HDFC Life A.I CyberSecurity Scoring
04/09/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for HDFC Life in 2026.
No incidents recorded for HDFC Life in 2026.
No incidents recorded for HDFC Life in 2026.
Insurance
Star Health & Allied Insurance Co. Ltd. is an Indian health insurance company headquartered in Chennai. They began their operations in 2006 as India's first standalone Health Insurance provider. They offer innovative products in the health, personal accident and overseas & domestic travel insurance. With meticulously crafted insurance policies, Star Health addresses the unique health needs of people. Having covered more than 16.9 crore lives till now, the company is scaling up its services to ensure that all lives are covered under Health Insurance. Star Health is keen on providing timely assistance during emergency times. In that regard, they have a dedicated in-house claim settlement team to settle claims swiftly. They have an excellent track record of settling more than Rs. 4 crores as claim amount every hour. Star Health has been offering cashless treatment facilities in its 14,000+ Network Hospitals spread across the country and ensures the quality of healthcare services to its customers. With lakhs of agents serving the customers and driving the business on a huge scale, Star Health also operates through other channels including digital, brokers, etc., to cater to the needs of all sections of society. Star Health is also leading the bancassurance and has a long-standing partnership with numerous Banks. Star Health places a huge emphasis on customer experience and service. They have 24x7 multilingual call centre support and dedicated claims assistance. They also offer free Telehealth consultations with their expert team of in-house doctors, along with a free second medical opinion if necessary. In this digitally driven world, Star Health has adapted to the current trend by digitally transforming itself with innovative technologies to guarantee the quality of service, ease of access and seamless user experience for all its customers. Currently, Star Health has 14,000+ employees, 800+ branch offices and 5.8 Lakh agents all over India.
Assurant is a leading global business services company that supports, protects, and connects major consumer purchases. A Fortune 500 company with a presence in 21 countries, Assurant supports the advancement of the connected world by partnering with the world’s leading brands to develop innovative solutions and deliver an enhanced customer experience through mobile device solutions, extended service contracts, vehicle protection services, renters insurance, lender-placed insurance products, and other specialty products. Thank you for visiting Assurant’s LinkedIn community. Before posting, please review our guidelines at https://www.assurant.com/social-community-guidelines.
IAG is Australia and New Zealand's largest general insurance company with a purpose to make your world a safer place, whether you are a customer, partner, employee, shareholder or part of the communities IAG serves across Australia and New Zealand. Our businesses have helped people recover from natural disasters, accidents and loss since 1851. In Australia and New Zealand we provide insurance under many leading brands, including NRMA Insurance, CGU, SGIO, SGIC and WFI; and NZI, State, AMI and Lumley Insurance (New Zealand). We also have interests in general insurance joint ventures in Malaysia and India. Increasingly, we see our role extending beyond paying claims to increasing awareness of risk, and helping communities reduce and prevent risk. We believe it is our responsibility as an industry leader to use our influence and role as a major investor, purchaser and employer for the good of everyone. For further information please visit www.iag.com.au.
The Life Insurance Corporation of India (LIC) is a state-owned Life Insurance Company of India. Founded in 1956, it operates as a Government-Owned Corporation, headquartered in Mumbai, Maharashtra, and is a key player in the life insurance sector in India. LIC offers a wide range of insurance products to cater to different needs of individuals, including Life Insurance, Health Insurance, Pension Plans, ULIPs, Group Schemes and Micro Insurance. We have a vast network of agents and branches across the country and overseas, making it accessible to a large section of the nation's residential and non residential population.
Gallagher, a global insurance brokerage, risk management, and consulting firm, serves communities around the globe, helping clients address risk, protecting assets, and recovering from losses. The products and services we provide keep businesses and institutions running, and enable individuals and families to face their future with confidence. Gallagher provides retail and wholesale property and casualty brokerage, alternative risk transfer services, employee benefit consulting, and actuarial services. Gallagher also offers claims and information management, risk control consulting and appraisal services, human resource consulting, and retirement services. Follow us on social: Instagram: http://instagram.com/gallagherglobal Facebook: http://www.facebook.com/GallagherGlobal Twitter: https://twitter.com/GallagherGlobal YouTube: https://www.youtube.com/GallagherGlobal
SBI Life Insurance (‘SBI Life’ / ‘The Company’), one of the most trusted life insurance companies in India, was incorporated in October 2000 & is registered with the Insurance Regulatory & Development Authority of India (IRDAI) in March 2001. Serving millions of families across India, SBI Life’s diverse range of products caters to individuals as well as group customers through Protection, Pension, Savings & Health solutions. Driven by ‘Customer-First’ approach, SBI Life places great emphasis on maintaining world-class operating efficiency & providing hassle-free claim settlement experience to its customers by following high ethical standards of service. Additionally, SBI Life is committed to enhance digital experiences for its customers, distributors & employees alike. SBI Life strives to make insurance accessible to all, with its extensive presence across the country through its 1,154 offices, 28,534 employees, a large & productive network of about 268,792 agents, 73 corporate agents & 9 bancassurance partners with more than 40,000 partner branches, 149 brokers & other insurance marketing firms. In addition to doing what’s right for the customers, the company is also committed to provide a healthy & flexible work environment for its employees to excel personally & professionally. SBI Life strongly encourages a culture of giving back to the society & has made substantial contribution in the areas of child education, healthcare, disaster relief & environmental upgrade. In 2024-25, the Company touched over 53,000 direct beneficiaries through various CSR interventions. Listed on the Bombay Stock Exchange ('BSE') & the National Stock Exchange ('NSE'), the company has an authorized capital of Rs. 20.0 billion & a paid-up capital of Rs. 10.0 billion. The AuM is Rs. 4,814.6 billion. For more information, please visit our website-www.sbilife.co.in (Numbers & data mentioned above are for the period ended September 30, 2025)
Manulife is a leading international financial services group that helps people make their decisions easier and lives better. With our global headquarters in Toronto, we operate as Manulife across our offices in Canada, Asia, and Europe, and primarily as John Hancock in the United States. We have more than 40,000 employees, over 116,000 agents serving ~34 million customers worldwide, and over $1.3 trillion in assets under management and administration. Visit www.Manulife.com to find out more. For Manulife terms of use, please visit http://bit.ly/SM_Terms
At Anthem Blue Cross and Blue Shield we understand our health connects us to each other. What we all do impacts those around us. So Anthem is dedicated to delivering better care to our members, providing greater value to our customers and helping improve the health of our communities. Independent licensees of the Blue Cross and Blue Shield Association. ANTHEM is a registered trademark of Anthem Insurance Companies, Inc. Products vary by state. Learn more about our plans and legal information at www.anthem.com
ICICI Lombard is one of the leading private general insurance company in the country. The Company offers a well-diversified range of products through multiple distribution channels, including motor, health, crop, fire, personal accident, marine, engineering, and liability insurance. With a legacy of over 2 decades, ICICI Lombard is committed to customer centricity with its brand philosophy of ‘Nibhaye Vaade’. The company has issued over 37.6 million policies, over 3.2 million claims processed and has a Gross Written Premium (GWP) of ₹282.58 billion for the year ended March 31, 2025. ICICI Lombard has 328 branches and 15,123 employees, as on March 31, 2025. ICICI Lombard has been a pioneer in the industry and is one of the first large-scale insurance company in India to migrate its entire core systems to the cloud. With a strong focus on being digital-led and agile, it has launched several tech-driven innovations — including one of the industry-first Face Scan feature on its signature insurance and wellness app, IL TakeCare, which has received over 16.6 million downloads, as on June 30, 2025. * The company has won several prestigious awards- including the Insurance Asia, ICC Emerging Asia Insurance, ET BFSI Exceller, ET CIO, ICAI, FICCI Insurance, Contact Center World Global, and CSR Times in recognition of its various initiatives. For more details log on to https://www.icicilombard.com/. You can also connect with us via IL TakeCare App | RIA WhatsApp: 7738282666 *As per public disclosure.
Latest updates, reports, and threat intel affecting the global network.
PNN. Mumbai (Maharashtra) [India], March 11: Dev Information Technology Limited,(NSE - DEVIT, BSE - 543462 | INE060X01034),...
New Delhi, March 11 The Unique Identification Authority of India on Wednesday launched structured Bug Bounty Programme to further strengthen...
Vibha Padalkar, Managing Director and Chief Executive Officer of HDFC Life, and Shaji Varghese, Chief Executive Officer of Muthoot FinCorp...
The acting head of the US cyber defense agency uploaded sensitive contracting records to ChatGPT, triggering security alerts.
Finance Minister Nirmala Sitharaman on Tuesday introduced the Insurance Laws (Amendment) Bill, 2025, called 'Sabka Bima Sabki Raksha',...
Special recognitions were awarded to Richa Hukumchand of Pramatra Space Technology and Gouthami T S of Aquaairx Autonomous Systems.
The Bombay High Court has granted urgent ad-interim relief to Generali Central Life Insurance Company after the insurer reportedly suffered...
Zerodha's Nithin Kamath experienced an X account breach due to a phishing email, even with 2FA enabled. He called for a holistic approach to...
Q2 results: Oil refinery Mangalore Refinery and Petrochemicals, stockbroker Angel One, concrete maker Nuvoco Vistas Corporation, media conglomerate Network...
A flaw was found in DPDK lib/vhost. Missing length validation before reading command_data in the virtio-net control-queue handler can cause an out-of-bounds read and a host process crash.
Maravel, a PHP framework oriented towards dependency injection, prior to version 10.74.0 has a high-severity Token Replay Vulnerability arising from a structural lifecycle mismatch between stateless token validation engines and high-performance relational caching layers. Any application with low cache memory that causes premature eviction to free up memory and applications running macropay-solutions/maravel-framework that utilize tymon/jwt-auth for API token authentication and blacklist management or any other package that does the same may be affected. This architectural risk might also impact native Laravel applications utilizing cache tags under specific volatile or eviction-capped environments. tymon/jwt-auth automatically probes for cache tag support. If found, it forcefully wraps 14-day token blacklist entries (jti) inside a relational tymon.jwt tag. In environments where the O(1) Atomic Lazy Eviction model is active — either natively inside Maravel-Framework v20.x or manually backported into v10.x via the explicit DI container singletons provided in PR #104 (App\Cache\TaggedCache and App\Cache\TagSet) — a strict global tracking ceiling (Container::TAGGED_CACHE_TTL_CAP_SECONDS) of 7,200 seconds (2 hours) is enforced to secure the system against memory index bloat. This ceiling forcefully truncates the 14-day blacklist lifespan down to a maximum of 2 hours, after which individual tracking keys naturally expire and disappear from the active cache window. Furthermore, because the optimized engine implements a generational version matrix to achieve O(1) flush speeds, any programmatic or manual invocation of a tag flush or reset (e.g., Cache::tags([...])->flush()) instantly bumps the internal atomic master version pointer. This shifts the computed cryptographic composite hash (sha1($this->tags->getNamespace())) for all overlapping components, rendering the entire existing index immediately unreachable. Consequently, through either natural 2-hour expiration or an intervening tag flush execution (like the cache naturally cleaning old values to free up memory), the invalidation state records are entirely wiped out. Because the tokens' physical cryptographic signatures remain structurally valid for up to 14 days, stolen, hijacked, or legitimately logged-out tokens are instantly and silently resurrected across the entire API gateway, leaving the application critically vulnerable to widespread Token Replay Attacks. Because this issue is caused by an upstream architectural assumption within the tymon/jwt-auth package rather than a core defect inside the framework, there is no direct framework version upgrade that can safely bypass this lifecycle collision without breaking business cache recycling bounds. Maravel version 10.74.0 introduced a way to backport the new fixed tagged cache from 20.x into 10.x by resolving TagSet and TaggedCache from DI, which is how this latent architectural lifecycle vulnerability was discovered. Users must apply the decoupled configuration workaround outlined below. As a workaround, make sure that cache memory size does not generate early natural evictions from cache to free up space, deleting blacklisted jwt ids before they expire. Applications must decouple flat authentication vectors from the relational tagging subsystem. This forces token identifiers to write directly to the primary cache keyspace as flat, un-tagged key-value pairs where they securely retain their unclipped 14-day lifecycle.
Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2.2.6, the `GET /api/v2/shop/payment-requests/{hash}` and `PUT /api/v2/shop/payment-requests/{hash}` endpoints look up the payment request solely by the hash from the URL. No ownership check is performed against the authenticated customer or the underlying order. An attacker who obtains a payment request hash can read the payment request and, through the `payment` IRI in the response, recover the underlying order's `tokenValue` (which itself grants access to the full order, items, addresses, customer email, totals); and/or update the payment request payload (e.g. `target_path`, `after_path`). These fields are used by the front-end controller to redirect the user after the payment, so an attacker can flip them to an attacker-controlled URL and intercept the buyer. The hash is a UUID, so it has to be obtained out-of-band (logs, shared links, referrer headers, a co-located client), but once it is known no other credential is required, neither authentication nor knowledge of the order token. The creation endpoint `POST /api/v2/shop/orders/{tokenValue}/payment-requests` shares the same flaw: it resolves the target order solely from the `tokenValue` in the URL without verifying that the caller owns the order. The issue is fixed in versions 2.0.18, 2.1.15, and 2.2.6. As a workaround, add a query extension that filters the `GET` operation; decorate the `PUT` state provider, guard the `POST` creation endpoint with a command-bus middleware, and wire the services.
Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2.2.6, an authorization bypass vulnerability exists in the shop account API. The `PATCH /api/v2/shop/account/orders/{tokenValue}/payments/{paymentId}` endpoint, used by an authenticated shop customer to change the payment method of an order that has been placed but not yet paid (state `STATE_NEW`), does not validate that the chosen payment method is enabled for the order's channel. The equivalent checkout endpoint (`PATCH /api/v2/shop/orders/{tokenValue}/payments/{paymentId}`) correctly rejects out-of-channel payment methods with `HTTP 422`; the account endpoint silently accepts them and returns `HTTP 200`. An authenticated customer can therefore assign any globally enabled payment method to their own placed order, including methods that the store operator has explicitly excluded from that channel. The issue is fixed in versions: 2.0.18, 2.1.15, 2.2.6 and above. As a workaround, decorate the `Sylius\Bundle\ApiBundle\Changer\PaymentMethodChangerInterface` service in the application.
Sylius is an Open Source eCommerce Framework on Symfony. Versions 2.0.0 through 2.0.17, 2.1.0 through 2.1.14, and 2.2.0 through 2.2.5 contain an improper workflow enforcement vulnerability in the cart `FormComponent`. When an order is completed while its cart page remains open, the stale LiveComponent does not detect the order’s changed state and continues to permit cart actions, allowing an authenticated customer to modify or permanently delete an already completed order. Versions 2.0.18, 2.1.15, and 2.2.6 contain a patch. As a workaround, deployments can copy the patched `FormComponent` into the application's `src/` directory and override the `sylius_shop.twig.component.cart.form` service definition to use that class.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.