
Burbak Co
Excellent
BurBak Plastics specializes in high heat engineering plastics and highly toleranced, highgrade materials for runs of 500 to 5 million or more.
Excellent
BurBak Plastics specializes in high heat engineering plastics and highly toleranced, highgrade materials for runs of 500 to 5 million or more.
Excellent
Established in the UK in 1991, RPC is today a global design and engineering company specialising in polymer conversion in packaging and non-packaging markets, with centres of excellence worldwide and a turnover in excess of โฌ4bn. Throughout our growth we have continued to focus on our core principles of establishing a devolved structure of specialist operations, all of which have expertise in individual processing technologies and in-depth knowledge and understanding of particular end markets. This enables us to develop tailored solutions to meet specific customer requirements. And our increasingly wide global footprint means we are ideally placed to support customers on a local, national and international basis, as well as providing multi-site security of supply. With industry leading product design capabilities across all conversion technologies, we drive innovation throughout all our product and technical components development work for packaging and non-packaging applications โ delivering excellence in choice, manufacturing and customer service.
Security & Compliance Standards Overview
No incidents recorded for Burbak Co in 2025.
No incidents recorded for RPC Group Limited in 2025.
Burbak Co cyber incidents detection timeline including parent company and subsidiaries
RPC Group Limited cyber incidents detection timeline including parent company and subsidiaries
Last 3 Security & Risk Events by Company
Improper Protection Against Voltage and Clock Glitches in FPGA devices, could allow an attacker with physical access to undervolt the platform resulting in a loss of confidentiality.
Malicious code was inserted into the Nx (build system) package and several related plugins. The tampered package was published to the npm software registry, via a supply-chain attack. Affected versions contain code that scans the file system, collects credentials, and posts them to GitHub as a repo under user's accounts.
Flag Forge is a Capture The Flag (CTF) platform. In versions from 2.1.0 to before 2.3.0, the API endpoint GET /api/problems/:id returns challenge hints in plaintext within the question object, regardless of whether the user has unlocked them via point deduction. Users can view all hints for free, undermining the business logic of the platform and reducing the integrity of the challenge system. This issue has been patched in version 2.3.0.
Flag Forge is a Capture The Flag (CTF) platform. In version 2.1.0, the /api/admin/assign-badge endpoint lacks proper access control, allowing any authenticated user to assign high-privilege badges (e.g., Staff) to themselves. This could lead to privilege escalation and impersonation of administrative roles. This issue has been patched in version 2.2.0.
parse is a package designed to parse JavaScript SDK. A Prototype Pollution vulnerability in the SingleInstanceStateController.initializeState function of parse version 5.3.0 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.