Company Details
cbc-australia
134
3,340
None
conbear.com
0
CBC_2242959
In-progress

CBC Australia Pty Limited Company CyberSecurity Posture
conbear.comCBC Australia Pty Ltd is a dedicated bearing and power transmission supplier to the mining and manufacturing industries in Australia, and Indonesia. With resources like the CBC Design Centre an information website providing CBC customers with ready access to key product and operational data associated with the design, selection and specifications for bulk material handling equipment, conveyors and related components we stand alone in the Australian landscape. Design & Technical - www.cbcdesigncentre.com.au Commercial - www.conbear.com
Company Details
cbc-australia
134
3,340
None
conbear.com
0
CBC_2242959
In-progress
Between 750 and 799

CAPL Global Score (TPRM)XXXX



No incidents recorded for CBC Australia Pty Limited in 2025.
No incidents recorded for CBC Australia Pty Limited in 2025.
No incidents recorded for CBC Australia Pty Limited in 2025.
CAPL cyber incidents detection timeline including parent company and subsidiaries

CBC Australia Pty Ltd is a dedicated bearing and power transmission supplier to the mining and manufacturing industries in Australia, and Indonesia. With resources like the CBC Design Centre an information website providing CBC customers with ready access to key product and operational data associated with the design, selection and specifications for bulk material handling equipment, conveyors and related components we stand alone in the Australian landscape. Design & Technical - www.cbcdesigncentre.com.au Commercial - www.conbear.com


PACCAR is a global technology leader in the design, manufacture and customer support of premium light-, medium- and heavy-duty trucks under the Kenworth, Peterbilt and DAF nameplates. PACCAR also designs and manufactures advanced diesel engines, provides financial services, information technology, a

Everything we do starts with people. Our purpose is to provide freedom to move, in a personal, sustainable and safe way. We are committed to simplifying our customers’ lives by offering better technology solutions that improve their impact on the world and bringing the most advanced mobility innovat

The oldest motorcycle brand in continuous production, Royal Enfield made its first motorcycle in 1901. A division of Eicher Motors Limited, Royal Enfield has created the mid-sized motorcycle segment in India with its unique and distinctive modern classic bikes. Royal Enfield operates in 60+ countr

Ashok Leyland vehicles have built a reputation for reliability and ruggedness. The 5,00,000 vehicles we have put on the roads have considerably eased the additional pressure placed on road transportation in independent India. In the populous Indian metros, four out of the five State Transport Und

Mercedes-Benz USA, LLC (MBUSA), a Daimler Company, is responsible for the Distribution and Marketing of Mercedes-Benz and smart products in the United States. MBUSA was founded in 1965 and prior to that Mercedes-Benz cars were sold in the United States by Mercedes-Benz Car Sales, Inc., a subsidiary

Tesla is accelerating the world’s transition to sustainable abundance. To achieve our mission, we're building a world powered by solar, enabled by battery storage and transported by electric vehicles. We’re committed to hiring and developing top talent from around the world for any given disciplin
.png)
Canadians should consider encrypted messaging services to protect themselves, cybersecurity experts say.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of CBC Australia Pty Limited is http://www.conbear.com.
According to Rankiteo, CBC Australia Pty Limited’s AI-generated cybersecurity score is 755, reflecting their Fair security posture.
According to Rankiteo, CBC Australia Pty Limited currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, CBC Australia Pty Limited is not certified under SOC 2 Type 1.
According to Rankiteo, CBC Australia Pty Limited does not hold a SOC 2 Type 2 certification.
According to Rankiteo, CBC Australia Pty Limited is not listed as GDPR compliant.
According to Rankiteo, CBC Australia Pty Limited does not currently maintain PCI DSS compliance.
According to Rankiteo, CBC Australia Pty Limited is not compliant with HIPAA regulations.
According to Rankiteo,CBC Australia Pty Limited is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
CBC Australia Pty Limited operates primarily in the Mechanical Or Industrial Engineering industry.
CBC Australia Pty Limited employs approximately 134 people worldwide.
CBC Australia Pty Limited presently has no subsidiaries across any sectors.
CBC Australia Pty Limited’s official LinkedIn profile has approximately 3,340 followers.
CBC Australia Pty Limited is classified under the NAICS code None, which corresponds to Others.
No, CBC Australia Pty Limited does not have a profile on Crunchbase.
Yes, CBC Australia Pty Limited maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/cbc-australia.
As of November 28, 2025, Rankiteo reports that CBC Australia Pty Limited has not experienced any cybersecurity incidents.
CBC Australia Pty Limited has an estimated 2,055 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, CBC Australia Pty Limited has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.