Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
AstraZeneca

AstraZeneca Vendor Cyber Rating & Cyber Score

astrazeneca.com

We're transforming the future of healthcare by unlocking the power of what science can do for people, society and the planet. For more information, visit www.astrazeneca.com. Community Guidelines: bit.ly/2MgAcio


AstraZeneca A.I CyberSecurity Scoring

AstraZeneca
Company Information
Website:http://www.astrazeneca.com
Employees number:78,683
Number of followers:3,722,569
NAICS:3254
Industry Type:Pharmaceutical Manufacturing
Homepage:astrazeneca.com
AstraZeneca Risk Score (AI oriented)
Between 750 and 799
logo
AstraZenecaPharmaceutical Manufacturing
Updated:
20/05/2026
786/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
AstraZeneca Global Score (TPRM)
xxxx
logo
AstraZenecaPharmaceutical Manufacturing
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

AstraZeneca
AstraZenecaFair
Current Score
786Baa (FAIR)
01000
4 incidents
-14.5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
785Before Incident
MAY 2026
786Before Incident
APRIL 2026
786Before Incident
MARCH 2026
812Before Incident
Breach
20 Mar 2026AstraZeneca
AstraZeneca: Hacker Group LAPSUS$ Claims Alleged AstraZeneca Data Breach

LAPSUS$ Claims AstraZeneca Data Breach, Leaks 3GB of Sensitive Internal Data

785After Incident
CRITICAL-27
AST1774045431
LAPSUS$ Claims AstraZeneca Data Breach, Leaks 3GB of Sensitive Internal Data The threat actor group LAPSUS$ has claimed responsibility for a data breach targeting AstraZeneca, one of the world’s largest pharmaceutical and biotechnology companies. According to posts on hacker forums and the group’s official website, the breach allegedly yielded 3GB of internal data, including source code, cloud infrastructure configurations, employee records, and access credentials. ### What Was Allegedly Stolen? LAPSUS$ claims the stolen data includes: - Employee-related datasets (names, roles, permissions) - Source code (Java, Angular, Python) - Secrets and credentials (private keys, vault data) - Cloud infrastructure details (AWS, Azure, Terraform configurations) The group has shared sample files in .tar.gz format to support its claims and is attempting to sell the data to the highest bidder. A screenshot of the forum post displays AstraZeneca branding alongside a negotiation session ID. ### Analysis of Leaked Samples Security researchers at Hackread.com reviewed the sample data, categorizing it into three main groups: 1. GitHub Enterprise User Data - Contains employee names, GitHub usernames, roles (including "Owner" privileges), and 2FA status. - The structured format suggests authentic internal exports, posing a high risk if genuine exposing access hierarchies and enabling privilege escalation attacks. 2. Third-Party/Contractor Access Data - Includes internal user IDs, full names, email addresses, and access logs for external collaborators (e.g., IQVIA, Parexel, Labcorp). - The presence of operational comments indicates real internal workflow data, increasing the risk of targeted phishing or social engineering attacks. 3. Generic Financial Data - Contains high-level financial statistics (assets, salaries, income) labeled "All industries." - Likely public or non-sensitive, included to inflate the sample’s perceived value. ### Assessed Impact & Risks | Data Type | Sensitivity | Potential Impact | |-----------------------------|----------------|----------------------| | GitHub enterprise roles | High | Privilege escalation, internal mapping | | Employee/contractor data | Moderate-High | Phishing, social engineering | | Cloud infrastructure configs | Critical | Full environment compromise | | Generic financial data | Low | No direct risk | While the GitHub and contractor data appear authentic, the cloud infrastructure and credential claims remain unverified. No direct evidence of secrets or private keys was found in the reviewed samples. ### Current Status As of publication, AstraZeneca has not confirmed the breach, and the claims remain unverified. The company has been contacted for comment, with updates pending. LAPSUS$’s involvement is also unconfirmed, as attribution in cybercrime forums is often unreliable.
INCIDENT DETAILS -
TYPE
Data Breach
MOTIVATION
Financial gain (data sale)
IMPACT
Data Compromised: 3GB of internal dataGitHub EnterpriseCloud infrastructure (AWS, Azure)Internal databasesOperational Impact: Potential privilege escalation, phishing risks, and environment compromiseBrand Reputation Impact: Potential reputational damage due to data exposureIdentity Theft Risk: High (employee/contractor PII exposed)
DATA BREACH
Source codeCloud infrastructure configurationsEmployee recordsAccess credentialsThird-party/contractor access dataGeneric financial dataSensitivity Of Data: High (GitHub roles, cloud configs, PII)Data Exfiltration: Yes (3GB of data allegedly stolen).tar.gzEmployee namesGitHub usernamesRolesEmail addressesInternal user IDs
MARCH 2026
814Before Incident
Vulnerability
13 Mar 2026AstraZeneca
Tesco, AstraZeneca and Shell: Millions of UK businesses exposed by Companies House security flaw

Companies House Security Flaw Exposes Private Data of UK Business Directors

812After Incident
CRITICAL-2
AST-TESHE1773679185
Companies House Security Flaw Exposes Private Data of UK Business Directors A critical vulnerability in the UK’s Companies House WebFiling system exposed sensitive details of directors at millions of registered businesses, including AstraZeneca, Shell, and Tesco. The flaw, discovered last Friday, forced the agency to temporarily shut down its online filing service before restoring it on Monday morning. The bug allowed logged-in users to access confidential data such as dates of birth and residential addresses of key personnel from the 5 million companies on the register. More alarmingly, it permitted unauthorized changes to directors’ contact details, including addresses and emails, without consent. Security researcher John Hewitt of Ghost Mail identified the issue, which could be triggered by pressing the back button four times while viewing a company’s profile. An internal investigation traced the vulnerability to a system update implemented in October 2023. Companies House CEO Andy King confirmed that no evidence of unauthorized data access or alterations has been found, though the review remains ongoing. The agency has urged businesses to verify their registered details for accuracy. The incident is now under scrutiny by the Information Commissioner’s Office (ICO) and the National Cyber Security Centre (NCSC). Companies House has advised affected businesses to file complaints if they suspect any misuse of their data.
INCIDENT DETAILS -
TYPE
Data Exposure
IMPACT
Data Compromised: Dates of birth, residential addresses, contact details (emails, addresses)Systems Affected: Companies House WebFiling systemDowntime: Temporary shutdown (Friday to Monday morning)Operational Impact: Service disruption, manual verification of registered details requiredBrand Reputation Impact: Potential reputational damage to Companies House and affected businessesIdentity Theft Risk: High (exposure of personally identifiable information)
DATA BREACH
Type Of Data Compromised: Personally Identifiable Information (PII)Sensitivity Of Data: High (dates of birth, residential addresses, contact details)Personally Identifiable Information: Dates of birth, residential addresses, emails, physical addresses
FEBRUARY 2026
815Before Incident
JANUARY 2026
814Before Incident
DECEMBER 2025
827Before Incident
NOVEMBER 2025
813Before Incident
OCTOBER 2025
813Before Incident
SEPTEMBER 2025
812Before Incident
AUGUST 2025
812Before Incident
JULY 2025
811Before Incident
JUNE 2021
796Before Incident
Breach
16 Jun 2021AstraZeneca
AstraZeneca

AstraZeneca Data Breach

768After Incident
MEDIUM-28
AST2255131222
Pharmaceutical giant AstraZeneca suffered a data breach incident after it left a list of credentials online for more than a year that exposed access to sensitive patient data. A developer left the credentials for an AstraZeneca internal server on code-sharing site GitHub in 2021. Credentials, like usernames and passwords, that are exposed or inadvertently published to sites like GitHub
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
Data Compromised: Sensitive patient dataSystems Affected: Internal server
DATA BREACH
Type Of Data Compromised: Sensitive patient dataSensitivity Of Data: High
OCTOBER 2020
836Before Incident
Ransomware
01 Oct 2020AstraZeneca
ERT

EResearch Technology Hit by Ryuk Ransomware

788After Incident
HIGH-48
ERT18610523
EResearch Technology was recently hit by a variant of the Ryuk ransomware, the company confirmed to Information Security Media Group. In order to reduce risks, safeguard the data of their clients, and improve their systems, ERT employed top-tier, independent cybersecurity investigators. According to the firm, no sensitive information about patients or confidential data linked to clinical trial activities has been taken, compromised, or stolen as of this point in the inquiry. While they experienced the system being offline, they recommended their clients take precautions.
INCIDENT DETAILS -
TYPE
Ransomware
IMPACT
System being offline

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for AstraZeneca ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in May 2026 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in April 2026 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in March 2026 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in February 2026 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in January 2026 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in December 2025 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in November 2025 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in October 2025 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in September 2025 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in August 2025 ?
?
What was AstraZeneca's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on AstraZeneca's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with AstraZeneca ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view AstraZeneca's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?