Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
American Tower

American Tower Vendor Cyber Rating & Cyber Score

americantower.com

At American Tower, our vision of Building a More Connected World reflects our purpose: enabling seamless, secure, and sustainable connectivity that empowers people, businesses, and communities. As a global leader in digital infrastructure, we provide the foundation for mobile and broadband networks to expand, innovate, and bridge digital divides. Our commitment to this vision extends beyond technology—it is about creating opportunities, fostering economic growth, and enhancing quality of life through reliable and responsible connectivity. With the increasing popularity of mobile data services and emerging technologies like 5G, edge and cloud computing, our collaborative teams tailor, expand and innovate solutions to meet current and future


American Tower A.I CyberSecurity Scoring

American Tower
Company Information
Website:http://www.americantower.com
Employees number:6,133
Number of followers:244,726
NAICS:517
Industry Type:Telecommunications
Homepage:americantower.com
American Tower Risk Score (AI oriented)
Between 800 and 849
logo
American TowerTelecommunications
Updated:
18/09/2026
820/1000
Good
A
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
✖ Insurance prefers TPRM score to calculate premium
American Tower Global Score (TPRM)
xxxx
logo
American TowerTelecommunications
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

American TowerGood
Current Score
820A (GOOD)
01000
1 incidents
-3 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
OCTOBER 2026
819Before Incident
SEPTEMBER 2026
820Before Incident
AUGUST 2026
820Before Incident
JULY 2026
816Before Incident
JUNE 2026
821Before Incident
MAY 2026
821Before Incident
APRIL 2026
821Before Incident
MARCH 2026
821Before Incident
FEBRUARY 2026
821Before Incident
JANUARY 2026
820Before Incident
DECEMBER 2025
822Before Incident
Vulnerability
01 Dec 2025 • American Tower
Huawei, Tower of Fantasy and Palo Alto Networks: DragonForce Ransomware Abused Microsoft Teams to Hide Malware Activity

DragonForce Ransomware Group Abuses Microsoft Teams to Conceal Malicious Traffic in US Firm Breach

819After Incident
CRITICAL-3
UNIHUAAME1781792980
DragonForce Ransomware Group Abuses Microsoft Teams to Conceal Malicious Traffic in US Firm Breach Cybercriminals tied to the DragonForce ransomware group compromised a US-based services firm in late 2025, leveraging a custom backdoor to hide their command-and-control (C2) traffic within Microsoft Teams’ relay infrastructure. Researchers from Broadcom’s Symantec and Carbon Black identified the attack, marking the first known instance of malware abusing Microsoft’s TURN relay to evade detection. ### The Attack: A Multi-Stage Intrusion The threat actors gained initial access in December 2025, likely through an unpatched SQL/MSSQL vulnerability or via an initial access broker. Once inside, they employed DLL sideloading, abusing a legitimate VirtualBox executable to load malicious code and bypass security tools. Over one to two months, the attackers: - Modified firewall rules and system settings to maintain persistence. - Disabled security defenses using bring-your-own-vulnerable-driver (BYOVD) techniques, exploiting flaws in drivers from Huawei (HWAudioOs2Ec.sys), Topaz Antifraud (CVE-2023-52271), Tower of Fantasy (CVE-2025-61155), and K7 Security Anti-Malware (CVE-2025-1055). - Deployed Abyss Worker, a malicious driver disguised as a Palo Alto Networks security component. - Used Havoc Process Terminator to further evade detection. The final phase involved data exfiltration and DragonForce ransomware deployment, along with the installation of Backdoor.Turn, a Go-based backdoor designed to blend C2 traffic with legitimate Microsoft Teams communications. By routing malicious traffic through Microsoft’s TURN relay servers, the attackers made their activity appear as routine business traffic, bypassing traditional security filters. ### A Shift in Ransomware Tactics Symantec and Carbon Black researchers described DragonForce’s evolution from a ransomware-as-a-service (RaaS) model to a highly organized cartel, employing custom tooling, advanced evasion techniques, and trusted cloud services to maintain persistence. Cybersecurity experts noted that this approach mirrors state-sponsored threat actor tradecraft, moving beyond opportunistic attacks to long-term, stealthy operations. The abuse of Microsoft Teams’ infrastructure highlights a growing trend where attackers exploit implicit trust in enterprise collaboration tools, making detection significantly harder. As one expert observed, security systems often whitelist traffic to Microsoft domains, allowing malicious activity to slip through undetected.
INCIDENT DETAILS -
TYPE
Ransomware
MOTIVATION
Financial gain
NOVEMBER 2025
822Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for American Tower ?
?
What was American Tower's A.I Rankiteo Cyber Score in September 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in August 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in July 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in June 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in May 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in April 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in March 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in February 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in January 2026 ?
?
What was American Tower's A.I Rankiteo Cyber Score in December 2025 ?
?
What was American Tower's A.I Rankiteo Cyber Score in November 2025 ?
?
What is the average per-incident point impact on American Tower's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with American Tower ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view American Tower's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?