ASZO A.I CyberSecurity Scoring
ASZO
Company Information
Website:http://www.astronika.pl
Employees number:71
Number of followers:4,540
NAICS:336414
Industry Type:Defense and Space Manufacturing
Homepage:astronika.pl
ASZO Risk Score (AI oriented)
Between 650 and 699
ASZODefense and Space Manufacturing
Updated:
20/05/2026
20/05/2026
657/1000
Weak
B
ASZO Global Score (TPRM)
xxxx
ASZODefense and Space Manufacturing
Score locked

ASZOWeak
Current Score
657B (WEAK)
01000
1 incidents
-109 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
659
MAY 2026
657
APRIL 2026
656
MARCH 2026
654
FEBRUARY 2026
652
JANUARY 2026
650
DECEMBER 2025
648
NOVEMBER 2025
646
OCTOBER 2025
644
SEPTEMBER 2025
642
AUGUST 2025
640
JULY 2025
746
Ransomware
24 Jul 2025 • ASZO
Astronika, Rhode Island General Assembly, Unilever, Microsoft and Florida Department of Revenue: China-backed Storm-2603 deployed ransomware via SharePoint zero-days
China-Backed Storm-2603 Deploys Warlock Ransomware in Widespread SharePoint Attacks
637
CRITICAL-109
UNIMICASTFLORHO1772483656
China-Backed Storm-2603 Deploys Warlock Ransomware in Widespread SharePoint Attacks
On July 23, Microsoft reported that the China-linked threat group Storm-2603 exploited on-premises SharePoint servers using Warlock ransomware, a ransomware-as-a-service (RaaS) operation that emerged in early 2024. The attacks, part of at least four confirmed waves between July 17 and July 21, compromised over 400 organizations, including critical U.S. government agencies such as the National Nuclear Security Administration (NNSA), U.S. Education Department, Florida Department of Revenue, and Rhode Island General Assembly.
Warlock, also known as the Warlock Dark Army, has targeted multiple sectors, including government, finance, manufacturing, and education, with at least 11 confirmed victims and more expected. Among the affected entities are Astronika (a Polish space tech firm), Nippon Life India Asset Management (whose app and website were shut down in April 2025), Unilever (though the company has not confirmed the breach), and Carducci, a U.S.-based firm hit in June 2025. As of July 23, it remains unclear whether Storm-2603 has issued ransom demands or what financial impact the attacks may have.
The campaign leverages two newly disclosed zero-day vulnerabilities CVE-2025-53770 (CVSS 9.8, remote code execution) and CVE-2025-53771 (CVSS 6.3, server spoofing) which are evolved variants of the original "ToolShell" attack chain (CVE-2025-49704 and CVE-2025-49706). These flaws bypass Microsoft’s July 2025 patches for the initial vulnerabilities, allowing unauthenticated attackers to execute arbitrary code, access SharePoint content, and compromise file systems.
Microsoft’s Security Response Center (MSRC) addressed the new vulnerabilities on July 19, urging organizations to apply both updates. Security researchers, including Frankie Sclafani of Deepwatch, confirmed that the ToolShell attack chain remains active, with threat actors rapidly adapting to exploit the latest variants. When chained together, these vulnerabilities enable full network access and remote code execution, posing a severe risk to unpatched systems.
INCIDENT DETAILS -
TYPE
IMPACT
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for ASZO ??
What was ASZO's A.I Rankiteo Cyber Score in May 2026 ??
What was ASZO's A.I Rankiteo Cyber Score in April 2026 ??
What was ASZO's A.I Rankiteo Cyber Score in March 2026 ??
What was ASZO's A.I Rankiteo Cyber Score in February 2026 ??
What was ASZO's A.I Rankiteo Cyber Score in January 2026 ??
What was ASZO's A.I Rankiteo Cyber Score in December 2025 ??
What was ASZO's A.I Rankiteo Cyber Score in November 2025 ??
What was ASZO's A.I Rankiteo Cyber Score in October 2025 ??
What was ASZO's A.I Rankiteo Cyber Score in September 2025 ??
What was ASZO's A.I Rankiteo Cyber Score in August 2025 ??
What was ASZO's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on ASZO's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with ASZO ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view ASZO's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?