BQB A.I CyberSecurity Scoring
10/04/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for Bimbo QSR Brasil in 2026.
No incidents recorded for Bimbo QSR Brasil in 2026.
No incidents recorded for Bimbo QSR Brasil in 2026.
FrieslandCampina is a large international dairy company with a cooperative history dating back more than 150 years. The company processes milk into a wide range of dairy products and ingredients. Royal FrieslandCampina N.V. is fully owned by Zuivelcoöperatie FrieslandCampina U.A., with 14,634 dairy farmers in the Netherlands, Belgium and Germany as members. Through the cooperative, these member dairy farmers jointly own the company. FrieslandCampina provides consumers with dairy products, such as milk, yoghurt, condensed milk, dairy-based beverages, cheese, butter, quark and cream. The dairy company supplies specific nutrition geared to meet the needs of specific consumer groups, such as children, the elderly and sportspeople. Professional customers, such as bakers, pastry chefs, chocolate confectioners, chefs and caterers can also rely on our broad product range, including creams, butter, desserts and fillings. In addition, the company supplies high-quality ingredients to international food producers and pharmaceutical companies. With 20,928 employees (FTEs) and branches in 29 countries, our products find their way to more than 100 countries worldwide. Our company has an inclusive culture that reflects our heritage. That means people here are open, friendly, straight-forward and pragmatic. Our team players are always seeking collaborations built on trust and respect, and that spirit fuels the power of ‘We’. Our culture is about embracing the power of differences in order to grow together. It is the diversity of our people, their individual enthusiasm and collective commitment to shaping the future of dairy that makes FrieslandCampina such a special place to work. We believe that when you stay true to your nature, you will get the most out of your natural potential. If that is in your nature too. Bring your spark. Join us. Grow with us.
Louis Dreyfus Company is a leading merchant and processor of agricultural goods. We leverage our global reach and extensive asset network to serve our customers and consumers around the world, delivering the right products to the right location, at the right time – safely, responsibly and reliably. Our activities span the entire value chain from farm to fork, across a broad range of business lines (platforms). Since 1851 our portfolio has grown to include Grains & Oilseeds, Food & Feed Solutions, Coffee, Cotton, Juice, Rice, Sugar, Freight and Global Markets. We help feed and clothe some 500 million people every year by originating, processing and transporting approximately 80 million tons of products. Structured as a matrix organization of six geographical regions and nine platforms, Louis Dreyfus Company is active in over 100 countries and employs approximately 18,000 people globally. For more information, visit www.ldc.com.
PT SMART Tbk (SMART) / Sinar Mas Agribusiness and Food adalah salah satu perusahaan publik produk konsumen berbasis kelapa sawit yang terintegrasi dan terkemuka di Indonesia yang berkomitmen pada produksi minyak sawit yang berkelanjutan. Perkebunan kelapa sawit SMART mencakup 137,000 hektar (termasuk plasma). Aktivitas utama kami adalah penanaman dan pemanenan pohon kelapa sawit, pengolahan tandan buah segar (TBS) menjadi minyak sawit (CPO) dan inti sawit, dan pemrosesan CPO menjadi produk bernilai tambah seperti minyak goreng, margarin, shortening, biodiesel dan oleokimia, serta perdagangan produk berbasis kelapa sawit ke seluruh dunia. SMART juga mengoperasikan 16 pabrik kelapa sawit, 4 pabrik pengolahan inti sawit dan 4 pabrik rafinasi di Indonesia. Selain minyak curah dan industri, produk turunan SMART juga dipasarkan dengan berbagai merek seperti Filma dan Kunci Mas. Saat ini, merek-merek tersebut diakui kualitasnya dan memiliki pangsa pasar yang signifikan di segmennya masing-masing di Indonesia. Didirikan tahun 1962, SMART tercatat sahamnya di Bursa Efek Indonesia sejak tahun 1992 dan berkantor pusat di Jakarta. Sebagai anak perusahaan dari Golden Agri-Resources (GAR), SMART juga mengelola kegiatan usaha di sektor oleokimia, dibawah Sinar Mas Oleochemical, SMART Research Institute (SMARTRI), dan SMART Biotechnology Centre sebagai bagian dari kegiatan operasionalnya.
ADM unlocks the power of nature to enrich the quality of life. We’re an essential global agricultural supply chain manager and processor, providing food security by connecting local needs with global capabilities. We’re a premier human and animal nutrition provider, offering one of the industry’s broadest portfolios of ingredients and solutions from nature. We’re a trailblazer in health and well-being, with an industry-leading range of products for consumers looking for new ways to live healthier lives. We’re a cutting-edge innovator, guiding the way to a future of new bio-based consumer and industrial solutions. And we're leading in business-driven sustainability efforts that support a strong agricultural sector, resilient supply chains, and a vast and growing bioeconomy. Around the globe, our expertise and innovation are meeting critical needs from harvest to home. Learn more at www.adm.com.
Cargill is a family company committed to nourishing the world in a safe, responsible and sustainable way. With over 158 years of experience, we sit at the heart of the supply chain, partnering with producers and customers to source, make and deliver products that are vital for living. Whether it’s making alternative proteins for food manufacturers or helping farmers raise healthier animals with AI, we put as much care into how things are sourced as what we provide. We put people first. We do the right thing—today and for generations to come.
Presente há mais de 65 anos nos lares brasileiros, a Seara tem um dos portfólios mais diversificados do setor de alimentos - com opções que vão de proteína animal (frango e suínos) a pratos prontos, margarinas, pizzas, frios, lanches prontos, embutidos e proteína vegetal, essa última representada pela linha Incrível Seara, líder em seu segmento. Completam o portfólio global as marcas Seara, Seara Gourmet, Seara Nature, Seara DaGranja, Seara Turma da Mônica, Big Frango, Marba, Massa Leve, Doriana, Primor, Delicata, Salada, entre outras. Atualmente, a marca conta com milhares de produtos ao redor do mundo. Exporta para mais de 140 países e possui certificações internacionais de excelência em produção. Atualmente, a empresa conta com mais de 1.500 produtos ao redor do mundo (700 SKUs no Brasil), nos segmentos de aves e suínos (congelados e in natura), industrializados, alimentos preparados, embutidos, food service e margarinas. A Seara Alimentos foi adquirida em 2013 pelo grupo JBS, são mais de 95 mil funcionários, 22 unidades de produção de Alimentos Preparados, 8 unidades de processamento de suínos, 31 unidades de processamento de aves e 18 centros de distribuição. Desde então a marca está em franca expansão. Ao longo dos anos, a Seara expandiu seu portfólio, atingiu indicadores destacáveis, e alcançou a liderança em diversas categorias do setor de alimentos.
Established in 1888 , Lee Kum Kee is an international household name in authentic Asian sauces and condiments , as well as "a symbol of quality and trust". As a globally renowned Chinese multinational corporation , Lee Kum Kee now offers over 200 types of sauce and condiment to over 100 countries and regions.
From family-owned company to dairy industry’s global leader Created in 1933 by André Besnier in Laval, Lactalis Group is a family-owned company settled in rural areas, which became dairy industry’s global leader and a major player of employment. True to its first trade, cheesemonger, Lactalis Group, the first AOP cheese producer, contributes to the development of a rural economy open to the word. With a presence in around a hundred countries, Lactalis Group counts 80 000 collaborators and 250 production sites today. A unique dairy expertise Across all dairy product categories (milk consumption, ultra-fresh milk, cheese, butter, cream and dairy ingredients), we develop in the long run a portfolio of a hundred brands, made up of major emblematic brands as well as local or regional brands. In keeping with local food cultures and consumption modes, our ambition is to offer healthy, gourmet and accessible products to the greatest number of people. Learn more about Lactalis on www.lactalis.fr
We’re a unified force of 170,000+ Associates, taking action every day toward the world we want tomorrow. Our Five Principles have kept us true to ourselves and to our commitment to treat others in ways that are consistent with those values. Having stood the test of time, these principles will continue, keeping us free to move quickly and plan for the future. Quality - The consumer is our boss, quality is our work and value for money is our goal. Responsibility - As individuals, we demand total responsibility from ourselves; as Associates, we support the responsibilities of others. Mutuality - A mutual benefit is a shared benefit; a shared benefit will endure. Efficiency - We use resources to the full, waste nothing and do only what we can do best. Freedom - We need freedom to shape our future; we need profit to remain free. Note to Parents: https://www.mars.com/about/policies-and-practices/note-to-parents/np-english For more information, please visit mars.com. Follow us: facebook.com/mars, twitter.com/marsglobal, instagram.com/marsglobal/, youtube.com/mars For more information about careers at Mars, please visit careers.mars.com Follow us: facebook.com/LifeAtMars, instagram.com/LifeAtMars/, tiktok.com/LifeAtMars Mars, Incorporated is not responsible for any content or activity made available via third party sites or services. Page subject to: mars.com/legal mars.com/privacy
Latest updates, reports, and threat intel affecting the global network.
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in elixir-grpc grpc (GRPC.Compressor.Gzip, GRPC.Message modules) allows a denial of service via a gzip decompression bomb. This vulnerability is associated with program files lib/grpc/compressor/gzip.ex, lib/grpc/message.ex and program routines 'Elixir.GRPC.Compressor.Gzip':decompress/1, 'Elixir.GRPC.Message':from_data/2. 'Elixir.GRPC.Compressor.Gzip':decompress/1 calls :zlib.gunzip/1 directly on attacker-controlled bytes with no decompressed-size limit, ratio check, or incremental decoding. Because this module is the registered gzip GRPC.Compressor implementation, it is invoked automatically whenever an incoming gRPC frame carries the grpc-encoding: gzip header. :zlib.gunzip/1 allocates the entire decompressed result as a single binary, so a small highly compressible payload (for example a few kilobytes of zeros, which gzip compresses at roughly 1000:1) expands to multiple gigabytes inside a single call. The max_receive_message_length limit is enforced only against the already-decompressed message, so it provides no protection. An unauthenticated remote peer can send a single crafted frame to exhaust the BEAM node's heap and trigger an out-of-memory kill. This issue affects grpc: from 0.4.0 before 1.0.0.
Allocation of Resources Without Limits or Throttling vulnerability in elixir-grpc grpc allows unauthenticated attackers to exhaust the BEAM's memory and crash the server by streaming a large or slow-trickle unary request body. 'Elixir.GRPC.Server.Adapters.Cowboy.Handler':read_full_body/3 (lib/grpc/server/adapters/cowboy/handler.ex) accumulates every received chunk into a single growing binary with no size cap. Additionally, when the client omits the grpc-timeout header, the per-chunk read timeout resolves to :infinity, allowing a slow-trickle client to keep the connection alive indefinitely while memory grows. A single connection is sufficient to exhaust server memory and crash the node. This issue affects grpc from 0.3.1 before 1.0.0.
Deserialization of Untrusted Data and Allocation of Resources Without Limits or Throttling vulnerabilities in elixir-grpc grpc allow unauthenticated attackers to crash the BEAM node via atom table exhaustion and, when a decoded term flows into a call site that invokes it, achieve remote code execution on the server. 'Elixir.GRPC.Codec.Erlpack':decode/2 (lib/grpc/codec/erlpack.ex) calls :erlang.binary_to_term/1 on the raw gRPC message body without the :safe option, no size bound, and no type guard. Any unauthenticated peer that sends a request with Content-Type: application/grpc+erlpack can send a crafted payload that mints arbitrary new atoms (which are never garbage-collected, exhausting the bounded atom table and crashing the VM) or that encodes a fun term which, if applied anywhere downstream, executes attacker-controlled code inside the server process. This issue affects grpc from 0.4.0 before 1.0.0.
The browserstack-cypress-cli is BrowserStack's CLI which allows users to run Cypress tests on BrowserStack. Versions prior to 1.36.4 are vulnerable to OS command injection via the cypress_config_file configuration parameter. In readCypressConfigUtil.js, the loadJsFile() function constructs a shell command by interpolating the user-controlled cypress_config_filepath value into a template literal, then executes it via child_process.execSync(). Shell metacharacters in the config path (specifically " and ;) allow breaking out of the quoted argument and injecting arbitrary commands. This issue has been fixed in version 1.36.6.
Authorization Bypass Through User-Controlled Key vulnerability in elixir-grpc grpc allows authenticated attackers to access or modify resources belonging to other users by smuggling a conflicting value for any path-bound field via the query string or request body. In 'Elixir.GRPC.Server.Transcode':map_request/5 (lib/grpc/server/transcode.ex), all three clauses use Map.merge/2 with path bindings as the first argument, giving them the lowest merge precedence. A request such as GET /users/me/profile?user_id=victim (or a POST with {"user_id": "victim"} when body: "*") yields a decoded protobuf struct where the path-bound field carries the attacker-supplied value rather than the router-extracted value. Any handler that uses the path-bound field for authorization, multi-tenancy scoping, or ownership checks is silently bypassed. This issue affects grpc from 0.8.0 before 1.0.0.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.