Comparison Overview

ELTA North America

VS

General Dynamics

ELTA North America

8955 Henkels Lane, Annapolis Junction, Maryland, 20701, US
Last Update: 2025-05-02 (UTC)
Between 800 and 900

Strong

ELTA North America is a global leader in the design, manufacture and support of innovative electronic systems for the United States government. These proven high performance systems and a focus on customer satisfaction are the foundations of the companyโ€™s commitment to providing solutions to the nationโ€™s warfighters, security personnel and first responders. The company provides solutions in the ground, maritime, airborne and security domains. ELTA North America is located in Annapolis Junction, MD. We are proudly partnered with ELTA Systems Ltd, Israelโ€™s leading defense company and Center of Excellence for advanced radars and integrated solutions.

NAICS: 336414
NAICS Definition: Guided Missile and Space Vehicle Manufacturing
Employees: 29
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

General Dynamics

11011 Sunset Hills Rd, Reston, Virginia, 20190, US
Last Update: 2025-05-06 (UTC)

Excellent

Between 900 and 1000

From Gulfstream business jets and combat vehicles to nuclear-powered submarines and communications systems, people around the world depend on our products and services for their safety and security. General Dynamics is headquartered in Reston, Virginia, and employs over 100,000 people in 43 countries around the world. At the heart of our company are our employees. We rely on their intimate knowledge of customer requirements and a unique blend of skill and innovation to develop and produce the best possible products and services. The driver that makes our company agile, and ensures our continued performance, is our culture of continuous improvement. This culture enforces a shared commitment to consistently look toward the future and to embrace change. Itโ€™s a priority at all levels of our company, with every employee engaged in finding new ways to do things faster, better and more cost-effectively, and push the boundaries of our potential.

NAICS: 336414
NAICS Definition: Guided Missile and Space Vehicle Manufacturing
Employees: 10,465
Subsidiaries: 0
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/elta-north-america.jpeg
ELTA North America
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/general-dynamics.jpeg
General Dynamics
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
ELTA North America
100%
Compliance Rate
0/4 Standards Verified
General Dynamics
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Defense and Space Manufacturing Industry Average (This Year)

No incidents recorded for ELTA North America in 2025.

Incidents vs Defense and Space Manufacturing Industry Average (This Year)

No incidents recorded for General Dynamics in 2025.

Incident History โ€” ELTA North America (X = Date, Y = Severity)

ELTA North America cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” General Dynamics (X = Date, Y = Severity)

General Dynamics cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/elta-north-america.jpeg
ELTA North America
Incidents

No Incident

https://images.rankiteo.com/companyimages/general-dynamics.jpeg
General Dynamics
Incidents

Date Detected: 10/2024
Type:Breach
Attack Vector: Unauthorized Access
Blog: Blog

FAQ

General Dynamics company company demonstrates a stronger AI risk posture compared to ELTA North America company company, reflecting its advanced AI governance and monitoring frameworks.

General Dynamics company has historically faced a number of disclosed cyber incidents, whereas ELTA North America company has not reported any.

In the current year, General Dynamics company and ELTA North America company have not reported any cyber incidents.

Neither General Dynamics company nor ELTA North America company has reported experiencing a ransomware attack publicly.

General Dynamics company has disclosed at least one data breach, while ELTA North America company has not reported such incidents publicly.

Neither General Dynamics company nor ELTA North America company has reported experiencing targeted cyberattacks publicly.

Neither ELTA North America company nor General Dynamics company has reported experiencing or disclosing vulnerabilities publicly.

Neither ELTA North America company nor General Dynamics company has publicly disclosed detailed information about the number of their subsidiaries.

General Dynamics company employs more people globally than ELTA North America company, reflecting its scale as a Defense and Space Manufacturing.

Latest Global CVEs (Not Company-Specific)

Description

TS3 Manager is modern web interface for maintaining Teamspeak3 servers. A reflected cross-site scripting vulnerability has been identified in versions 2.2.1 and earlier. The vulnerability exists in the error handling mechanism of the login page, where malicious scripts embedded in server hostnames are executed in the victim's browser context without proper sanitization. This issue is fixed in version 2.2.2.

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Description

TS3 Manager is modern web interface for maintaining Teamspeak3 servers. A Denial of Dervice vulnerability has been identified in versions 2.2.1 and earlier. The vulnerability permits an unauthenticated actor to crash the application through the submission of specially crafted Unicode input, requiring no prior authentication or privileges. The flaw manifests when Unicode tag characters are submitted to the Server field on the login page. The application fails to properly handle these characters during the ASCII conversion process, resulting in an unhandled exception that terminates the application within four to five seconds of submission. This issue is fixed in version 2.2.2.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description

Weblate is a web based localization tool. An open redirect exists in versions 5.13.2 and below via the redir parameter on .within.website when Weblate is configured with Anubis and REDIRECT_DOMAINS is not set. An attacker can craft a URL on the legitimate domain that redirects a victim to an attacker-controlled site. The redirect can also be used to initiate drive-by downloads (redirecting to a URL that serves a malicious file), increasing the risk to end users. This issue is fixed in version 5.13.3.

Risk Information
cvss4
Base: 2.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:A/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. The official Docker image for Termix versions 1.5.0 and below, due to being configured with an Nginx reverse proxy, causes the backend to retrieve the proxy's IP instead of the client's IP when using the req.ip method. This results in isLocalhost always returning True. Consequently, the /ssh/db/host/internal endpoint can be accessed directly without login or authentication. This endpoint records the system's stored SSH host information, including addresses, usernames, and passwords, posing an extremely high security risk. Users who use the official Termix docker image, build their own image using the official dockerfile, or utilize reverse proxy functionality will be affected by this vulnerability. This issue is fixed in version 1.6.0.

Risk Information
cvss4
Base: 9.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

OpenPLC_V3 has a vulnerability in the enipThread function that occurs due to the lack of a return value. This leads to a crash when the server loop ends and execution hits an illegal ud2 instruction. This issue can be triggered remotely without authentication by starting the same server multiple times or if the server exits unexpectedly. The vulnerability allows an attacker to cause a Denial of Service (DoS) against the PLC runtime, stopping any PC started remotely without authentication. This results in the PLC process crashing and halting all automation or control logic managed by OpenPLC.

Risk Information
cvss3
Base: 7.1
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
cvss4
Base: 6.1
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X