Company Details
fpt-software
30,630
435,227
5415
fptsoftware.com
0
FPT_2451750
In-progress

FPT Software Company CyberSecurity Posture
fptsoftware.comFPT Software, a subsidiary of FPT Corporation, is a global technology and IT services provider headquartered in Vietnam, with USD 1.22 billion in revenue (2024) and over 33,000 employees in 30 countries. The company champions complex business opportunities and challenges with its world-class services in Advanced Analytics, AI, Digital Platforms, Cloud, Hyperautomation, IoT, Low-code, and so on. It has partnered with over 1,100 clients worldwide, more than 130 of which are Fortune Global 500 companies in Aviation, Automotive, Banking, Financial Services and Insurance, Healthcare, Logistics, Manufacturing, Utilities, and more. For more information, please visit http://www.fptsoftware.com.
Company Details
fpt-software
30,630
435,227
5415
fptsoftware.com
0
FPT_2451750
In-progress
Between 750 and 799

FPT Software Global Score (TPRM)XXXX



No incidents recorded for FPT Software in 2025.
No incidents recorded for FPT Software in 2025.
No incidents recorded for FPT Software in 2025.
FPT Software cyber incidents detection timeline including parent company and subsidiaries

FPT Software, a subsidiary of FPT Corporation, is a global technology and IT services provider headquartered in Vietnam, with USD 1.22 billion in revenue (2024) and over 33,000 employees in 30 countries. The company champions complex business opportunities and challenges with its world-class services in Advanced Analytics, AI, Digital Platforms, Cloud, Hyperautomation, IoT, Low-code, and so on. It has partnered with over 1,100 clients worldwide, more than 130 of which are Fortune Global 500 companies in Aviation, Automotive, Banking, Financial Services and Insurance, Healthcare, Logistics, Manufacturing, Utilities, and more. For more information, please visit http://www.fptsoftware.com.


Almaviva is synonymous with digital innovation. Proven experience, unique skills, ongoing research and in-depth knowledge of a range of public and private market sectors are what make it the leading Italian Group in Information & Communications Technology. Almaviva leads the Country growth and take

For 50 years, our nation’s federal Medicaid program has worked to improve the health, safety and well-being of America’s most vulnerable populations: low-income families, women and children, seniors, and those with disabilities. With positive health and cost outcomes that pierce inequities and impac

Virtusa is a global product and platform engineering services company that makes experiences better with technology. We help organizations grow faster, more profitably, and more sustainably by reimagining enterprises through domain-driven solutions. We combine strategy, design, and engineering, back

Inetum is a European leader in digital services. Inetum’s team of 27,000 consultants and specialists strive every day to make a digital impact for businesses, public sector entities and society. Inetum’s solutions aim at contributing to its clients’ performance and innovation as well as the common g

IGT Solutions is a next-gen customer experience (CX) company, defining and delivering AI-led transformative experiences for the global and most innovative brands using digital technologies. With the combination of Digital and Human Intelligence, IGT becomes the preferred partner for managing end-to-

ITC Infotech is a global technology solution and services leader providing business-friendly solutions, that enable future-readiness for clients. We seamlessly bring together digital expertise, strong industry-specific alliances, and deep domain expertise from ITC Group businesses. Our solutions and
We are a global technology solutions company that powers breakthroughs for the world’s leading organizations. These solutions — digital workplace, cloud, applications & infrastructure, enterprise computing and business process solutions — help people overcome obstacles and not only reach their great
Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions that address clients’ most complex digital transformation needs. Leveraging our holistic portfolio of capabilities in consulting, design, engineering, a
SAIC® is a premier Fortune 500® technology integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, civilian and intelligence markets includes secure high-end solutions in mission IT, enterpris
.png)
Even when K+ held exclusive broadcasting rights, most Premier League viewership in Vietnam came via pirated streaming platforms like Xoilac,...
Global technology corporation FPT has entered a strategic partnership with LAPI ITB, a consulting and professional services provider owned...
FPT Software, a subsidiary of Global IT services provider FPT, is positioned as a Major Player in IDC MarketScape: Asia/Pacific (Excluding...
FPT ministers agree on digital security pact allowing real-time cyber threat intelligence sharing and co-ordinated response efforts.
With an increasingly visible presence in demanding markets such as the US, Europe and Japan, Viet Nam's technology sector is accelerating to...
SEOUL, South Korea, Aug. 12, 2025 /PRNewswire/ — Within the framework of the Vietnam–Korea Economic Forum 2025, and in the presence of Prime...
FPT Corporation, Vietnam's leading technology conglomerate and the Ministry of National Development Planning of the Republic of Indonesia (Bappenas) have...
In connected car news are Qualcomm, Autotalks, FPT Corp., Cymotive, STRADVISION, Arm, Kesight, NIO, Marelli and Uber.
FPT has signed a Memorandum of Understanding (MOU) with Israel-based Cymotive Technologies to advance automotive cybersecurity innovation.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of FPT Software is https://www.fptsoftware.com.
According to Rankiteo, FPT Software’s AI-generated cybersecurity score is 790, reflecting their Fair security posture.
According to Rankiteo, FPT Software currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, FPT Software is not certified under SOC 2 Type 1.
According to Rankiteo, FPT Software does not hold a SOC 2 Type 2 certification.
According to Rankiteo, FPT Software is not listed as GDPR compliant.
According to Rankiteo, FPT Software does not currently maintain PCI DSS compliance.
According to Rankiteo, FPT Software is not compliant with HIPAA regulations.
According to Rankiteo,FPT Software is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
FPT Software operates primarily in the IT Services and IT Consulting industry.
FPT Software employs approximately 30,630 people worldwide.
FPT Software presently has no subsidiaries across any sectors.
FPT Software’s official LinkedIn profile has approximately 435,227 followers.
FPT Software is classified under the NAICS code 5415, which corresponds to Computer Systems Design and Related Services.
Yes, FPT Software has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/fpt-software.
Yes, FPT Software maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/fpt-software.
As of November 27, 2025, Rankiteo reports that FPT Software has not experienced any cybersecurity incidents.
FPT Software has an estimated 36,299 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, FPT Software has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.