ARI A.I CyberSecurity Scoring
ARI
Company Information
Website:http://www.asrockrack.com
Employees number:113
Number of followers:4,082
NAICS:3341
Industry Type:Computer Hardware Manufacturing
Homepage:asrockrack.com
ARI Risk Score (AI oriented)
Between 650 and 699
ARIComputer Hardware Manufacturing
Updated:
30/03/2026
30/03/2026
650/1000
Weak
B
ARI Global Score (TPRM)
xxxx
ARIComputer Hardware Manufacturing
Score locked

ARIWeak
Current Score
650B (WEAK)
01000
1 incidents
-108 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
658
JUNE 2026
656
MAY 2026
654
APRIL 2026
653
MARCH 2026
649
FEBRUARY 2026
647
JANUARY 2026
754
Ransomware
21 Jan 2026 • ARI
ASRock Rack and ASUS: Exclusive: ASRock Rack allegedly breached, data leak could lead to further breaches
ASRock Rack Hit by Everest Ransomware Gang, 509GB of Sensitive Data Allegedly Stolen
646
CRITICAL-108
ASRASU1769030696
ASRock Rack Hit by Everest Ransomware Gang, 509GB of Sensitive Data Allegedly Stolen
ASRock Rack, the enterprise-focused server and cloud hardware division of ASRock, has been listed on the dark web leak site of the Everest ransomware gang. The threat actors claim to have exfiltrated a 509GB database containing confidential technical documentation, firmware, software, BIOS files, diagnostic tools, baseboard management controller (BMC) firmware, drivers, and utilities.
Everest warned that unauthorized access to the stolen data could enable attackers to exploit vulnerabilities in hardware and software systems, potentially compromising devices at scale. The group also highlighted broader risks, including reputational damage, legal consequences, and the loss of intellectual property, which could strengthen competitors.
Security experts, including Rapid7’s Christiaan Beek, noted that if the claims are accurate, the breach could have supply chain implications. Firmware and BIOS-related materials operate below the operating system, making vulnerabilities harder to detect and remediate. The incident raises concerns about follow-on attacks, such as malicious repackaging of drivers or firmware updates, and the possibility of state-aligned involvement given the strategic value of the target.
Everest provided a data sample on its leak site, including screenshots of file trees with keywords like data centre and diag, aligning with their claims. The group has set a deadline of approximately nine days to publish the full dataset but has not disclosed a ransom demand.
This breach follows Everest’s recent attack on an ASUS supplier, which the company confirmed involved the theft of camera source code for ASUS phones. While ASUS stated the incident did not affect its products or internal systems, Everest later expanded its claims, alleging the theft of a one-terabyte database containing data from ASUS, ArcSoft, and Qualcomm.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
DECEMBER 2025
754
NOVEMBER 2025
754
OCTOBER 2025
754
SEPTEMBER 2025
754
AUGUST 2025
754
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for ARI ??
What was ARI's A.I Rankiteo Cyber Score in June 2026 ??
What was ARI's A.I Rankiteo Cyber Score in May 2026 ??
What was ARI's A.I Rankiteo Cyber Score in April 2026 ??
What was ARI's A.I Rankiteo Cyber Score in March 2026 ??
What was ARI's A.I Rankiteo Cyber Score in February 2026 ??
What was ARI's A.I Rankiteo Cyber Score in January 2026 ??
What was ARI's A.I Rankiteo Cyber Score in December 2025 ??
What was ARI's A.I Rankiteo Cyber Score in November 2025 ??
What was ARI's A.I Rankiteo Cyber Score in October 2025 ??
What was ARI's A.I Rankiteo Cyber Score in September 2025 ??
What was ARI's A.I Rankiteo Cyber Score in August 2025 ??
What is the average per-incident point impact on ARI's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with ARI ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view ARI's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?