Company Details
chinaciticbank
10,001
0
52211
citicbank.com
0
CHI_3190777
In-progress


China CITIC Bank Company CyberSecurity Posture
citicbank.comOverview Thinking on the corporate banking of small and medium sized commercial banks • Ranked the 99th among 2008 Global Top 500 Financial Brands • Chen Xiaoxian, the Bank’s President, was granted “Top 10 Financial Figures” Award in the fourth consecutive year • Selection activity about the ranking list of “50 Most Influential Events of Financial Reform and Opening-up in China and 2008 China's Best Financial Institutions” • Best Corporate Banking Business Award among Top 10 Outstanding Commercial Banks in Asia • Global Times 2008 Most Popular Retail Banks among Readers • China Business News 2008 Development Strategy Award Corporate Financial Service Brand of the Year Retail Financial Service Brand of the Year President Chen Xiaoxian was awarded “Financier of the Year 2008” • Chinese Chief Financial Officer (CFO) Most Trusted Bank 2008 by Chinese CFO • British Magazine “The Banker” Ranked the 77th among the Top 1000 World Banks • British Financial Times Ranked the 260th among 2008 Global Top 500 Enterprises in Market Value • 21st Century Business Herald China’s Most Potential Private Banks of the Year • ASIA MONEY Best Domestic Providers of FX Services Best For Overall FX Services Best Domestic Banks for Cash Management in China • The Asian Banker Journal Best Wealth Management Award • Euromoney Best Private Banks of Stock Portfolio Management in China • America Annual Call Centre Exhibition World’s Best Call Center
Company Details
chinaciticbank
10,001
0
52211
citicbank.com
0
CHI_3190777
In-progress
Between 800 and 849

CCB Global Score (TPRM)XXXX



No incidents recorded for China CITIC Bank in 2026.
No incidents recorded for China CITIC Bank in 2026.
No incidents recorded for China CITIC Bank in 2026.
CCB cyber incidents detection timeline including parent company and subsidiaries

Overview Thinking on the corporate banking of small and medium sized commercial banks • Ranked the 99th among 2008 Global Top 500 Financial Brands • Chen Xiaoxian, the Bank’s President, was granted “Top 10 Financial Figures” Award in the fourth consecutive year • Selection activity about the ranking list of “50 Most Influential Events of Financial Reform and Opening-up in China and 2008 China's Best Financial Institutions” • Best Corporate Banking Business Award among Top 10 Outstanding Commercial Banks in Asia • Global Times 2008 Most Popular Retail Banks among Readers • China Business News 2008 Development Strategy Award Corporate Financial Service Brand of the Year Retail Financial Service Brand of the Year President Chen Xiaoxian was awarded “Financier of the Year 2008” • Chinese Chief Financial Officer (CFO) Most Trusted Bank 2008 by Chinese CFO • British Magazine “The Banker” Ranked the 77th among the Top 1000 World Banks • British Financial Times Ranked the 260th among 2008 Global Top 500 Enterprises in Market Value • 21st Century Business Herald China’s Most Potential Private Banks of the Year • ASIA MONEY Best Domestic Providers of FX Services Best For Overall FX Services Best Domestic Banks for Cash Management in China • The Asian Banker Journal Best Wealth Management Award • Euromoney Best Private Banks of Stock Portfolio Management in China • America Annual Call Centre Exhibition World’s Best Call Center


A major consumer credit provider in Europe, Crédit Agricole Consumer Finance operates in 19 countries. Its 9,900 employees support customers by providing the financing they need to undertake their projects. Reflecting the essential social and economic role of consumer credit, Crédit Agricole Consu
CIBC is here to help all our clients reach their goals. We know the importance of reliable financial products and services, and we’re dedicated to providing them in a way that lets you bank however you want, whenever you want. With innovative tools designed around your priorities and a team ful
At U.S. Bank, we help millions of clients achieve their goals with a balance of best-in-class technology and human expertise tailored to individual needs. As the fifth-largest commercial bank in the United States, we’ve built a reputation for strength and stability across a diversified mix of busine

Yapı Kredi has been sustainably strengthening its market positioning in the sector since its establishment in 1944 through a customer-centric approach and focus on innovation. Yapı Kredi is the 3rd largest private bank in Turkey with total assets worth TL 411 billion as of the end of 2019. Constantl
About Emirates NBD Emirates NBD (DFM: Emirates NBD) is a leading banking group in the MENAT (Middle East, North Africa and Türkiye) region with a presence in 13 countries, serving over 20 million customers. As at 30th September 2023, total assets were AED 836 billion, (equivalent to approx. USD 22
Since its inception in 1898 with a capital of GBP1 million, NBE has been regarded as one of the oldest and most respected commercial banks in Egypt.Never isolated from national issues or concerns, NBE has been the primary supporter of Egypt’s national economy by financing the major Egyptian national

ING ING is a global bank with a strong European base. With 14,500 employees in the Netherlands, we’re one of the biggest employers of the country. Our research tells us that we stand out here because of our great working culture, competitive benefits, and interesting work. We believe in sustainable

“Fired by the spirit of nationalism and founded on the idea that Indians should have a national bank of their own, which would further the economic interest of the country, Punjab National Bank Ltd was the result of the efforts of far-sighted visionaries and patriots, among whom were persons like La

Meezan Bank, Pakistan's first and largest Islamic bank, is one of the fastest growing financial institutions in the banking sector of the country. With its Vision of establishing ‘Islamic banking as banking of first choice’ – the Bank commenced operations in 2002, after being issued the first-ever I
.png)
China CITIC Bank Corporation Limited reported earnings results for the full year ended December 31, 2025. For the full year,...
China CITIC Bank ( ($HK:0998) ) has provided an announcement. China CITIC Bank has obtained approval from the National Financial Regulatory...
Industry leaders gathered at the annual CPC Solutions Day to chart the future of AI and cybersecurity.
China CITIC Bank (SEHK:998) shares have been in focus after a recent dip of 0.6% in the latest trading session, following declines over the...
China Citic Bank will grant Xpeng 10 billion yuan ($1.39 billion) in credit to support the electric vehicle maker's business operations and...
China CITIC Bank International's inMotion platform expanded users' access to digital wealth services by offering personalised investment...
Abrdn is in advanced talks with Citic Bank to launch an asset management joint venture in China, two people with knowledge of the matter...
Abrdn is in advanced talks with Citic Bank to launch an asset management joint venture in China, two people with knowledge of the matter...
It also breached financial-statistics regulations and did not meet customer-identification obligations as required. In addition, the bank's...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of China CITIC Bank is http://www.citicbank.com.
According to Rankiteo, China CITIC Bank’s AI-generated cybersecurity score is 816, reflecting their Good security posture.
According to Rankiteo, China CITIC Bank currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, China CITIC Bank has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, China CITIC Bank is not certified under SOC 2 Type 1.
According to Rankiteo, China CITIC Bank does not hold a SOC 2 Type 2 certification.
According to Rankiteo, China CITIC Bank is not listed as GDPR compliant.
According to Rankiteo, China CITIC Bank does not currently maintain PCI DSS compliance.
According to Rankiteo, China CITIC Bank is not compliant with HIPAA regulations.
According to Rankiteo,China CITIC Bank is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
China CITIC Bank operates primarily in the Banking industry.
China CITIC Bank employs approximately 10,001 people worldwide.
China CITIC Bank presently has no subsidiaries across any sectors.
China CITIC Bank’s official LinkedIn profile has approximately 0 followers.
China CITIC Bank is classified under the NAICS code 52211, which corresponds to Commercial Banking.
No, China CITIC Bank does not have a profile on Crunchbase.
Yes, China CITIC Bank maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/chinaciticbank.
As of January 21, 2026, Rankiteo reports that China CITIC Bank has not experienced any cybersecurity incidents.
China CITIC Bank has an estimated 7,150 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, China CITIC Bank has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
SummaryA command injection vulnerability (CWE-78) has been found to exist in the `wrangler pages deploy` command. The issue occurs because the `--commit-hash` parameter is passed directly to a shell command without proper validation or sanitization, allowing an attacker with control of `--commit-hash` to execute arbitrary commands on the system running Wrangler. Root causeThe commitHash variable, derived from user input via the --commit-hash CLI argument, is interpolated directly into a shell command using template literals (e.g., execSync(`git show -s --format=%B ${commitHash}`)). Shell metacharacters are interpreted by the shell, enabling command execution. ImpactThis vulnerability is generally hard to exploit, as it requires --commit-hash to be attacker controlled. The vulnerability primarily affects CI/CD environments where `wrangler pages deploy` is used in automated pipelines and the --commit-hash parameter is populated from external, potentially untrusted sources. An attacker could exploit this to: * Run any shell command. * Exfiltrate environment variables. * Compromise the CI runner to install backdoors or modify build artifacts. Credits Disclosed responsibly by kny4hacker. Mitigation * Wrangler v4 users are requested to upgrade to Wrangler v4.59.1 or higher. * Wrangler v3 users are requested to upgrade to Wrangler v3.114.17 or higher. * Users on Wrangler v2 (EOL) should upgrade to a supported major version.
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data as well as unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.