Company Details
dorfman-museum-figures-inc
3
21
712
museumfigures.com
0
DOR_1635311
In-progress

Dorfman Museum Figures, Inc. Company CyberSecurity Posture
museumfigures.comDorfman Museum Figures, Inc. has been in business for 60 years, providing ultra Realistic Figures and Forms to the museum community, helping to keep history alive, dynamic, and relevant! Originally specializing in creating life-size, life-like realistic figures for museums, DMF has sculpted over 840 heads with which it has created thousands of figures for museums, visitor centers, design /exhibit companies, corporate entities, and private clients. DMF also fabricates a comprehensive line of conservationally sound forms out of Ethafoam® for display and storage of high value artifact costumes, uniforms, and clothing. Our Museum Figures and Conservation Forms are used in exhibit collections worldwide in over 30 countries. Driven by our client’s needs, we are continually adding to our line of products. So if you don’t see what you need, give us a call and let us know what we can do for you!
Company Details
dorfman-museum-figures-inc
3
21
712
museumfigures.com
0
DOR_1635311
In-progress
Between 750 and 799

DMFI Global Score (TPRM)XXXX



No incidents recorded for Dorfman Museum Figures, Inc. in 2025.
No incidents recorded for Dorfman Museum Figures, Inc. in 2025.
No incidents recorded for Dorfman Museum Figures, Inc. in 2025.
DMFI cyber incidents detection timeline including parent company and subsidiaries

Dorfman Museum Figures, Inc. has been in business for 60 years, providing ultra Realistic Figures and Forms to the museum community, helping to keep history alive, dynamic, and relevant! Originally specializing in creating life-size, life-like realistic figures for museums, DMF has sculpted over 840 heads with which it has created thousands of figures for museums, visitor centers, design /exhibit companies, corporate entities, and private clients. DMF also fabricates a comprehensive line of conservationally sound forms out of Ethafoam® for display and storage of high value artifact costumes, uniforms, and clothing. Our Museum Figures and Conservation Forms are used in exhibit collections worldwide in over 30 countries. Driven by our client’s needs, we are continually adding to our line of products. So if you don’t see what you need, give us a call and let us know what we can do for you!


Founded in 1969, the National Women's Hall of Fame was created to build a permanent home to honor women whose enduring contributions have transformed the landscape of America. Today we honor over 300 remarkable women in our gallery from the arts, athletics, business, education, government, humanit

Providence Children's Museum is Rhode Island's only hands-on museum for children and their grown-ups. The Museum's mission is to inspire lifelong learning for all through play, creativity, and exploration. The Museum serves the children of southern New England and the adults who care for them by

The Oakland Museum of California (OMCA) tells the many stories that comprise California, creating the space and context for greater connection, trust, and understanding between people. Through its inclusive exhibitions, public programs, educational initiatives, and cultural events, OMCA brings Cali

Since our founding in 1901, the Toledo Museum of Art has earned a global reputation for the quality of our collection, our innovative and extensive education programs, and our architecturally significant campus. More than 30,000 works of art represent American and European painting, the history o

Founded in 1976 by Hugo and Margaret Dixon, the Dixon Gallery and Gardens is a fine art museum and public garden distinguished by its diverse and innovative programs in the arts and horticulture. The Dixon features a permanent collection of over 2,000 objects, including French and American Impressio

The Japanese Culture Center was established in 1977 in Chicago by Aikido Shihan (Teacher of Teachers) and Zen Master Fumio Toyoda to make some of the martial arts, crafts, and philosophical riches of Japan available to the public. Today the JCC continues this tradition, offering classes in over a do
.png)
Longtime CIO and author Mark Settle shares how leaders can balance AI-driven risks, automation, and shrinking budgets to strengthen...
WASHINGTON — Today, during a Senate Commerce Committee hearing, U.S. Senator Eric Schmitt (R-MO) questioned witnesses about the need to...
Fast-growing Alexandria cybersecurity startup SpecterOps has raised $30 million in new funding, bringing its total raised since March to...
Senator Eric Schmitt advocates for enhanced cybersecurity measures during a Senate hearing, addressing procurement and satellite security...
Senator Deb Fischer held a hearing addressing cybersecurity threats and advocating for the FACT Act to protect telecommunications.
The Cybersecurity and Infrastructure Security Agency issued a Friday email to staff telling them to not speak to news reporters in an...
It's the second time this year Uthmeier has initiated legal action alleging cybersecurity issues about a company with Chinese connections.
CrowdStrike, Palo Alto Networks, Fortinet, SentinelOne, Globant, BlackBerry, and Arqit Quantum are the seven Cybersecurity stocks to watch...
CrowdStrike Holdings (CRWD) said third-quarter earnings and revenue came in slightly above consensus estimates. The cybersecurity firm's...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Dorfman Museum Figures, Inc. is http://www.museumfigures.com.
According to Rankiteo, Dorfman Museum Figures, Inc.’s AI-generated cybersecurity score is 766, reflecting their Fair security posture.
According to Rankiteo, Dorfman Museum Figures, Inc. currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Dorfman Museum Figures, Inc. is not certified under SOC 2 Type 1.
According to Rankiteo, Dorfman Museum Figures, Inc. does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Dorfman Museum Figures, Inc. is not listed as GDPR compliant.
According to Rankiteo, Dorfman Museum Figures, Inc. does not currently maintain PCI DSS compliance.
According to Rankiteo, Dorfman Museum Figures, Inc. is not compliant with HIPAA regulations.
According to Rankiteo,Dorfman Museum Figures, Inc. is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Dorfman Museum Figures, Inc. operates primarily in the Museums, Historical Sites, and Zoos industry.
Dorfman Museum Figures, Inc. employs approximately 3 people worldwide.
Dorfman Museum Figures, Inc. presently has no subsidiaries across any sectors.
Dorfman Museum Figures, Inc.’s official LinkedIn profile has approximately 21 followers.
No, Dorfman Museum Figures, Inc. does not have a profile on Crunchbase.
Yes, Dorfman Museum Figures, Inc. maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/dorfman-museum-figures-inc.
As of December 02, 2025, Rankiteo reports that Dorfman Museum Figures, Inc. has not experienced any cybersecurity incidents.
Dorfman Museum Figures, Inc. has an estimated 2,131 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Dorfman Museum Figures, Inc. has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.11.1, vllm has a critical remote code execution vector in a config class named Nemotron_Nano_VL_Config. When vllm loads a model config that contains an auto_map entry, the config class resolves that mapping with get_class_from_dynamic_module(...) and immediately instantiates the returned class. This fetches and executes Python from the remote repository referenced in the auto_map string. Crucially, this happens even when the caller explicitly sets trust_remote_code=False in vllm.transformers_utils.config.get_config. In practice, an attacker can publish a benign-looking frontend repo whose config.json points via auto_map to a separate malicious backend repo; loading the frontend will silently run the backend’s code on the victim host. This vulnerability is fixed in 0.11.1.
fastify-reply-from is a Fastify plugin to forward the current HTTP request to another server. Prior to 12.5.0, by crafting a malicious URL, an attacker could access routes that are not allowed, even though the reply.from is defined for specific routes in @fastify/reply-from. This vulnerability is fixed in 12.5.0.
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 21.0.2, 20.3.15, and 19.2.17, A Stored Cross-Site Scripting (XSS) vulnerability has been identified in the Angular Template Compiler. It occurs because the compiler's internal security schema is incomplete, allowing attackers to bypass Angular's built-in security sanitization. Specifically, the schema fails to classify certain URL-holding attributes (e.g., those that could contain javascript: URLs) as requiring strict URL security, enabling the injection of malicious scripts. This vulnerability is fixed in 21.0.2, 20.3.15, and 19.2.17.
Gin-vue-admin is a backstage management system based on vue and gin. In 2.8.6 and earlier, attackers can delete any file on the server at will, causing damage or unavailability of server resources. Attackers can control the 'FileMd5' parameter to delete any file and folder.
Portkey.ai Gateway is a blazing fast AI Gateway with integrated guardrails. Prior to 1.14.0, the gateway determined the destination baseURL by prioritizing the value in the x-portkey-custom-host request header. The proxy route then appends the client-specified path to perform an external fetch. This can be maliciously used by users for SSRF attacks. This vulnerability is fixed in 1.14.0.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.