Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Desjardins

Desjardins Vendor Cyber Rating & Cyber Score

desjardins.com

Desjardins Group is the largest cooperative financial group in North America and the fifth largest cooperative financial group in the world, with assets of $435.8 billion as at March 31, 2024. It was named one of Canada's Best Employers by Forbes magazine and by Mediacorp. To meet the diverse needs of its members and clients, Desjardins offers a full range of products and services to individuals and businesses through its extensive distribution network, online platforms and subsidiaries across Canada. Ranked among the world's strongest banks according to The Banker magazine, Desjardins has some of the highest capital ratios and credit ratings in the industry and the first according to Bloomberg News.


Desjardins A.I CyberSecurity Scoring

Desjardins
Company Information
Website:http://www.desjardins.com/fr/bienvenue.jsp
Employees number:43,222
Number of followers:365,039
NAICS:52211
Industry Type:Banking
Homepage:desjardins.com
Desjardins Risk Score (AI oriented)
Between 600 and 649
logo
DesjardinsBanking
Updated:
05/04/2026
632/1000
Poor
Caa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Desjardins Global Score (TPRM)
xxxx
logo
DesjardinsBanking
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Desjardins
DesjardinsPoor
Current Score
632Caa (POOR)
01000
3 incidents
-57.67 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
639Before Incident
MAY 2026
636Before Incident
APRIL 2026
634Before Incident
MARCH 2026
629Before Incident
FEBRUARY 2026
680Before Incident
Breach
08 Feb 2026Desjardins
Desjardins Group, Dolby Laboratories and SK Telecom: CoinbaseCartel hacker claims American audio behemoth Dolby

CoinbaseCartel Claims Data Breach of Dolby Laboratories in Latest Extortion Scheme

626After Incident
CRITICAL-54
DESSK-DOL1770631353
CoinbaseCartel Claims Data Breach of Dolby Laboratories in Latest Extortion Scheme A newly emerged cybercriminal group, CoinbaseCartel, has added Dolby Laboratories to its dark web leak site, alleging a data breach over Super Bowl weekend (February 2026). The U.S.-based audio technology giant, which reported over $1.3 billion in revenue in 2025 and employs 2,000+ staff, joins a growing list of high-profile victims, including SK Telecom (South Korea’s largest mobile carrier) and Desjardins Group (Canada’s largest financial services cooperative). Despite denying ransomware operations, CoinbaseCartel’s tactics password-protecting stolen data and extorting victims via a dark web blog align with traditional ransomware cartels. The group, first observed in September 2025, previously targeted SK Telecom, threatening to leak source code after the company refused negotiations. Researchers note that some victims listed by CoinbaseCartel overlap with those claimed by other ransomware gangs, suggesting possible data recycling. Unlike typical ransomware groups, CoinbaseCartel restricts access to stolen data, likely to showcase it exclusively to potential buyers either the victim or other cybercriminals. No samples have been released to verify the breach’s severity. The group’s emergence follows a broader trend of law enforcement crackdowns, including the FBI’s seizure of the RAMP dark web forum, which has fueled distrust among cybercriminals. Dolby Laboratories has not yet responded to requests for comment. The incident underscores the persistent threat of double extortion tactics, where attackers both encrypt data and threaten to leak it unless demands are met.
INCIDENT DETAILS -
TYPE
Data Breach / Extortion
MOTIVATION
Extortion / Financial Gain
JANUARY 2026
677Before Incident
DECEMBER 2025
743Before Incident
Breach
25 Dec 2025Desjardins
Desjardins: Montana Attorney General launches investigation into Lee Enterprises data breach

Lee Enterprises Ransomware Attack and Data Breach

677After Incident
CRITICAL-66
DES1767941129
Montana AG Investigates Lee Enterprises Ransomware Attack Impacting 40,000 A ransomware attack on Lee Enterprises, a Davenport, Iowa-based media company, has prompted an investigation by Montana Attorney General Austin Knudsen. The breach, attributed to the Qilin ransomware group, compromised the personal data of nearly 40,000 employees and subscribers earlier this year. Lee Enterprises owns multiple newspapers in Montana, including the Helena Independent Record, Billings Gazette, Missoulian, and Montana Standard, as well as dozens of other publications nationwide. While the company has not publicly detailed the extent of the exposed data, the incident marks a significant cybersecurity failure for the media organization. The Montana AG’s office confirmed the investigation on Friday, though official details had not yet been posted on its website at the time of reporting. This follows a broader trend of escalating ransomware attacks, with 2023 seeing record-high incidents and payments, according to a FinCEN report. The breach adds to a growing list of cyber incidents in 2024, including a second data exposure in seven months at Methodist Homes of Alabama and Northwest Florida and a security lapse at Virginia Urology, where purported patient data began leaking online. Meanwhile, federal authorities secured a conviction against a Nigerian national for wire fraud, aggravated identity theft, and unauthorized computer access, underscoring the global reach of cybercrime. Lee Enterprises has not yet issued a public statement on the investigation’s status or remediation efforts.
INCIDENT DETAILS -
TYPE
Ransomware, Data Breach
IMPACT
Data Compromised: Personal data of nearly 40,000 employees and subscribersIdentity Theft Risk: Aggravated identity theft risk (referenced in related case)
DATA BREACH
Type Of Data Compromised: Personal dataNumber Of Records Exposed: Nearly 40,000Sensitivity Of Data: High (personally identifiable information)Personally Identifiable Information: Yes
NOVEMBER 2025
794Before Incident
Breach
06 Nov 2025Desjardins
Desjardins: Man wanted in connection to Desjardins data breach arrested in Spain

Desjardins Data Breach and Fraud Scheme

741After Incident
CRITICAL-53
DES1767719603
Key Suspect in Desjardins Data Breach Arrested in Spain After 17-Month Manhunt Juan Pablo Serrano, a fugitive wanted in connection with the 2024 Desjardins data breach, was arrested in Spain on November 6, 2025, following a joint operation by Spanish authorities, Quebec provincial police, and Interpol. Serrano, 40, had been at large since June 2024 and was among Quebec’s most wanted individuals. Interpol issued a Red Notice for his arrest, enabling global law enforcement to track and detain him. He now faces extradition to Canada, where he will be charged with identity theft, fraud exceeding $5,000, and trafficking in identity information. Serrano is accused of purchasing stolen Desjardins customer data from Sébastien Boulanger-Dorval, a former Desjardins marketing employee, and using it to carry out fraud schemes. Boulanger-Dorval, 42, was arrested in 2024 and charged with fraud, identity theft, and the illegal sale of personal data—allegedly to settle debts. He was identified as the primary suspect in the breach, having exploited his access to sensitive information while employed at the financial institution.
INCIDENT DETAILS -
TYPE
Data BreachFraudIdentity Theft
MOTIVATION
Financial GainDebt Repayment
IMPACT
Data Compromised: Desjardins members and customers data listsBrand Reputation Impact: HighLegal Liabilities: YesIdentity Theft Risk: High
DATA BREACH
Type Of Data Compromised: Personal InformationSensitivity Of Data: HighData Exfiltration: YesPersonally Identifiable Information: Yes
OCTOBER 2025
793Before Incident
SEPTEMBER 2025
793Before Incident
AUGUST 2025
793Before Incident
JULY 2025
793Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Desjardins ?
?
What was Desjardins's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Desjardins's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Desjardins's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Desjardins ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Desjardins's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?