Company Details
exelon
19,357
166,605
22
exeloncorp.com
199
EXE_3021396
Completed


Exelon Company CyberSecurity Posture
exeloncorp.comExelon Corporation (Nasdaq: EXC) is one of the nation’s largest utility companies, serving more than 10 million customers through six fully regulated utilities. We believe that reliable and affordable energy is essential to a brighter, more sustainable future. We are a FORTUNE 250 company operating across a large urban footprint, serving major metro areas in Delaware, the District of Columbia, Illinois, Maryland, New Jersey and Pennsylvania. Exelon is recognized as an industry leader with best-in-class operations, a firm commitment to maintaining energy affordability, a track record of top-quartile reliability performance, strong ESG leadership and principles, and a deep dedication to supporting and investing in the communities we serve.
Company Details
exelon
19,357
166,605
22
exeloncorp.com
199
EXE_3021396
Completed
Between 800 and 849

Exelon Global Score (TPRM)XXXX



No incidents recorded for Exelon in 2026.
No incidents recorded for Exelon in 2026.
No incidents recorded for Exelon in 2026.
Exelon cyber incidents detection timeline including parent company and subsidiaries

Exelon Corporation (Nasdaq: EXC) is one of the nation’s largest utility companies, serving more than 10 million customers through six fully regulated utilities. We believe that reliable and affordable energy is essential to a brighter, more sustainable future. We are a FORTUNE 250 company operating across a large urban footprint, serving major metro areas in Delaware, the District of Columbia, Illinois, Maryland, New Jersey and Pennsylvania. Exelon is recognized as an industry leader with best-in-class operations, a firm commitment to maintaining energy affordability, a track record of top-quartile reliability performance, strong ESG leadership and principles, and a deep dedication to supporting and investing in the communities we serve.


Enedis est le gestionnaire du réseau public de distribution d’électricité sur 95 % du territoire français continental. Ses 38 859 collaborateurs assurent chaque jour l’exploitation, l’entretien et le développement de près de 1,3 million de kilomètres de réseau. Raccordement, mise en service, dépann
National Grid lies at the heart of a transforming energy system. Our business areas play a vital role in connecting millions of people to the energy they use, while continually seeking ways to make the energy system clean, fair, and affordable. In the UK we own and develop the high-voltage electri
Dominion Energy (NYSE: D), headquartered in Richmond, Va., provides regulated electricity service to 3.6 million homes and businesses in Virginia, North Carolina, and South Carolina, and regulated natural gas service to 500,000 customers in South Carolina. The company is one of the nation’s leading
RWE is leading the way to a clean energy world. With its investment and growth strategy Growing Green, RWE is contributing significantly to the success of the energy transition and the decarbonisation of the energy system. Around 20,000 employees work for the company in almost 30 countries worldwide
Pacific Gas and Electric Company, incorporated in California in 1905, is one of the largest combination natural gas and electric utilities in the United States. Based in San Francisco, the company is a subsidiary of PG&E Corporation. There are approximately 20,000 employees who carry out Pacific
Centrica is an international energy services and solutions company, founded on a 200-year heritage of serving customers in homes and businesses. We supply energy and services to over 10 million customers, mainly in the UK and Ireland, through brands such as British Gas, Bord Gáis Energy and Centri

O Grupo Energisa tem na distribuição de energia elétrica a principal base de seu negócio. Com cinco distribuidoras no Brasil, das quais três na região Nordeste (Energisa Sergipe - Distribuidora de Energia S/A nova denominação de Energipe, no Estado de Sergipe, Energisa Paraíba - Distribuido

A Xunta aparece definida no Estatuto de Autonomía, aprobado en 1981, como órgano colexiado do Goberno de Galicia. Na actualidade, a Xunta está composta polo presidente e dez conselleiros. A comunidade exerce as súas funcións administrativas a través da Xunta e dos seus entes e órganos dependentes.
We are a multinational company changing the face of energy, one of the world’s leading integrated utilities. As the largest private player in producing clean energy with renewable sources we have more than 92 GW of total capacity, including around 67 GW of renewables. Distributing electricity throu
.png)
As MD heads toward another consequential legislative session, energy policy is once again front and center, and counties are feeling the...
Highly experienced technology and customer‑experience leader to drive integrated strategy for enhanced tools and services for Exelon's 10.7...
"We are telling policy makers the warning lights are on," Exelon CEO Calvin Butler told Diane Brady at Fortune Brainstorm AI in San...
Utilities are accelerating grid modernization and investing in reliability to keep pace with surging electricity demand from AI and data...
ENERGYWIRE | The Trump administration wants to churn dirt on a bevy of new nuclear power plants. Electric utilities that power America have...
Pepco celebrates Exelon's 25th anniversary, highlighting improved reliability, affordability, and community resilience for its customers.
NetGuard Cybersecurity brings together AI-driven analytics, detection of known and unknown threats, tailored response playbooks,...
Five leading cybersecurity executives and public company directors discuss how chief information security officers and boards can work...
ENERGYWIRE | One of the nation's largest utilities is considering returning to the power generation business as concerns grow about future...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Exelon is http://www.exeloncorp.com.
According to Rankiteo, Exelon’s AI-generated cybersecurity score is 811, reflecting their Good security posture.
According to Rankiteo, Exelon currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Exelon has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Exelon is not certified under SOC 2 Type 1.
According to Rankiteo, Exelon does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Exelon is not listed as GDPR compliant.
According to Rankiteo, Exelon does not currently maintain PCI DSS compliance.
According to Rankiteo, Exelon is not compliant with HIPAA regulations.
According to Rankiteo,Exelon is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Exelon operates primarily in the Utilities industry.
Exelon employs approximately 19,357 people worldwide.
Exelon presently has no subsidiaries across any sectors.
Exelon’s official LinkedIn profile has approximately 166,605 followers.
Exelon is classified under the NAICS code 22, which corresponds to Utilities.
No, Exelon does not have a profile on Crunchbase.
Yes, Exelon maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/exelon.
As of January 25, 2026, Rankiteo reports that Exelon has not experienced any cybersecurity incidents.
Exelon has an estimated 4,236 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Exelon has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the processBackgroundAction() function in all versions up to, and including, 10.0.04. This makes it possible for authenticated attackers, with Subscriber-level access and above, to modify global map engine settings.
The Save as PDF Plugin by PDFCrowd plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘options’ parameter in all versions up to, and including, 4.5.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link. NOTE: Successful exploitation of this vulnerability requires that the PDFCrowd API key is blank (also known as "demo mode", which is the default configuration when the plugin is installed) or known.
The Hustle – Email Marketing, Lead Generation, Optins, Popups plugin for WordPress is vulnerable to arbitrary file uploads due to incorrect file type validation in the action_import_module() function in all versions up to, and including, 7.8.9.2. This makes it possible for authenticated attackers, with a lower-privileged role (e.g., Subscriber-level access and above), to upload arbitrary files on the affected site's server which may make remote code execution possible. Successful exploitation requires an admin to grant Hustle module permissions (or module edit access) to the low-privileged user so they can access the Hustle admin page and obtain the required nonce.
The WP Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.9 via the wdk_public_action AJAX handler. This makes it possible for unauthenticated attackers to extract email addresses for users with Directory Kit-specific user roles.
The Meta-box GalleryMeta plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 3.0.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with editor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.