Comparison Overview
DSK Bank

DSK Bank
BG
Last Update: 01/04/2026
DSK Bank is the leader in the retail banking in Bulgaria, as well as a bank with outstanding positions in the private and corporate banking segment. The bank has the largest and most innovative branch network and superior e-channels for servicing its customers. DSK Bank...

BNP Paribas Fortis
Rue Montagne du Parc 3, Brussels, 1000, BE
Last Update: 02/04/2026
For over 200 years, BNP Paribas Fortis has helped drive the growth and prosperity of Belgium’s economy and communities. The mission of our 12,000 colleagues is clear: be the trusted financial partner for four million individual customers, businesses and organisations. W...
Compliance Ranges Comparison

DSK Bank







BNP Paribas Fortis






Benchmark & Cyber Underwriting Signals
Incidents vs Banking Industry Avg (This Year)
No incidents recorded for DSK Bank in 2026.
Incidents vs Banking Industry Avg (This Year)
No incidents recorded for BNP Paribas Fortis in 2026.
Incident History - DSK Bank (X = Date, Y = Severity)
DSK Bank cyber incidents detection timeline including parent company and subsidiaries.
Incident History - BNP Paribas Fortis (X = Date, Y = Severity)
BNP Paribas Fortis cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

DSK Bank

BNP Paribas Fortis
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).