Comparison Overview
Atlantic Brain and Spine

Atlantic Brain and Spine
2208 S 17th St, Wilmington, 28401, US
Last Update: 01/04/2026
At Atlantic Brain and Spine, PA, we are committed to providing compassionate, quality care. We offer comprehensive patient evaluations, conservative treatment options, and state-of-the-art surgical techniques. Our surgeons specialize in the latest minimally-invasive spi...

Hamad Medical Corporation
PO Box 3488, QA
Last Update: 04/04/2026
Hamad Medical Corporation (HMC) is the main provider of secondary and tertiary healthcare in Qatar and one of the leading hospital providers in the Middle East. For more than three decades, HMC has been dedicated to delivering the safest, most effective and compassiona...
Compliance Ranges Comparison

Atlantic Brain and Spine







Hamad Medical Corporation






Benchmark & Cyber Underwriting Signals
Incidents vs Medical Practices Industry Avg (This Year)
Atlantic Brain and Spine has 16.67% fewer incidents than the average of same-industry companies with at least one recorded incident.
Incidents vs Medical Practices Industry Avg (This Year)
No incidents recorded for Hamad Medical Corporation in 2026.
Incident History - Atlantic Brain and Spine (X = Date, Y = Severity)
Atlantic Brain and Spine cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Hamad Medical Corporation (X = Date, Y = Severity)
Hamad Medical Corporation cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Atlantic Brain and Spine

Hamad Medical Corporation
FAQ
Latest Global CVEs
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.5, the httpserver/handler.go sendFile handler opened files using a cleaned path but derived the authorization filename from raw req.URL.Path, so a trailing slash could bypass .goshs ACL-file protection and block-list checks. This issue is fixed in version 2.1.5.
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.5, the httpserver/updown.go multipart upload handler split part.FileName() on / but did not reject .., allowing an unauthenticated upload with filename .. to create a file outside the served tree. This issue is fixed in version 2.1.5.
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.4, the httpserver/server.go wdGuard handled WebDAV MOVE as a write-only method and did not enforce --no-delete, allowing WebDAV clients to delete or overwrite files via MOVE with Overwrite: T. This issue is fixed in version 2.1.4.
goshs is a feature-rich single-binary file server for red teamers and developers. From 2.1.3 until 2.1.4, the sftpserver/sftpserver.go password handler used Username != "" && Password != "", so running goshs with -b 'admin:' -sftp and no -fkf left both SFTP authentication handlers unset and allowed unauthenticated file access. This issue is fixed in version 2.1.4.
Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, HttpPostRequestEncoder constructs multipart HTTP request bodies by directly concatenating user-supplied filenames and field names into Content-Disposition MIME headers without validating or sanitizing CRLF characters (\r\n). Since MIME headers are delimited by CRLF, an attacker who controls the filename can inject arbitrary MIME headers into the multipart body part. The root cause is that neither the encoder nor the FileUpload implementations' setFilename() methods, which only check for null, neutralize CRLF characters before the filename is embedded into the header. This issue has been fixed in versions 4.1.136.Final and 4.2.16.Final.