book and Periodical Publishing industry.

Number of Employees at American City Business Journals

American City Business Journals employs approximately 2,211 people worldwide.

Subsidiaries Owned by American City Business Journals

American City Business Journals presently has no subsidiaries across any sectors.

American City Business Journals’s LinkedIn Followers

American City Business Journals’s official LinkedIn profile has approximately 17,338 followers.

NAICS Classification of American City Business Journals

American City Business Journals is classified under the NAICS code 511, which corresponds to Publishing Industries (except Internet).

American City Business Journals’s Presence on Crunchbase

No, American City Business Journals does not have a profile on Crunchbase.

American City Business Journals’s Presence on LinkedIn

Yes, American City Business Journals maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/american-city-business-journals.

Cybersecurity Incidents Involving American City Business Journals

As of November 28, 2025, Rankiteo reports that American City Business Journals has experienced 1 cybersecurity incidents.

Number of Peer and Competitor Companies

American City Business Journals has an estimated 4,881 peer or competitor companies worldwide.

What types of cybersecurity incidents have occurred at American City Business Journals ?

Incident Types: The types of cybersecurity incidents that have occurred include Breach.

How does American City Business Journals detect and respond to cybersecurity incidents ?

Detection and Response: The company detects and responds to cybersecurity incidents through an communication strategy with subscriber notification..

Incident Details

Can you provide details on each incident ?

Incident : Data Breach

Title: Condé Nast Data Breach

Description: Condé Nast notified about 1,100 WIRED subscribers of a breach involving their payment information. An unauthorized party accessed their vendor’s systems in an attempt to acquire information. The compromised information includes names, postal and email addresses, credit/debit card numbers, security codes, and card expiration dates.

Type: Data Breach

Attack Vector: Unauthorized Access

Threat Actor: Unauthorized Party

Motivation: Data Theft

What are the most common types of attacks the company has faced ?

Common Attack Types: The most common types of attacks the company has faced is Breach.

How does the company identify the attack vectors used in incidents ?

Identification of Attack Vectors: The company identifies the attack vectors used in incidents through Vendor's Systems.

Impact of the Incidents

What was the impact of each incident ?

Incident : Data Breach CON202224323

Data Compromised: Names, Postal and email addresses, Credit/debit card numbers, Security codes, Card expiration dates

Payment Information Risk: High

What types of data are most commonly compromised in incidents ?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Personal Information, Payment Information and .

Which entities were affected by each incident ?

Incident : Data Breach CON202224323

Entity Name: Condé Nast

Entity Type: Company

Industry: Media

Customers Affected: 1100

Response to the Incidents

What measures were taken in response to each incident ?

Incident : Data Breach CON202224323

Communication Strategy: Subscriber Notification

Data Breach Information

What type of data was compromised in each breach ?

Incident : Data Breach CON202224323

Type of Data Compromised: Personal information, Payment information

Number of Records Exposed: 1100

Sensitivity of Data: High

Personally Identifiable Information: namespostal and email addresses

Investigation Status

How does the company communicate the status of incident investigations to stakeholders ?

Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through Subscriber Notification.

Stakeholder and Customer Advisories

Were there any advisories issued to stakeholders or customers for each incident ?

Incident : Data Breach CON202224323

Customer Advisories: Notification to Subscribers

What advisories does the company provide to stakeholders and customers following an incident ?

Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: was Notification to Subscribers.

Initial Access Broker

How did the initial access broker gain entry for each incident ?

Incident : Data Breach CON202224323

Entry Point: Vendor's Systems

Additional Questions

General Information

Who was the attacking group in the last incident ?

Last Attacking Group: The attacking group in the last incident was an Unauthorized Party.

Impact of the Incidents

What was the most significant data compromised in an incident ?

Most Significant Data Compromised: The most significant data compromised in an incident were names, postal and email addresses, credit/debit card numbers, security codes, card expiration dates and .

Data Breach Information

What was the most sensitive data compromised in a breach ?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were security codes, names, postal and email addresses, card expiration dates and credit/debit card numbers.

What was the number of records exposed in the most significant breach ?

Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 110.0.

Stakeholder and Customer Advisories

What was the most recent customer advisory issued ?

Most Recent Customer Advisory: The most recent customer advisory issued was an Notification to Subscribers.

Initial Access Broker

What was the most recent entry point used by an initial access broker ?

Most Recent Entry Point: The most recent entry point used by an initial access broker was an Vendor's Systems.

cve

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=american-city-business-journals' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge