Company Details
china-construction-bank-new-york-branch
94
1,519
522
ccb.com
0
CHI_1334689
In-progress

China Construction Bank New York Branch Company CyberSecurity Posture
ccb.comChina Construction Bank Corporation New York Branch (CCBNY) received a full branch license from the U.S. Federal Reserve Bank in February 2009 and opened for business in July of 2009.The opening of the NY branch marked the establishment of CCB’s first branch in the Americas.The NY branch specializes in comprehensive wholesale banking business including Corporate Banking,Trade Finance, Treasury products, Time & Demand Deposits and USD clearing. CCBNY provides extensive financial products and services to our customers and strives to achieve significant business development,especially by increasing its local market share of RMB trade settlement. Based on the advantageous location of New York, the dominant financial markets in the world, and CCB’s strong customer base in China, CCBNY offers various supports and products for our customers to expand business both into China and the US, playing a significant role in facilitating bilateral economic and trading activities.
Company Details
china-construction-bank-new-york-branch
94
1,519
522
ccb.com
0
CHI_1334689
In-progress
Between 800 and 849

CCBNYB Global Score (TPRM)XXXX



No incidents recorded for China Construction Bank New York Branch in 2025.
No incidents recorded for China Construction Bank New York Branch in 2025.
No incidents recorded for China Construction Bank New York Branch in 2025.
CCBNYB cyber incidents detection timeline including parent company and subsidiaries

China Construction Bank Corporation New York Branch (CCBNY) received a full branch license from the U.S. Federal Reserve Bank in February 2009 and opened for business in July of 2009.The opening of the NY branch marked the establishment of CCB’s first branch in the Americas.The NY branch specializes in comprehensive wholesale banking business including Corporate Banking,Trade Finance, Treasury products, Time & Demand Deposits and USD clearing. CCBNY provides extensive financial products and services to our customers and strives to achieve significant business development,especially by increasing its local market share of RMB trade settlement. Based on the advantageous location of New York, the dominant financial markets in the world, and CCB’s strong customer base in China, CCBNY offers various supports and products for our customers to expand business both into China and the US, playing a significant role in facilitating bilateral economic and trading activities.

Eu experimentei um novo jeito de me comunicar com você. Você usa o mundo digital para criar um universo totalmente seu e nesse novo universo eu acompanho você. Eu sei… Você é muito mais que digital. Eu olho para você e me vejo. Este é um dos motivos de eu estar aqui para conversar com você. Eu s

Welcome to the official LinkedIn page of Central Bank of India. Central Bank of India offers a wide range of products and services for every segment. Please join us to know more about our best products & services, attractive offers and the latest updates. We invite & value your active participatio

Depuis son rapprochement avec le Groupe Crédit Agricole SA en 2003, le périmètre d'activités de LCL, réseau national de banque de détail, est axé sur le marché des particuliers, des professionnels, des entreprises et la Banque privée. LCL est une banque de proximité qui compte 2 065 implantations

About Emirates NBD Emirates NBD (DFM: Emirates NBD) is a leading banking group in the MENAT (Middle East, North Africa and Türkiye) region with a presence in 13 countries, serving over 20 million customers. As at 30th September 2023, total assets were AED 836 billion, (equivalent to approx. USD 2
Royal Bank of Canada is a global financial institution with a purpose-driven, principles-led approach to delivering leading performance. Our success comes from the 94,000+ employees who leverage their imaginations and insights to bring our vision, values and strategy to life so we can help our clien
Security Bank is one of the Philippines’ best-capitalized private domestic universal banks. Established in 1951 and publicly listed with the Philippine Stock Exchange (PSE: SECB) in 1995, our major businesses cover retail, corporate, commercial, and business (MSME) banking. We’re recognized as an E

CIC is the fourth largest banking group in France, consisting of seven regional banks which operate across France through a network of 1,844 branches employing 24,000 staff. CIC's customer base includes 2.7 million retail clients. One in eleven self-employed professionals is a CIC group client and n

We are Europe's safest commercial bank, with roots in local communities throughout Sweden, the Netherlands, Norway, and the UK. Across a range of digital and physical meeting places, our branch teams offer ‘up close and personal’ financial advice and solutions, based on customers’ individual needs.

“Fired by the spirit of nationalism and founded on the idea that Indians should have a national bank of their own, which would further the economic interest of the country, Punjab National Bank Ltd was the result of the efforts of far-sighted visionaries and patriots, among whom were persons like La
.png)
Our commitment to audit quality. At EY US, we are bringing our bold vision for the future of audit to life with quality at the center,...
Shares in China's big state-owned banks rose on Monday after the lenders unveiled around a $72 billion recapitalisation plan to boost their...
EXECUTIVE SUMMARY. Although inbound FDI dropped in 2023, the People's Republic of China (PRC) remained the number four Foreign Direct Investment (FDI)...
China Construction Bank Corp (CCB) , the nation's second-largest commercial bank by assets, has asked employees at its headquarters to take...
U.S. insurance and home inspection software provider Porch Group is suing China Construction Bank Corp (CCB) , the country's third-biggest...
China's largest lenders are fortifying their balance sheets to deal with a theoretical problem. The country's five biggest banks by assets...
China's biggest lender, the Industrial and Commercial Bank of China, paid a ransom after it was hacked last week, a Lockbit ransomware gang...
The hack reportedly disrupted the trading of U.S. Treasuries. The Industrial and Commercial Bank of China Financial Services said it is...
With JPMorgan Chase, Bank of America, and Industrial and Commercial Bank of China in the top spots, here are the 10 biggest banks by market capitalization.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of China Construction Bank New York Branch is http://us.ccb.com/newyork/cn/index.html.
According to Rankiteo, China Construction Bank New York Branch’s AI-generated cybersecurity score is 838, reflecting their Good security posture.
According to Rankiteo, China Construction Bank New York Branch currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, China Construction Bank New York Branch is not certified under SOC 2 Type 1.
According to Rankiteo, China Construction Bank New York Branch does not hold a SOC 2 Type 2 certification.
According to Rankiteo, China Construction Bank New York Branch is not listed as GDPR compliant.
According to Rankiteo, China Construction Bank New York Branch does not currently maintain PCI DSS compliance.
According to Rankiteo, China Construction Bank New York Branch is not compliant with HIPAA regulations.
According to Rankiteo,China Construction Bank New York Branch is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
China Construction Bank New York Branch operates primarily in the Banking industry.
China Construction Bank New York Branch employs approximately 94 people worldwide.
China Construction Bank New York Branch presently has no subsidiaries across any sectors.
China Construction Bank New York Branch’s official LinkedIn profile has approximately 1,519 followers.
No, China Construction Bank New York Branch does not have a profile on Crunchbase.
Yes, China Construction Bank New York Branch maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/china-construction-bank-new-york-branch.
As of November 27, 2025, Rankiteo reports that China Construction Bank New York Branch has not experienced any cybersecurity incidents.
China Construction Bank New York Branch has an estimated 6,707 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, China Construction Bank New York Branch has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.