Company Details
globex-corporation
3
12
5414
niit.com
0
GLO_3441737
In-progress

Globex Corporation Company CyberSecurity Posture
niit.comCompany Details
globex-corporation
3
12
5414
niit.com
0
GLO_3441737
In-progress
Between 700 and 749

GC Global Score (TPRM)XXXX

Description: In March 2024, Globex Corporation fell victim to a sophisticated ransomware attack by a group known as 'The Shadow Legion'. The attackers exploited a vulnerability within Globex’s MOVEit file transfer software, encrypting critical business data and demanding a significant ransom. Despite attempts to recover the data, significant portions were irrevocably lost, including proprietary technology blueprints and confidential financial reports. This incident brought to a standstill Globex's operations for two weeks, resulting in considerable financial losses and damage to the corporation's market reputation. Further compounding the damage, there was a leak of personal employee information, exacerbating concerns over identity theft and personal security among staff. The attack highlights the growing sophistication of cybercriminals and underscores the imperative need for rigorous cybersecurity measures, especially in sensitive data handling and transfer mechanisms.


No incidents recorded for Globex Corporation in 2025.
No incidents recorded for Globex Corporation in 2025.
No incidents recorded for Globex Corporation in 2025.
GC cyber incidents detection timeline including parent company and subsidiaries



Dar is one of the world’s leading consultancies, providing design, planning, engineering, sustainability consulting, digital solutions and services, and project management for buildings, cities, transportation, civil infrastructure, water, and the environment. We are a global community of talented

HDR is an employee-owned design firm specializing in engineering, architecture, environmental and construction services. We’re ranked No. 6 among the world’s design firms and we’re the largest healthcare design firm. Led by the strength of our values and a culture shaped by employee ownership, we n
.png)
August 15, 2019 - TheNewswire – Vancouver, British Columbia - GlobeX Data Ltd. (“GlobeX” or the “Company”) (CNSX:SWIS.CN) (CNSX:SWIS.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Globex Corporation is http://www.niit.com.
According to Rankiteo, Globex Corporation ’s AI-generated cybersecurity score is 749, reflecting their Moderate security posture.
According to Rankiteo, Globex Corporation currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Globex Corporation is not certified under SOC 2 Type 1.
According to Rankiteo, Globex Corporation does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Globex Corporation is not listed as GDPR compliant.
According to Rankiteo, Globex Corporation does not currently maintain PCI DSS compliance.
According to Rankiteo, Globex Corporation is not compliant with HIPAA regulations.
According to Rankiteo,Globex Corporation is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Globex Corporation operates primarily in the Design Services industry.
Globex Corporation employs approximately 3 people worldwide.
Globex Corporation presently has no subsidiaries across any sectors.
Globex Corporation ’s official LinkedIn profile has approximately 12 followers.
Globex Corporation is classified under the NAICS code 5414, which corresponds to Specialized Design Services.
No, Globex Corporation does not have a profile on Crunchbase.
Yes, Globex Corporation maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/globex-corporation.
As of December 01, 2025, Rankiteo reports that Globex Corporation has experienced 1 cybersecurity incidents.
Globex Corporation has an estimated 8,353 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Cyber Attack.
Total Financial Loss: The total financial loss from these incidents is estimated to be $0.
Title: Globex Corporation Ransomware Attack
Description: In March 2024, Globex Corporation fell victim to a sophisticated ransomware attack by a group known as 'The Shadow Legion'. The attackers exploited a vulnerability within Globex’s MOVEit file transfer software, encrypting critical business data and demanding a significant ransom. Despite attempts to recover the data, significant portions were irrevocably lost, including proprietary technology blueprints and confidential financial reports. This incident brought to a standstill Globex's operations for two weeks, resulting in considerable financial losses and damage to the corporation's market reputation. Further compounding the damage, there was a leak of personal employee information, exacerbating concerns over identity theft and personal security among staff. The attack highlights the growing sophistication of cybercriminals and underscores the imperative need for rigorous cybersecurity measures, especially in sensitive data handling and transfer mechanisms.
Date Detected: March 2024
Type: Ransomware
Attack Vector: Vulnerability exploitation in MOVEit file transfer software
Vulnerability Exploited: MOVEit file transfer software vulnerability
Threat Actor: The Shadow Legion
Motivation: Financial gain
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.
Identification of Attack Vectors: The company identifies the attack vectors used in incidents through MOVEit file transfer software vulnerability.

Financial Loss: Considerable
Data Compromised: Proprietary technology blueprints, Confidential financial reports, Personal employee information
Systems Affected: MOVEit file transfer software
Downtime: Two weeks
Operational Impact: Operations brought to a standstill
Brand Reputation Impact: Considerable damage
Identity Theft Risk: High
Average Financial Loss: The average financial loss per incident is $0.00.
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Proprietary Technology Blueprints, Confidential Financial Reports, Personal Employee Information and .

Type of Data Compromised: Proprietary technology blueprints, Confidential financial reports, Personal employee information
Sensitivity of Data: High
Personally Identifiable Information: Personal employee information

Ransom Demanded: Significant
Data Encryption: Encrypted critical business data

Lessons Learned: The attack highlights the growing sophistication of cybercriminals and underscores the imperative need for rigorous cybersecurity measures, especially in sensitive data handling and transfer mechanisms.
Key Lessons Learned: The key lessons learned from past incidents are The attack highlights the growing sophistication of cybercriminals and underscores the imperative need for rigorous cybersecurity measures, especially in sensitive data handling and transfer mechanisms.

Entry Point: MOVEit file transfer software vulnerability
Last Ransom Demanded: The amount of the last ransom demanded was Significant.
Last Attacking Group: The attacking group in the last incident was an The Shadow Legion.
Most Recent Incident Detected: The most recent incident detected was on March 2024.
Highest Financial Loss: The highest financial loss from an incident was Considerable.
Most Significant Data Compromised: The most significant data compromised in an incident were Proprietary technology blueprints, Confidential financial reports, Personal employee information and .
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Confidential financial reports, Personal employee information and Proprietary technology blueprints.
Highest Ransom Demanded: The highest ransom demanded in a ransomware incident was Significant.
Most Significant Lesson Learned: The most significant lesson learned from past incidents was The attack highlights the growing sophistication of cybercriminals and underscores the imperative need for rigorous cybersecurity measures, especially in sensitive data handling and transfer mechanisms.
Most Recent Entry Point: The most recent entry point used by an initial access broker was an MOVEit file transfer software vulnerability.
.png)
A weakness has been identified in codingWithElias School Management System up to f1ac334bfd89ae9067cc14dea12ec6ff3f078c01. Affected is an unknown function of the file /student-view.php of the component Edit Student Info Page. This manipulation of the argument First Name causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be exploited. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. Other parameters might be affected as well. The vendor was contacted early about this disclosure but did not respond in any way.
By providing a command-line argument starting with a semi-colon ; to an API endpoint created by the EnhancedCommandExecutor class of the HexStrike AI MCP server, the resultant composed command is executed directly in the context of the MCP server’s normal privilege; typically, this is root. There is no attempt to sanitize these arguments in the default configuration of this MCP server at the affected version (as of commit 2f3a5512 in September of 2025).
A weakness has been identified in winston-dsouza Ecommerce-Website up to 87734c043269baac0b4cfe9664784462138b1b2e. Affected by this issue is some unknown functionality of the file /includes/header_menu.php of the component GET Parameter Handler. Executing manipulation of the argument Error can lead to cross site scripting. The attack can be executed remotely. The exploit has been made available to the public and could be exploited. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. The vendor was contacted early about this disclosure but did not respond in any way.
A security flaw has been discovered in Qualitor 8.20/8.24. Affected by this vulnerability is the function eval of the file /html/st/stdeslocamento/request/getResumo.php. Performing manipulation of the argument passageiros results in code injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability was identified in Scada-LTS up to 2.7.8.1. Affected is the function Common.getHomeDir of the file br/org/scadabr/vo/exporter/ZIPProjectManager.java of the component Project Import. Such manipulation leads to path traversal. The attack may be launched remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.