Comparison Overview

CraneWorks, LLC

VS

D. & C. Design and Consulting srl

CraneWorks, LLC

7795 Little York Rd, Houston, TX, 77016, US
Last Update: 2025-11-28
Between 750 and 799

CraneWorks is an award-winning global provider of quality lifting solutions. With dealerships across the United States representing the world’s top crane and heavy equipment brands, we sell more Manitex boom trucks and Cormach material handling and knuckle boom cranes than anyone in North America. Founded in 2002, CraneWorks operates nine facilities in the US, offering new and used sales, nationwide service, worldwide parts, and an extensive rental fleet to customers from a wide variety of industries. While our premium products and custom solutions are impressive, it’s our commitment to customer service that truly sets us apart. Contact us today to experience the CraneWorks difference! Each CraneWorks location provides regional expertise, with in-depth knowledge of the local marketplace and client needs. Our shops provide both new and used equipment, manufacturer-backed and trained service, extensive parts inventories for all makes, and a modern rental fleet. Whatever your immediate or long-term needs are, CraneWorks is your one-vendor solution. We serve multiple industries, including the energy sector, municipal and infrastructure construction, residential construction, foundations, precast, material handling, commercial lighting and signage, governmental, and utilities. Along with the traditional equipment segments, on a regional basis CraneWorks provides specific market expertise for fluids management and hydro-excavation, railway service, and aerial platform access equipment.

NAICS: None
NAICS Definition:
Employees: 185
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

D. & C. Design and Consulting srl

Via Valsugana, 4, Noale, Venezia, 30033, IT
Last Update: 2025-11-27
Between 750 and 799

L'obiettivo di D&C è far crescere le persone dal punto di vista professionale, facilitandone la collaborazione e le sinergie, attraverso l’uso di tecnologia allo stato dell’arte. Questo è sempre il modo con cui ci approcciamo alle persone, che siano clienti o anche solo potenzialmente interessati. Ed è per questo motivo che ti invitiamo a seguire questa pagina! Scoprirai qualcosa di più su di noi, su quello che facciamo, e su come la pensiamo su diversi temi che, ci auguriamo, saranno di tuo interesse.

NAICS: None
NAICS Definition: Others
Employees: 6
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/crane-works.jpeg
CraneWorks, LLC
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/design-and-consulting.jpeg
D. & C. Design and Consulting srl
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
CraneWorks, LLC
100%
Compliance Rate
0/4 Standards Verified
D. & C. Design and Consulting srl
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Mechanical Or Industrial Engineering Industry Average (This Year)

No incidents recorded for CraneWorks, LLC in 2025.

Incidents vs Mechanical Or Industrial Engineering Industry Average (This Year)

No incidents recorded for D. & C. Design and Consulting srl in 2025.

Incident History — CraneWorks, LLC (X = Date, Y = Severity)

CraneWorks, LLC cyber incidents detection timeline including parent company and subsidiaries

Incident History — D. & C. Design and Consulting srl (X = Date, Y = Severity)

D. & C. Design and Consulting srl cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/crane-works.jpeg
CraneWorks, LLC
Incidents

No Incident

https://images.rankiteo.com/companyimages/design-and-consulting.jpeg
D. & C. Design and Consulting srl
Incidents

No Incident

FAQ

CraneWorks, LLC company demonstrates a stronger AI Cybersecurity Score compared to D. & C. Design and Consulting srl company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, D. & C. Design and Consulting srl company has disclosed a higher number of cyber incidents compared to CraneWorks, LLC company.

In the current year, D. & C. Design and Consulting srl company and CraneWorks, LLC company have not reported any cyber incidents.

Neither D. & C. Design and Consulting srl company nor CraneWorks, LLC company has reported experiencing a ransomware attack publicly.

Neither D. & C. Design and Consulting srl company nor CraneWorks, LLC company has reported experiencing a data breach publicly.

Neither D. & C. Design and Consulting srl company nor CraneWorks, LLC company has reported experiencing targeted cyberattacks publicly.

Neither CraneWorks, LLC company nor D. & C. Design and Consulting srl company has reported experiencing or disclosing vulnerabilities publicly.

Neither CraneWorks, LLC nor D. & C. Design and Consulting srl holds any compliance certifications.

Neither company holds any compliance certifications.

Neither CraneWorks, LLC company nor D. & C. Design and Consulting srl company has publicly disclosed detailed information about the number of their subsidiaries.

CraneWorks, LLC company employs more people globally than D. & C. Design and Consulting srl company, reflecting its scale as a Mechanical Or Industrial Engineering.

Neither CraneWorks, LLC nor D. & C. Design and Consulting srl holds SOC 2 Type 1 certification.

Neither CraneWorks, LLC nor D. & C. Design and Consulting srl holds SOC 2 Type 2 certification.

Neither CraneWorks, LLC nor D. & C. Design and Consulting srl holds ISO 27001 certification.

Neither CraneWorks, LLC nor D. & C. Design and Consulting srl holds PCI DSS certification.

Neither CraneWorks, LLC nor D. & C. Design and Consulting srl holds HIPAA certification.

Neither CraneWorks, LLC nor D. & C. Design and Consulting srl holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.