ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

The Federation of American Scientists (FAS) works to provide science-based analysis of and solutions to protect against catastrophic threats to national and international security. Specifically, FAS works to reduce the spread and number of nuclear weapons, prevent nuclear and radiological terrorism, promote high standards for nuclear energy’s safety and security, illuminate government secrecy practices, as well as track and eliminate the global illicit trade of conventional, nuclear, biological and chemical weapons. FAS was founded in 1945 by many of the Manhattan Project scientists who wanted to prevent nuclear war and is one of the longest serving organizations in the world dedicated to reducing nuclear threats and informing the public debate by providing technically-based research and analysis on these issues.

Federation of American Scientists A.I CyberSecurity Scoring

FAS

Company Details

Linkedin ID:

federation-of-american-scientists

Employees number:

128

Number of followers:

7,100

NAICS:

541

Industry Type:

Think Tanks

Homepage:

fas.org

IP Addresses:

0

Company ID:

FED_1118640

Scan Status:

In-progress

AI scoreFAS Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/federation-of-american-scientists.jpeg
FAS Think Tanks
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreFAS Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/federation-of-american-scientists.jpeg
FAS Think Tanks
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

FAS Company CyberSecurity News & History

Past Incidents
0
Attack Types
0
No data available
Ailogo

FAS Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for FAS

Incidents vs Think Tanks Industry Average (This Year)

No incidents recorded for Federation of American Scientists in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for Federation of American Scientists in 2025.

Incident Types FAS vs Think Tanks Industry Avg (This Year)

No incidents recorded for Federation of American Scientists in 2025.

Incident History — FAS (X = Date, Y = Severity)

FAS cyber incidents detection timeline including parent company and subsidiaries

FAS Company Subsidiaries

SubsidiaryImage

The Federation of American Scientists (FAS) works to provide science-based analysis of and solutions to protect against catastrophic threats to national and international security. Specifically, FAS works to reduce the spread and number of nuclear weapons, prevent nuclear and radiological terrorism, promote high standards for nuclear energy’s safety and security, illuminate government secrecy practices, as well as track and eliminate the global illicit trade of conventional, nuclear, biological and chemical weapons. FAS was founded in 1945 by many of the Manhattan Project scientists who wanted to prevent nuclear war and is one of the longest serving organizations in the world dedicated to reducing nuclear threats and informing the public debate by providing technically-based research and analysis on these issues.

Loading...
similarCompanies

FAS Similar Companies

Center for Global Development

Over the past two decades, the Center for Global Development has maintained an unwavering focus on providing independent non-partisan research that has driven major changes in global development policy and practice. Our staff, located in Washington, D.C. and London, are our most valuable asset in a

UHack Tasmania

UHack is one of Australia's leading Hackathons! UHack is a fast-paced three-day innovation competition, that encourages you and your team to think outside the box, creating business ideas and developing solutions for real world problems. UHack is open to students, staff of the University and mem

Centre for Civil Society

Centre for Civil Society advances social change through public policy. Our work in education, livelihood, and policy training promotes choice and accountability across the private and public sectors. To translate policy into practice, we engage with policy and opinion leaders through research, pilot

Council on Foreign Relations

The mission of the Council on Foreign Relations is to inform U.S. engagement with the world. Founded in 1921, CFR is a nonpartisan, independent national membership organization, think tank, educator, and publisher, including of Foreign Affairs. It generates policy-relevant ideas and analysis, conve

Cenfri

Founded in 2008, Cenfri is an independent, not-for-profit development consultancy. We have physical offices in Cape Town and Kigali and have worked in more than 40 countries across Africa, the Middle East, Asia and Latin America. ​​Find out more: https://cenfri.org/ ​ In collaboration with our partn

Pando exists to bring entrepreneurs who love the mountains together, empowering positive change for our local and global communities. Pando is a 501(c) 3 organization that connects, supports and empowers entrepreneurs, thought leaders, and change makers. We create lasting connections and opportuniti

newsone

FAS CyberSecurity News

November 07, 2025 05:23 PM
Director of Emerging Tech Workforce and Inclusive Growth Fellow

Does FAS sound like an organization that you would be energized to join? Is it aligned to your values? The Federation of American Scientists (FAS) takes...

October 09, 2025 07:00 AM
What a government shutdown means for IT providers

One expert said those contracting IT services to the government can do nothing more than look to win more business.

October 06, 2025 07:00 AM
Policy Ideas for a Safer AI Future

AI safety is a rapidly evolving field that draws attention from a diverse range of policymakers across the political spectrum,...

September 25, 2025 07:00 AM
Gil’s Corner: September Sprinting and Webinar September 26

Getting into a shutdown is the easy part, getting out is much harder. Both sides will be looking to pin responsibility on each other,...

August 27, 2025 07:00 AM
Gil’s Corner: A View from D.C. on Science and Tech Policy, Politics, and Power

Our Director of Government Affairs gives you the skinny on the latest from the Hill and White House – and what it means for S&T policy.

August 04, 2025 07:00 AM
Economic Impacts of Extreme Heat: Energy

The federal government needs to strengthen energy systems through investments in energy infrastructure across energy generation,...

July 28, 2025 07:00 AM
What’s Progress and What’s Not in the AI Action Plan

The current lack of public trust in AI risks inhibiting innovation and adoption of AI systems, meaning new methods will not be discovered...

July 08, 2025 07:00 AM
Inside efforts to capture federal data after ‘the big takedown’

America's Data Index aims to serve as a “weather forecast” on the state of government data.

June 27, 2025 07:00 AM
Speed Grid Connection Using ‘Smart AI Fast Lanes’ and Competitive Prizes

Federal and state governments need to ensure that the development of new AI and data center infrastructure does not increase costs for...

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

FAS CyberSecurity History Information

Official Website of Federation of American Scientists

The official website of Federation of American Scientists is http://www.fas.org.

Federation of American Scientists’s AI-Generated Cybersecurity Score

According to Rankiteo, Federation of American Scientists’s AI-generated cybersecurity score is 751, reflecting their Fair security posture.

How many security badges does Federation of American Scientists’ have ?

According to Rankiteo, Federation of American Scientists currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does Federation of American Scientists have SOC 2 Type 1 certification ?

According to Rankiteo, Federation of American Scientists is not certified under SOC 2 Type 1.

Does Federation of American Scientists have SOC 2 Type 2 certification ?

According to Rankiteo, Federation of American Scientists does not hold a SOC 2 Type 2 certification.

Does Federation of American Scientists comply with GDPR ?

According to Rankiteo, Federation of American Scientists is not listed as GDPR compliant.

Does Federation of American Scientists have PCI DSS certification ?

According to Rankiteo, Federation of American Scientists does not currently maintain PCI DSS compliance.

Does Federation of American Scientists comply with HIPAA ?

According to Rankiteo, Federation of American Scientists is not compliant with HIPAA regulations.

Does Federation of American Scientists have ISO 27001 certification ?

According to Rankiteo,Federation of American Scientists is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of Federation of American Scientists

Federation of American Scientists operates primarily in the Think Tanks industry.

Number of Employees at Federation of American Scientists

Federation of American Scientists employs approximately 128 people worldwide.

Subsidiaries Owned by Federation of American Scientists

Federation of American Scientists presently has no subsidiaries across any sectors.

Federation of American Scientists’s LinkedIn Followers

Federation of American Scientists’s official LinkedIn profile has approximately 7,100 followers.

Federation of American Scientists’s Presence on Crunchbase

No, Federation of American Scientists does not have a profile on Crunchbase.

Federation of American Scientists’s Presence on LinkedIn

Yes, Federation of American Scientists maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/federation-of-american-scientists.

Cybersecurity Incidents Involving Federation of American Scientists

As of December 05, 2025, Rankiteo reports that Federation of American Scientists has not experienced any cybersecurity incidents.

Number of Peer and Competitor Companies

Federation of American Scientists has an estimated 812 peer or competitor companies worldwide.

Federation of American Scientists CyberSecurity History Information

How many cyber incidents has Federation of American Scientists faced ?

Total Incidents: According to Rankiteo, Federation of American Scientists has faced 0 incidents in the past.

What types of cybersecurity incidents have occurred at Federation of American Scientists ?

Incident Types: The types of cybersecurity incidents that have occurred include .

Incident Details

What are the most common types of attacks the company has faced ?

Additional Questions

cve

Latest Global CVEs (Not Company-Specific)

Description

MCP Server Kubernetes is an MCP Server that can connect to a Kubernetes cluster and manage it. Prior to 2.9.8, there is a security issue exists in the exec_in_pod tool of the mcp-server-kubernetes MCP Server. The tool accepts user-provided commands in both array and string formats. When a string format is provided, it is passed directly to shell interpretation (sh -c) without input validation, allowing shell metacharacters to be interpreted. This vulnerability can be exploited through direct command injection or indirect prompt injection attacks, where AI agents may execute commands without explicit user intent. This vulnerability is fixed in 2.9.8.

Risk Information
cvss3
Base: 6.4
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H
Description

XML external entity (XXE) injection in eyoucms v1.7.1 allows remote attackers to cause a denial of service via crafted body of a POST request.

Description

An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthenticated attackers on the local network to access administrative functions of the device (e.g. file upload, firmware update, reboot...) via a crafted authentication bypass.

Description

Cal.com is open-source scheduling software. Prior to 5.9.8, A flaw in the login credentials provider allows an attacker to bypass password verification when a TOTP code is provided, potentially gaining unauthorized access to user accounts. This issue exists due to problematic conditional logic in the authentication flow. This vulnerability is fixed in 5.9.8.

Risk Information
cvss4
Base: 9.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Rhino is an open-source implementation of JavaScript written entirely in Java. Prior to 1.8.1, 1.7.15.1, and 1.7.14.1, when an application passed an attacker controlled float poing number into the toFixed() function, it might lead to high CPU consumption and a potential Denial of Service. Small numbers go through this call stack: NativeNumber.numTo > DToA.JS_dtostr > DToA.JS_dtoa > DToA.pow5mult where pow5mult attempts to raise 5 to a ridiculous power. This vulnerability is fixed in 1.8.1, 1.7.15.1, and 1.7.14.1.

Risk Information
cvss4
Base: 5.5
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=federation-of-american-scientists' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge