Comparison Overview
BrokerTec

BrokerTec
Chicago, US
Last Update: 18/03/2026
BrokerTec is a leading provider of electronic trading platforms and technology services in fixed income markets. BrokerTec is now part of CME Group. Disclaimer: BrokerTec Americas LLC (“BAL”) is a registered broker-dealer with the U.S. Securities and Exchange Commiss...

TIAA
730 Third Ave., New York, 10017, US
Last Update: 29/03/2026
At TIAA, we believe everyone has the right to retire with dignity. For more than 100 years, we’ve provided retirement plans, insurance, and investment services, empowering millions of people— in education, healthcare, and nonprofit —with the knowledge, guidance, and lif...
Compliance Ranges Comparison

BrokerTec







TIAA






Benchmark & Cyber Underwriting Signals
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for BrokerTec in 2026.
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for TIAA in 2026.
Incident History - BrokerTec (X = Date, Y = Severity)
BrokerTec cyber incidents detection timeline including parent company and subsidiaries.
Incident History - TIAA (X = Date, Y = Severity)
TIAA cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

BrokerTec

TIAA
FAQ
Latest Global CVEs
A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
A security vulnerability has been detected in Edimax EW-7478APC 1.04. This impacts the function formWlbasic of the file /goform/formWlbasic. Such manipulation of the argument rootAPmac leads to command injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
A security flaw has been discovered in iatsiuk pptr-mcp up to 0.2.7. The impacted element is the function executeCode of the file src/vm-executor.ts of the component execute Tool. The manipulation results in code injection. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.
A vulnerability was identified in graphlit graphlit-mcp-server 1.0.1. This affects the function fetch of the file src/tools.ts of the component ssrf-test Endpoint. Such manipulation of the argument url leads to server-side request forgery. The attack may be launched remotely. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet.