
Burbak Co
Excellent
BurBak Plastics specializes in high heat engineering plastics and highly toleranced, highgrade materials for runs of 500 to 5 million or more.
Excellent
BurBak Plastics specializes in high heat engineering plastics and highly toleranced, highgrade materials for runs of 500 to 5 million or more.
Excellent
With a global vision of the future, oriented toward people and sustainability, Braskem is engaged in contributing to the value chain in order to strengthen the Circular Economy. Its almost 9,000 team members are dedicated to improving peopleโs lives through sustainable solutions in chemicals and plastics. With its corporate DNA rooted in innovation, Braskem offers a comprehensive portfolio of plastic resins and chemical products for diverse industries, such as food packaging, construction, manufacturing, automotive, agribusiness, health and hygiene, and more. Braskem is globally headquartered in Brazil. In total, there are more than 40 industrial units in Brazil, the United States, Mexico, and Germany, exporting its products to clients in over 80 countries.
Security & Compliance Standards Overview
No incidents recorded for Burbak Co in 2025.
No incidents recorded for Braskem in 2025.
Burbak Co cyber incidents detection timeline including parent company and subsidiaries
Braskem cyber incidents detection timeline including parent company and subsidiaries
Last 3 Security & Risk Events by Company
Improper Protection Against Voltage and Clock Glitches in FPGA devices, could allow an attacker with physical access to undervolt the platform resulting in a loss of confidentiality.
Malicious code was inserted into the Nx (build system) package and several related plugins. The tampered package was published to the npm software registry, via a supply-chain attack. Affected versions contain code that scans the file system, collects credentials, and posts them to GitHub as a repo under user's accounts.
Flag Forge is a Capture The Flag (CTF) platform. In versions from 2.1.0 to before 2.3.0, the API endpoint GET /api/problems/:id returns challenge hints in plaintext within the question object, regardless of whether the user has unlocked them via point deduction. Users can view all hints for free, undermining the business logic of the platform and reducing the integrity of the challenge system. This issue has been patched in version 2.3.0.
Flag Forge is a Capture The Flag (CTF) platform. In version 2.1.0, the /api/admin/assign-badge endpoint lacks proper access control, allowing any authenticated user to assign high-privilege badges (e.g., Staff) to themselves. This could lead to privilege escalation and impersonation of administrative roles. This issue has been patched in version 2.2.0.
parse is a package designed to parse JavaScript SDK. A Prototype Pollution vulnerability in the SingleInstanceStateController.initializeState function of parse version 5.3.0 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.