Comparison Overview
BlockFi

BlockFi
201 Montgomery St, Jersey City, 07302, US
Last Update: 29/03/2026
We provide the wealth management products crypto investors need, all powered by blockchain technology. Currently, we service clients worldwide and in all U.S. states, with USD loans backed by crypto, interest earning accounts, and trading. Learn more about our product...

State Street
One Lincoln St, Boston, 02111, US
Last Update: 04/04/2026
At State Street, we deliver leading investment platforms, data, expertise, and solutions that accelerate performance and better decision making. With over 200 years of global financial leadership, we equip institutional investors through a comprehensive suite of capabil...
Compliance Ranges Comparison

BlockFi







State Street






Benchmark & Cyber Underwriting Signals
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for BlockFi in 2026.
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for State Street in 2026.
Incident History - BlockFi (X = Date, Y = Severity)
BlockFi cyber incidents detection timeline including parent company and subsidiaries.
Incident History - State Street (X = Date, Y = Severity)
State Street cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

BlockFi

State Street
FAQ
Latest Global CVEs
Use after free in Aura in Google Chrome prior to 150.0.7871.128 allowed a local attacker to potentially exploit heap corruption via a malicious file. (Chromium security severity: High)
Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.128 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Out of bounds read and write in V8 in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in Cast in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in Network in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)