Comparison Overview

Green Thumb Industries (GTI)

VS

Absolute Terps

Green Thumb Industries (GTI)

325 W Huron St, Chicago, Illinois, undefined, US
Last Update: 2025-03-04 (UTC)
Between 900 and 1000

Excellent

Green Thumb Industries Inc. (โ€œGreen Thumbโ€), a national cannabis consumer packaged goods company and retailer, promotes well-being through the power of cannabis while giving back to the communities in which it serves. Green Thumb manufactures and distributes a portfolio of branded cannabis products including Beboe, Dogwalkers, Doctor Solomonโ€™s, Good Green, incredibles and RYTHM. The company also owns and operates rapidly growing national retail cannabis stores called RISE. Headquartered in Chicago, Illinois, Green Thumb has 20 manufacturing facilities, over 100+ open retail locations and operations across 14 U.S. markets. Established in 2014, Green Thumb employs approximately 4,800 people and serves millions of patients and customers each year. The company was named to Crainโ€™s Chicago Business, Fast 50 list in 2021, 2022, 2023 and a Best Workplace by MG Retailer magazine in 2018, 2019 and 2021. More information is available at www.GTIgrows.com.

NAICS: 621399
NAICS Definition: Offices of All Other Miscellaneous Health Practitioners
Employees: 2,101
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Absolute Terps

Denver, US
Last Update: 2025-03-16 (UTC)

Excellent

Between 900 and 1000

We are a wholesale Medical Marijuana MIPS in the state of Colorado. Where professionalism and dedication coincide, we are dedicated to the patients and changing the country. Filling the void for clean and safe medicine while focusing on ethics. We are one of the top extraction companies in the world. Providing the best quality extracts. At Absolute Terps, innovation and quality have equally matched, we strive to provide the best medicine for our patients.

NAICS: 621
NAICS Definition:
Employees: 1 employee
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/gtigrows.jpeg
Green Thumb Industries (GTI)
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/absolute-terps.jpeg
Absolute Terps
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
Green Thumb Industries (GTI)
100%
Compliance Rate
0/4 Standards Verified
Absolute Terps
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Alternative Medicine Industry Average (This Year)

No incidents recorded for Green Thumb Industries (GTI) in 2025.

Incidents vs Alternative Medicine Industry Average (This Year)

No incidents recorded for Absolute Terps in 2025.

Incident History โ€” Green Thumb Industries (GTI) (X = Date, Y = Severity)

Green Thumb Industries (GTI) cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” Absolute Terps (X = Date, Y = Severity)

Absolute Terps cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/gtigrows.jpeg
Green Thumb Industries (GTI)
Incidents

No Incident

https://images.rankiteo.com/companyimages/absolute-terps.jpeg
Absolute Terps
Incidents

No Incident

FAQ

Both Green Thumb Industries (GTI) company and Absolute Terps company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

Historically, Absolute Terps company has disclosed a higher number of cyber incidents compared to Green Thumb Industries (GTI) company.

In the current year, Absolute Terps company and Green Thumb Industries (GTI) company have not reported any cyber incidents.

Neither Absolute Terps company nor Green Thumb Industries (GTI) company has reported experiencing a ransomware attack publicly.

Neither Absolute Terps company nor Green Thumb Industries (GTI) company has reported experiencing a data breach publicly.

Neither Absolute Terps company nor Green Thumb Industries (GTI) company has reported experiencing targeted cyberattacks publicly.

Neither Green Thumb Industries (GTI) company nor Absolute Terps company has reported experiencing or disclosing vulnerabilities publicly.

Neither Green Thumb Industries (GTI) company nor Absolute Terps company has publicly disclosed detailed information about the number of their subsidiaries.

Green Thumb Industries (GTI) company employs more people globally than Absolute Terps company, reflecting its scale as a Alternative Medicine.

Latest Global CVEs (Not Company-Specific)

Description

Improper Protection Against Voltage and Clock Glitches in FPGA devices, could allow an attacker with physical access to undervolt the platform resulting in a loss of confidentiality.

Risk Information
cvss4
Base: 8.6
Severity: LOW
CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Malicious code was inserted into the Nx (build system) package and several related plugins. The tampered package was published to the npm software registry, via a supply-chain attack. Affected versions contain code that scans the file system, collects credentials, and posts them to GitHub as a repo under user's accounts.

Risk Information
cvss3
Base: 9.6
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Description

Flag Forge is a Capture The Flag (CTF) platform. In versions from 2.1.0 to before 2.3.0, the API endpoint GET /api/problems/:id returns challenge hints in plaintext within the question object, regardless of whether the user has unlocked them via point deduction. Users can view all hints for free, undermining the business logic of the platform and reducing the integrity of the challenge system. This issue has been patched in version 2.3.0.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Description

Flag Forge is a Capture The Flag (CTF) platform. In version 2.1.0, the /api/admin/assign-badge endpoint lacks proper access control, allowing any authenticated user to assign high-privilege badges (e.g., Staff) to themselves. This could lead to privilege escalation and impersonation of administrative roles. This issue has been patched in version 2.2.0.

Risk Information
cvss3
Base: 8.2
Severity: LOW
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
Description

parse is a package designed to parse JavaScript SDK. A Prototype Pollution vulnerability in the SingleInstanceStateController.initializeState function of parse version 5.3.0 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.