Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
DHL

DHL Vendor Cyber Rating & Cyber Score

dhl.com

DHL is the leading global brand in the logistics industry. Our divisions offer an unrivaled portfolio of logistics services ranging from national and international parcel delivery, e-commerce shipping and fulfillment solutions, international express, road, air and ocean transport to industrial supply chain management. With specialized solutions for growth markets and industries including technology, life sciences and healthcare, engineering, manufacturing & energy, auto-mobility and retail, DHL is decisively positioned as "The logistics company for the world". DHL is part of DHL Group. Privacy notice https://group.dhl.com/en/data-protection.html


DHL A.I CyberSecurity Scoring

DHL
Company Information
Website:http://www.dhl.com
Employees number:224,682
Number of followers:2,770,958
NAICS:47
Industry Type:Transportation, Logistics, Supply Chain and Storage
Homepage:dhl.com
DHL Risk Score (AI oriented)
Between 800 and 849
logo
DHLTransportation, Logistics, Supply Chain and Storage
Updated:
28/04/2026
820/1000
Good
A
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
DHL Global Score (TPRM)
xxxx
logo
DHLTransportation, Logistics, Supply Chain and Storage
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

DHL
DHLGood
Current Score
820A (GOOD)
01000
1 incidents
-6 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
821Before Incident
MAY 2026
820Before Incident
APRIL 2026
826Before Incident
Cyber Attack
28 Apr 2026DHL
DHL: New DHL Phishing Scam Uses 11-Step Attack Chain to Steal Passwords

Phishing Campaign Impersonates DHL to Steal Credentials via Fake OTP Scheme

820After Incident
HIGH-6
DHL1777415025
Phishing Campaign Impersonates DHL to Steal Credentials via Fake OTP Scheme Researchers at Forcepoint’s X-Labs uncovered a sophisticated phishing campaign leveraging the DHL brand to harvest login credentials through an 11-step attack chain. The operation begins with a spoofed email bearing the subject line “DHL EXPRESS WAYBILL CONFIRMATION REQUIRED,” falsely prompting recipients to verify a shipment. While the display name appears as DHL EXPRESS, the sender domain cupelva.com reveals the deception, though the email bypasses some security filters by passing DKIM authentication for the attacker’s domain. Victims who click the embedded link are directed to a fake parcel verification page hosted at perfectgoc.com, where a locally generated six-digit "OTP" is displayed via JavaScript. Unlike legitimate two-factor authentication, this step does not involve SMS or email delivery; instead, users are instructed to input the on-screen code, creating a false sense of security. A deliberate two-second delay mimics real processing, further enhancing the illusion. Forcepoint researchers emphasized that this tactic targeting individuals without geographic or organizational focus relies on psychological manipulation rather than technical complexity to lower victims’ defenses. The attack employs URL-based identity injection to pre-fill the victim’s email address on a counterfeit DHL login portal, increasing perceived legitimacy. Once credentials are entered, the phishing kit exfiltrates additional telemetry data, including the user’s public IP, device type, OS, browser version, and geolocation (city/country). This data is temporarily stored in the browser’s local storage before being transmitted. For data exfiltration, the attackers use EmailJS, a legitimate service that enables direct browser-to-email transfers, eliminating the need for dedicated command-and-control infrastructure. Stolen information is sent to the attacker-controlled mailbox [email protected]. Upon completion, victims are redirected to DHL’s authentic website, reducing suspicion by simulating a successful login. Forcepoint noted the campaign’s effectiveness stems from its focus on social engineering over malware, with mitigation requiring the blocking of weaponized URLs and monitoring of the attacker’s mailbox.
INCIDENT DETAILS -
TYPE
Phishing
MOTIVATION
Credential Harvesting
IMPACT
Data Compromised: Login credentials, public IP, device type, OS, browser version, geolocation (city/country)Brand Reputation Impact: Potential reputational damage to DHL due to brand impersonationIdentity Theft Risk: High
DATA BREACH
Type Of Data Compromised: Login credentials, telemetry data (public IP, device type, OS, browser version, geolocation)Sensitivity Of Data: High (Personally Identifiable Information - PII)Data Exfiltration: Yes (via EmailJS to [email protected])Personally Identifiable Information: Email addresses, geolocation, device details
MARCH 2026
826Before Incident
FEBRUARY 2026
826Before Incident
JANUARY 2026
826Before Incident
DECEMBER 2025
826Before Incident
NOVEMBER 2025
826Before Incident
OCTOBER 2025
826Before Incident
SEPTEMBER 2025
826Before Incident
AUGUST 2025
826Before Incident
JULY 2025
826Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for DHL ?
?
What was DHL's A.I Rankiteo Cyber Score in May 2026 ?
?
What was DHL's A.I Rankiteo Cyber Score in April 2026 ?
?
What was DHL's A.I Rankiteo Cyber Score in March 2026 ?
?
What was DHL's A.I Rankiteo Cyber Score in February 2026 ?
?
What was DHL's A.I Rankiteo Cyber Score in January 2026 ?
?
What was DHL's A.I Rankiteo Cyber Score in December 2025 ?
?
What was DHL's A.I Rankiteo Cyber Score in November 2025 ?
?
What was DHL's A.I Rankiteo Cyber Score in October 2025 ?
?
What was DHL's A.I Rankiteo Cyber Score in September 2025 ?
?
What was DHL's A.I Rankiteo Cyber Score in August 2025 ?
?
What was DHL's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on DHL's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with DHL ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view DHL's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?