Company Details
harris-corporation
7,622
141,698
336414
harris.com
54
HAR_1191333
Completed

Harris Corporation Company CyberSecurity Posture
harris.comAt Harris, our shared set of values, skills and experience have shaped some of the most remarkable communications technologies and cutting-edge innovations in the world. A company is only as forward thinking as its employees. We encourage collaboration and creative problem-solving; your individual potential is endless. Harris Corporation is a leading technology innovator, solving customers’ toughest mission-critical challenges by providing solutions that connect, inform and protect. Harris supports customers in about 100 countries and has approximately $6 billion in annual revenue. The company is organized into three business segments: Communication Systems, Electronic Systems and Space and Intelligence Systems. Learn more at harris.com.
Company Details
harris-corporation
7,622
141,698
336414
harris.com
54
HAR_1191333
Completed
Between 700 and 749

Harris Corporation Global Score (TPRM)XXXX

Description: During the Democratic National Convention in Chicago, WIRED investigated reports of IMSI catchers or Stingrays—developed by Harris Corporation—being used for surveillance. Although no evidence of Stingray deployment was found, the investigation uncovered vulnerabilities in the tracking of devices. The presence of numerous devices emitting signals, including law enforcement technology, highlighted the potential for tracking both protesters and police. Despite the undertaking of stringent security measures, the lack of confirmed use of IMSI catchers suggests no direct financial or reputation impact on Harris Corporation itself.
Description: During the Democratic National Convention, extensive security measures were taken due to protests against Israel's actions in Gaza. WIRED investigated the use of cell site simulators, devices that can intercept mobile phone signals by mimicking cell towers, fearing they would be used against activists. Although no evidence of such simulators was found at the DNC, the investigation highlighted vulnerabilities as many devices, including police technology, emitted signals that could be tracked. This presents risks for both law enforcement and protesters in politically charged environments.


No incidents recorded for Harris Corporation in 2025.
No incidents recorded for Harris Corporation in 2025.
No incidents recorded for Harris Corporation in 2025.
Harris Corporation cyber incidents detection timeline including parent company and subsidiaries

At Harris, our shared set of values, skills and experience have shaped some of the most remarkable communications technologies and cutting-edge innovations in the world. A company is only as forward thinking as its employees. We encourage collaboration and creative problem-solving; your individual potential is endless. Harris Corporation is a leading technology innovator, solving customers’ toughest mission-critical challenges by providing solutions that connect, inform and protect. Harris supports customers in about 100 countries and has approximately $6 billion in annual revenue. The company is organized into three business segments: Communication Systems, Electronic Systems and Space and Intelligence Systems. Learn more at harris.com.


With headquarters in New York City and approximately 31,000 employees worldwide, L3 develops advanced defense technologies and commercial solutions in pilot training, aviation security, night vision and EO/IR, weapons, maritime systems and space. The company reported 2018 sales of $10.2 billion. To
As an integrated technology group, the listed company Rheinmetall AG, headquartered in Düsseldorf, stands for a company that is as strong in substance as it is successful internationally, and that is active in various markets with an innovative range of products and services. Rheinmetall is a leadin

The mission of the United States Air Force is to fly, fight and win … in air, space and cyberspace. To achieve that mission, the Air Force has a vision of Global Vigilance, Reach and Power. That vision orbits around three core competencies: developing Airmen, technology to war fighting and integr

We are NAVSEA. The Force Behind the Fleet. Join us and become part of a mission-driven team, at one of the best places to work in the federal government. This NAVSEA LinkedIn page is all about connecting with talented individuals ready to make a difference through a rewarding career with us. We shar
At BAE Systems, we help our customers to stay a step ahead when protecting people and national security, critical infrastructure and vital information. We provide some of the world’s most advanced, technology-led defence, aerospace and security solutions and employ a skilled workforce of 107,000 peo

From Gulfstream business jets and combat vehicles to nuclear-powered submarines and communications systems, people around the world depend on our products and services for their safety and security. General Dynamics is headquartered in Reston, Virginia, and employs over 100,000 people in 43 countri
As a leading defence and security company, we offer solutions that range from the depths of the oceans to high in the sky, on land and in cyberspace, to keep people and society safe. Empowered by our 22,000 talented people, we constantly push the boundaries of technology to create a safer, more sus

The Republic of Korea Air Force (ROKAF; Korean: 대한민국 공군; Hanja: 大韓民國 空軍; Revised Romanization: Daehanminguk Gong-gun), also known as the ROK Air Force, is the aerial warfare service branch of South Korea, operating under the South Korean Ministry of National Defense. The ROKAF has about 450 combat
Amentum is a global leader in advanced engineering and innovative technology solutions, trusted by the United States and its allies to address their most significant and complex challenges in science, security and sustainability. Our people apply undaunted curiosity, relentless ambition and boundles
.png)
Hacker's Movie Guide” with Foreword by Steve Wozniak, co-founder of Apple.
Peter Williams sold eight exploits to a Russian zero-day broker by smuggling them from his employer's highly secured air-gapped network.
Check Point Software Technologies has new partnerships to deliver cyber protection technology to Harris Blitzer Sports & Entertainment...
Check Point Software Technologies (NASDAQ: CHKP) announced a new multi-year partnership with Harris Blitzer Sports & Entertainment and the...
Washington Commanders, Philadelphia 76ers, New Jersey Devils will implement Check Point technologies to advance cyber protection at stadiums...
Check Point Software announces partnership with HBSE and Washington Commanders for enhanced cybersecurity across major sports properties.
New York State Department of Financial Services (DFS) Superintendent Adrienne A. Harris has collected more than $19 million in penalties for...
The New York State Department of Financial Services (NYDFS) wants financial firms to step up their game when it comes to third parties and...
The NYDFS's guidance comes as organizations become more dependent on third-party providers, and cyberattacks continue to grow.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Harris Corporation is http://www.harris.com.
According to Rankiteo, Harris Corporation’s AI-generated cybersecurity score is 727, reflecting their Moderate security posture.
According to Rankiteo, Harris Corporation currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Harris Corporation is not certified under SOC 2 Type 1.
According to Rankiteo, Harris Corporation does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Harris Corporation is not listed as GDPR compliant.
According to Rankiteo, Harris Corporation does not currently maintain PCI DSS compliance.
According to Rankiteo, Harris Corporation is not compliant with HIPAA regulations.
According to Rankiteo,Harris Corporation is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Harris Corporation operates primarily in the Defense and Space Manufacturing industry.
Harris Corporation employs approximately 7,622 people worldwide.
Harris Corporation presently has no subsidiaries across any sectors.
Harris Corporation’s official LinkedIn profile has approximately 141,698 followers.
Harris Corporation is classified under the NAICS code 336414, which corresponds to Guided Missile and Space Vehicle Manufacturing.
Yes, Harris Corporation has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/harris.
Yes, Harris Corporation maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/harris-corporation.
As of November 30, 2025, Rankiteo reports that Harris Corporation has experienced 2 cybersecurity incidents.
Harris Corporation has an estimated 2,242 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Vulnerability and Breach.
Total Financial Loss: The total financial loss from these incidents is estimated to be $0.
Title: Potential Use of Cell Site Simulators During Democratic National Convention
Description: During the Democratic National Convention, extensive security measures were taken due to protests against Israel's actions in Gaza. WIRED investigated the use of cell site simulators, devices that can intercept mobile phone signals by mimicking cell towers, fearing they would be used against activists. Although no evidence of such simulators was found at the DNC, the investigation highlighted vulnerabilities as many devices, including police technology, emitted signals that could be tracked. This presents risks for both law enforcement and protesters in politically charged environments.
Type: Surveillance Risk
Attack Vector: Cell Site Simulators
Vulnerability Exploited: Mobile Phone Signals
Motivation: Surveillance
Title: Investigation of IMSI Catchers During Democratic National Convention
Description: During the Democratic National Convention in Chicago, WIRED investigated reports of IMSI catchers or Stingrays—developed by Harris Corporation—being used for surveillance. Although no evidence of Stingray deployment was found, the investigation uncovered vulnerabilities in the tracking of devices. The presence of numerous devices emitting signals, including law enforcement technology, highlighted the potential for tracking both protesters and police. Despite the undertaking of stringent security measures, the lack of confirmed use of IMSI catchers suggests no direct financial or reputation impact on Harris Corporation itself.
Type: Surveillance Investigation
Attack Vector: IMSI Catchers (Stingrays)
Vulnerability Exploited: Device Tracking Vulnerabilities
Motivation: Surveillance
Common Attack Types: The most common types of attacks the company has faced is Breach.

Financial Loss: None
Data Compromised: None
Systems Affected: None
Downtime: None
Operational Impact: None
Revenue Loss: None
Brand Reputation Impact: None
Average Financial Loss: The average financial loss per incident is $0.00.

Entity Name: Democratic National Convention
Entity Type: Political Event
Industry: Politics
Location: United States

Entity Name: Harris Corporation
Entity Type: Corporation
Industry: Technology
Location: Melbourne, Florida

Source: WIRED

Source: WIRED
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: WIRED, and Source: WIRED.

Investigation Status: No evidence of cell site simulators found

Investigation Status: Resolved
Highest Financial Loss: The highest financial loss from an incident was None.
Most Significant Data Compromised: The most significant data compromised in an incident was None.
Most Sensitive Data Compromised: The most sensitive data compromised in a breach was None.
Most Recent Source: The most recent source of information about an incident is WIRED.
Current Status of Most Recent Investigation: The current status of the most recent investigation is No evidence of cell site simulators found.
.png)
A vulnerability was determined in motogadget mo.lock Ignition Lock up to 20251125. Affected by this vulnerability is an unknown functionality of the component NFC Handler. Executing manipulation can lead to use of hard-coded cryptographic key . The physical device can be targeted for the attack. A high complexity level is associated with this attack. The exploitation appears to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.
OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the interview attachment retrieval endpoint in the Recruitment module serves files based solely on an authenticated session and user-supplied identifiers, without verifying whether the requester has permission to access the associated interview record. Because the server does not perform any recruitment-level authorization checks, an ESS-level user with no access to recruitment workflows can directly request interview attachment URLs and receive the corresponding files. This exposes confidential interview documents—including candidate CVs, evaluations, and supporting files—to unauthorized users. The issue arises from relying on predictable object identifiers and session presence rather than validating the user’s association with the relevant recruitment process. This issue has been patched in version 5.8.
OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the application’s recruitment attachment retrieval endpoint does not enforce the required authorization checks before serving candidate files. Even users restricted to ESS-level access, who have no permission to view the Recruitment module, can directly access candidate attachment URLs. When an authenticated request is made to the attachment endpoint, the system validates the session but does not confirm that the requesting user has the necessary recruitment permissions. As a result, any authenticated user can download CVs and other uploaded documents for arbitrary candidates by issuing direct requests to the attachment endpoint, leading to unauthorized exposure of sensitive applicant data. This issue has been patched in version 5.8.
OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the application does not invalidate existing sessions when a user is disabled or when a password change occurs, allowing active session cookies to remain valid indefinitely. As a result, a disabled user, or an attacker using a compromised account, can continue to access protected pages and perform operations as long as a prior session remains active. Because the server performs no session revocation or session-store cleanup during these critical state changes, disabling an account or updating credentials has no effect on already-established sessions. This makes administrative disable actions ineffective and allows unauthorized users to retain full access even after an account is closed or a password is reset, exposing the system to prolonged unauthorized use and significantly increasing the impact of account takeover scenarios. This issue has been patched in version 5.8.
OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the password reset workflow does not enforce that the username submitted in the final reset request matches the account for which the reset process was originally initiated. After obtaining a valid reset link for any account they can receive email for, an attacker can alter the username parameter in the final reset request to target a different user. Because the system accepts the supplied username without verification, the attacker can set a new password for any chosen account, including privileged accounts, resulting in full account takeover. This issue has been patched in version 5.8.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.