ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

At American Freight we offer high-quality furniture and mattresses at everyday low prices through our direct-to-consumer, warehouse-style stores and e-commerce site. We also provide an array of flexible financing options and extended warranties. To learn more about us and see our great products visit AmericanFreight.com.

American Freight Furniture & Mattress A.I CyberSecurity Scoring

AFFM

Company Details

Linkedin ID:

americanfreight

Employees number:

1,546

Number of followers:

9,403

NAICS:

337

Industry Type:

Furniture and Home Furnishings Manufacturing

Homepage:

americanfreight.com

IP Addresses:

0

Company ID:

AME_2225483

Scan Status:

In-progress

AI scoreAFFM Risk Score (AI oriented)

Between 700 and 749

https://images.rankiteo.com/companyimages/americanfreight.jpeg
AFFM Furniture and Home Furnishings Manufacturing
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreAFFM Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/americanfreight.jpeg
AFFM Furniture and Home Furnishings Manufacturing
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

AFFM Company CyberSecurity News & History

Past Incidents
1
Attack Types
1
EntityTypeSeverityImpactSeenBlog DetailsIncident DetailsView
American Freight, LLCBreach60311/2020
Rankiteo Explanation :
Attack with significant impact with internal employee data leaks

Description: The Maine Office of the Attorney General reported on August 24, 2021, that American Freight experienced a data breach due to unauthorized access to employees’ email accounts between November 24, 2020, and December 9, 2020. This breach potentially affected 36,829 individuals and specifically compromised the personal information of 59 Maine residents, including names, Social Security numbers, financial account numbers, and payment card numbers. American Freight has offered a complimentary one-year membership in credit monitoring and identity protection services through Kroll.

American Freight, LLC
Breach
Severity: 60
Impact: 3
Seen: 11/2020
Blog:
Rankiteo Explanation
Attack with significant impact with internal employee data leaks

Description: The Maine Office of the Attorney General reported on August 24, 2021, that American Freight experienced a data breach due to unauthorized access to employees’ email accounts between November 24, 2020, and December 9, 2020. This breach potentially affected 36,829 individuals and specifically compromised the personal information of 59 Maine residents, including names, Social Security numbers, financial account numbers, and payment card numbers. American Freight has offered a complimentary one-year membership in credit monitoring and identity protection services through Kroll.

Ailogo

AFFM Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for AFFM

Incidents vs Furniture and Home Furnishings Manufacturing Industry Average (This Year)

No incidents recorded for American Freight Furniture & Mattress in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for American Freight Furniture & Mattress in 2025.

Incident Types AFFM vs Furniture and Home Furnishings Manufacturing Industry Avg (This Year)

No incidents recorded for American Freight Furniture & Mattress in 2025.

Incident History — AFFM (X = Date, Y = Severity)

AFFM cyber incidents detection timeline including parent company and subsidiaries

AFFM Company Subsidiaries

SubsidiaryImage

At American Freight we offer high-quality furniture and mattresses at everyday low prices through our direct-to-consumer, warehouse-style stores and e-commerce site. We also provide an array of flexible financing options and extended warranties. To learn more about us and see our great products visit AmericanFreight.com.

Loading...
similarCompanies

AFFM Similar Companies

Celestica

Celestica enables the world's best brands. Through our unrivaled customer-centric approach, we partner with leading companies in aerospace and defense, communications, enterprise, healthtech, industrial, capital equipment, and smart energy to deliver solutions for their most complex challenges. A le

DS Smith

DS Smith provides innovative packaging solutions, paper products and recycling services with a commitment to sustainability and a circular economy. Our core purpose is to Redefine Packaging for a Changing World, and our expert teams work closely with like-minded partners to incorporate renewable re

Stanley Black & Decker, Inc.

For the builders and protectors, for the makers and explorers, for those shaping and reshaping our world through hard work and inspiration, Stanley Black & Decker provides the tools and innovative solutions you can trust to get the job done—and we have since 1843. You repair your home and car with

For almost four decades, Patanjali Foods has championed India’s wellness revolution. Founded in 1986, we began with a simple mission: making swadeshi products, affordable and quality-driven for every household. Today, we are a leading FMCG force, offering a wide range of household essentials. From n

Reckitt

Every day, in everything we do, our purpose is to protect, heal and nurture in the relentless pursuit of a cleaner, healthier world. And we have a fight on our hands. A fight to make access to the highest quality hygiene, wellness and nourishment a right and not a privilege. Each of our products is

Mattel, Inc.

We empower generations to explore the wonder of childhood and reach their full potential. We treat play as if the future depends on it — because it does. Play is our language, and we speak to our consumers authentically by representing the world as they see and imagine it. Mattel is a leading glob

newsone

AFFM CyberSecurity News

November 22, 2025 04:25 PM
75-year-old furniture chain keeps closing more stores

The chain has confirmed some shutdowns, but multiple locations have advertised store closing sales with no notice.

November 18, 2025 01:53 AM
Talking American Freight's return to Dothan

American Freight Dothan manager Alan Miles tells us about the process and feelings behind the furniture retailer returning to the area.

November 14, 2025 08:00 AM
American Freight Black Friday 2025: 50% Off Clearance Items and Take it Home for Only $9.99 Down

With 60 retail locations, American Freight offers a wide selection of items for every room in the home - DUBLIN, Ohio, Nov.

November 04, 2025 08:00 AM
Large furniture retailer closing stores without bankruptcy

The furniture business, which saw a spike in sales during the Covid pandemic, has largely gone in the other direction.

October 21, 2025 07:00 AM
New owner, brand refresh: American Freight Furniture, Mattress re-opens in Dothan

New owner, brand refresh: American Freight Furniture, Mattress re-opens in Dothan · Michelle Mann · Oct 21, 2025 · Oct 21, 2025 · 0. New owner,...

October 07, 2025 07:00 AM
American Freight owner denies, counterclaims by Franchise Group

American Freight owner denies, counterclaims by Franchise Group ... WILMINGTON, Del. — AF Newco, owner of American Freight, filed an answer to and...

September 26, 2025 07:00 AM
Franchise Group accuses new American Freight owner of bad faith actions

In the document, FRG put forth four key allegations against AF Newco. They include threats to data access and deletion; the breach of a May 28,...

September 18, 2025 07:00 AM
Furniture chain liquidates 328 stores in Chapter 11 bankruptcy

Usually, when a big-name retail brand closes all of its locations after a bankruptcy liquidation, that's the end of the company,...

September 15, 2025 07:00 AM
Is American Freight Going Out of Business? Here’s the Truth

DUBLIN, Ohio, Sept. 15, 2025 (SEND2PRESS NEWSWIRE) -- Despite recent reports, American Freight stores remain open across the United States.

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

AFFM CyberSecurity History Information

Official Website of American Freight Furniture & Mattress

The official website of American Freight Furniture & Mattress is https://www.americanfreight.com.

American Freight Furniture & Mattress’s AI-Generated Cybersecurity Score

According to Rankiteo, American Freight Furniture & Mattress’s AI-generated cybersecurity score is 738, reflecting their Moderate security posture.

How many security badges does American Freight Furniture & Mattress’ have ?

According to Rankiteo, American Freight Furniture & Mattress currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does American Freight Furniture & Mattress have SOC 2 Type 1 certification ?

According to Rankiteo, American Freight Furniture & Mattress is not certified under SOC 2 Type 1.

Does American Freight Furniture & Mattress have SOC 2 Type 2 certification ?

According to Rankiteo, American Freight Furniture & Mattress does not hold a SOC 2 Type 2 certification.

Does American Freight Furniture & Mattress comply with GDPR ?

According to Rankiteo, American Freight Furniture & Mattress is not listed as GDPR compliant.

Does American Freight Furniture & Mattress have PCI DSS certification ?

According to Rankiteo, American Freight Furniture & Mattress does not currently maintain PCI DSS compliance.

Does American Freight Furniture & Mattress comply with HIPAA ?

According to Rankiteo, American Freight Furniture & Mattress is not compliant with HIPAA regulations.

Does American Freight Furniture & Mattress have ISO 27001 certification ?

According to Rankiteo,American Freight Furniture & Mattress is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of American Freight Furniture & Mattress

American Freight Furniture & Mattress operates primarily in the Furniture and Home Furnishings Manufacturing industry.

Number of Employees at American Freight Furniture & Mattress

American Freight Furniture & Mattress employs approximately 1,546 people worldwide.

Subsidiaries Owned by American Freight Furniture & Mattress

American Freight Furniture & Mattress presently has no subsidiaries across any sectors.

American Freight Furniture & Mattress’s LinkedIn Followers

American Freight Furniture & Mattress’s official LinkedIn profile has approximately 9,403 followers.

NAICS Classification of American Freight Furniture & Mattress

American Freight Furniture & Mattress is classified under the NAICS code 337, which corresponds to Furniture and Related Product Manufacturing.

American Freight Furniture & Mattress’s Presence on Crunchbase

No, American Freight Furniture & Mattress does not have a profile on Crunchbase.

American Freight Furniture & Mattress’s Presence on LinkedIn

Yes, American Freight Furniture & Mattress maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/americanfreight.

Cybersecurity Incidents Involving American Freight Furniture & Mattress

As of November 28, 2025, Rankiteo reports that American Freight Furniture & Mattress has experienced 1 cybersecurity incidents.

Number of Peer and Competitor Companies

American Freight Furniture & Mattress has an estimated 2,617 peer or competitor companies worldwide.

What types of cybersecurity incidents have occurred at American Freight Furniture & Mattress ?

Incident Types: The types of cybersecurity incidents that have occurred include Breach.

How does American Freight Furniture & Mattress detect and respond to cybersecurity incidents ?

Detection and Response: The company detects and responds to cybersecurity incidents through an third party assistance with kroll..

Incident Details

Can you provide details on each incident ?

Incident : Data Breach

Title: American Freight Data Breach

Description: Unauthorized access to employees’ email accounts between November 24, 2020, and December 9, 2020, potentially affecting 36,829 individuals and compromising the personal information of 59 Maine residents.

Date Detected: 2021-08-24

Date Publicly Disclosed: 2021-08-24

Type: Data Breach

Attack Vector: Email Account Compromise

What are the most common types of attacks the company has faced ?

Common Attack Types: The most common types of attacks the company has faced is Breach.

Impact of the Incidents

What was the impact of each incident ?

Incident : Data Breach AME652072625

Data Compromised: Names, Social security numbers, Financial account numbers, Payment card numbers

What types of data are most commonly compromised in incidents ?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Names, Social Security Numbers, Financial Account Numbers, Payment Card Numbers and .

Which entities were affected by each incident ?

Incident : Data Breach AME652072625

Entity Name: American Freight

Entity Type: Company

Industry: Retail

Customers Affected: 36829

Response to the Incidents

What measures were taken in response to each incident ?

Incident : Data Breach AME652072625

Third Party Assistance: Kroll.

How does the company involve third-party assistance in incident response ?

Third-Party Assistance: The company involves third-party assistance in incident response through Kroll, .

Data Breach Information

What type of data was compromised in each breach ?

Incident : Data Breach AME652072625

Type of Data Compromised: Names, Social security numbers, Financial account numbers, Payment card numbers

Number of Records Exposed: 36829

Sensitivity of Data: High

Personally Identifiable Information: NamesSocial Security numbers

References

Where can I find more information about each incident ?

Incident : Data Breach AME652072625

Source: Maine Office of the Attorney General

Date Accessed: 2021-08-24

Where can stakeholders find additional resources on cybersecurity best practices ?

Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Maine Office of the Attorney GeneralDate Accessed: 2021-08-24.

Post-Incident Analysis

What is the company's process for conducting post-incident analysis ?

Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as Kroll, .

Additional Questions

Incident Details

What was the most recent incident detected ?

Most Recent Incident Detected: The most recent incident detected was on 2021-08-24.

What was the most recent incident publicly disclosed ?

Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2021-08-24.

Impact of the Incidents

What was the most significant data compromised in an incident ?

Most Significant Data Compromised: The most significant data compromised in an incident were Names, Social Security numbers, Financial account numbers, Payment card numbers and .

Response to the Incidents

What third-party assistance was involved in the most recent incident ?

Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was kroll, .

Data Breach Information

What was the most sensitive data compromised in a breach ?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Payment card numbers, Names, Financial account numbers and Social Security numbers.

What was the number of records exposed in the most significant breach ?

Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 397.0.

References

What is the most recent source of information about an incident ?

Most Recent Source: The most recent source of information about an incident is Maine Office of the Attorney General.

cve

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=americanfreight' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge