IAG A.I CyberSecurity Scoring
04/09/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for IAG in 2026.
No incidents recorded for IAG in 2026.
No incidents recorded for IAG in 2026.
USI is one of the largest insurance brokerage and consulting firms in the world, delivering property and casualty, employee benefits, personal risk, program and retirement solutions to large risk management clients, middle market companies, smaller firms and individuals. Headquartered in Valhalla, New York, USI connects more than 10,500 industry-leading professionals across approximately 200 offices to serve clients’ local, national and international needs. USI has become a premier insurance brokerage and consulting firm by leveraging the USI ONE Advantage®, an interactive platform that integrates proprietary and innovative client solutions, networked local resources and enterprise-wide collaboration to deliver customized results with positive, bottom-line impact. USI attracts best-in-class industry talent with a long history of deep and continuing investment in our local communities. For more information, visit usi.com.
Gallagher, a global insurance brokerage, risk management, and consulting firm, serves communities around the globe, helping clients address risk, protecting assets, and recovering from losses. The products and services we provide keep businesses and institutions running, and enable individuals and families to face their future with confidence. Gallagher provides retail and wholesale property and casualty brokerage, alternative risk transfer services, employee benefit consulting, and actuarial services. Gallagher also offers claims and information management, risk control consulting and appraisal services, human resource consulting, and retirement services. Follow us on social: Instagram: http://instagram.com/gallagherglobal Facebook: http://www.facebook.com/GallagherGlobal Twitter: https://twitter.com/GallagherGlobal YouTube: https://www.youtube.com/GallagherGlobal
💛 We're a leading Insurance, Wealth & Retirement business. 📣 Follow for #LifeAtAviva. Aviva is nothing without our people. Living up to our purpose to be with you today for a better tomorrow applies to those we work with just as much as it does to our customers. We want Aviva to be a place where people can be themselves, and we want our workforce to reflect the customers and communities we serve. This means offering market-leading benefits and challenging ourselves to do more to build a workplace – and society – that works for all. It takes you. It takes Aviva.
Vienna Insurance Group (VIG) is the leading insurance group in the entire Central and Eastern European (CEE) region. More than 50 insurance companies and pension funds in 30 countries form a Group with a long-standing tradition, strong brands and close customer relations. Around 30,000 employees in the VIG take care of the day-to-day needs of around 33 million customers. VIG shares have been listed on the Vienna Stock Exchange since 1994, on the Prague Stock Exchange since 2008 and on the Budapest Stock Exchange since 2022. The VIG Group has an A+ rating with a positive outlook by the internationally recognised rating agency Standard & Poor’s. VIG cooperates closely with the Erste Group, the largest retail bank in Central and Eastern Europe. VIG Social Media Netiquette: https://group.vig/en/social-media-netiquette/
Since our founding in 1848, Unum has been a leader in the employee benefits business through innovation, integrity and an unwavering commitment to our customers. This simple philosophy has guided us through America’s fledgling insurance landscape and helped us become an international leader in financial protection benefits, offering disability, life, accident, critical illness, dental, vision and stop-loss insurance; leave and absence management support and behavioral health services.
We live in a time of unprecedented change. A time when economies, regulations, and social safety nets are all in flux. Customers around the globe have told us they’re overwhelmed by the pace of change and are looking for a trusted partner to help them manage life’s twists and turns. MetLife is committed to being that partner. That’s why we’re transforming our business: Delivering greater value for the people we serve by becoming a simpler, more focused, and future-facing company. We’ll be introducing new ways to meet our customers’ evolving needs, with flexible products; simpler, more intuitive experiences and a range of new services. MetLife. Navigating life together. For customer service: https://www.metlife.com/support-and-manage/contact-us/ For social media notices: https://www.metlife.com/about-us/terms-and-conditions/social-media/ MetLife, Inc. (NYSE: MET), through its subsidiaries and affiliates (“MetLife”), is one of the world’s leading financial services companies, providing insurance, annuities, employee benefits and asset management to help its individual and institutional customers navigate their changing world. Founded in 1868, MetLife has operations in more than 40 markets globally and holds leading positions in the United States, Japan, Latin America, Asia, Europe and the Middle East.
Bajaj Life Insurance is among the fastest-growing life insurance companies in India, offering a wide range of plans, from ULIPs and term insurance to retirement and child policies, helping you secure your future and achieve your life goals. With over 3.85 crore policyholders, an AUM of ₹1.3 Lakh Crores, a 99.29% claim settlement ratio, and a 343% solvency margin, we are committed to delivering financial protection, wealth creation, and peace of mind at every stage of life. Our Popular Life Insurance Products: ULIPs (Unit Linked Insurance Plans): Zero Allocation Charge ULIP designed for long-term wealth creation, with return of mortality charges. Term Insurance Plans: Includes India’s first Term Plan for Diabetics, offering affordable protection for all. SISO (Systematic In/Systematic Out): A smart investment approach for disciplined wealth building. Bajaj Life ACE: A flexible plan that lets you choose income options as per your financial needs. Bajaj Superwoman Term: A term protection solution specifically designed for women. Our extensive service on WhatsApp Conversational Platform ensures convenience and easy accessibility to our customer right at their fingertips. With a strong distribution network of 597 branches, over 1.62 lakh insurance consultants, and partnerships with India’s leading banks, Bajaj Life ensures easy access and customer-first service. We pride ourselves in creating a culture that fosters an innovative mindset and collaboration among our 25K+ employees who have made Bajaj Life a Great Place to Work for. Recent Accolades: 1. World’s Digital Insurance Award 2025 for Innovative Smart Assist Platform 2. Best Employer India by Kincentric, 2023, 2022, 2021 3. India’s No. 1 Top Riser Brand by Kantar BrandZ, 2022 Reach out to: 020-6712 1212| For complaints/queries: [email protected] To buy, call 18002094040 or Visit our website: https://www.bajajlifeinsurance.com
Nationwide, a Fortune 100 company based in Columbus, Ohio, is one of the largest and strongest diversified insurance and financial services organizations in the United States. Nationwide is rated A+ by Standard & Poor's. An industry leader in driving customer-focused innovation, Nationwide provides a full range of insurance and financial services products including auto, business, homeowners, farm and life insurance; public and private sector retirement plans, annuities and mutual funds; excess & surplus, specialty and surety; and pet, motorcycle and boat insurance. For more information, visit www.nationwide.com.
At Liberty Mutual, we believe progress happens when people feel secure. For more than 110 years we have helped people and businesses embrace today and confidently pursue tomorrow by providing protection for the unexpected and delivering it with care. A Fortune 100 company with more than 40,000 employees in 28 countries and economies, we are the ninth largest global property and casualty insurer and generate more than $50 billion in annual consolidated revenue. We operate through three strategic business units: US Retail Markets, providing auto, home, renters and other personal and small commercial lines property and casualty insurance to individuals and small businesses countrywide; Global Risk Solutions, delivering a full range of comprehensive commercial and specialty insurance, reinsurance and surety solutions to mid-size and large businesses worldwide; and Liberty Mutual Investments, deploying more than $100 billion of long-term capital globally across its integrated platform to drive economic growth, power innovation and secure Liberty Mutual’s promises. For more information, visit www.libertymutualinsurance.com.
Latest updates, reports, and threat intel affecting the global network.
Mumbai, March 27 (Udaipur Kiran): 3I Infotech is currently trading at Rs. 13.68, up by 0.11 points or 0.81% from its previous closing of Rs.
3i Infotech Limited announced that its US subsidiary, 3i Infotech Inc., USA, has secured a ₹1.26 crore work order from a leading US credit...
Cyber Magazine shines the spotlight on the Top 10: CISOs in the UK, the digital defenders protecting enterprises from advanced cyber attacks...
Gaming Laboratories International (GLI) has announced the launch of an all-new update to its GLIAccess customer portal, providing client...
Resemble AI, a Mountain View, CA-based platform that secures enterprise generative AI from creation to distribution, has raised $13 million...
The flag carrier of Spain, which carried a record 31.7 million passengers last year, has reassured customers that their banking details...
Customers of Iberia Airlines will need to be on high alert for phishing attacks after the carrier revealed personal information had been...
Leading global test lab GLI says it has integrated the world-class information system security (ISS) assessment solutions of its IT and...
Day 2 of the World Aviation Festival 2025 in Lisbon brought together some of the most influential voices in global aviation.
A flaw was found in DPDK lib/vhost. Missing length validation before reading command_data in the virtio-net control-queue handler can cause an out-of-bounds read and a host process crash.
Maravel, a PHP framework oriented towards dependency injection, prior to version 10.74.0 has a high-severity Token Replay Vulnerability arising from a structural lifecycle mismatch between stateless token validation engines and high-performance relational caching layers. Any application with low cache memory that causes premature eviction to free up memory and applications running macropay-solutions/maravel-framework that utilize tymon/jwt-auth for API token authentication and blacklist management or any other package that does the same may be affected. This architectural risk might also impact native Laravel applications utilizing cache tags under specific volatile or eviction-capped environments. tymon/jwt-auth automatically probes for cache tag support. If found, it forcefully wraps 14-day token blacklist entries (jti) inside a relational tymon.jwt tag. In environments where the O(1) Atomic Lazy Eviction model is active — either natively inside Maravel-Framework v20.x or manually backported into v10.x via the explicit DI container singletons provided in PR #104 (App\Cache\TaggedCache and App\Cache\TagSet) — a strict global tracking ceiling (Container::TAGGED_CACHE_TTL_CAP_SECONDS) of 7,200 seconds (2 hours) is enforced to secure the system against memory index bloat. This ceiling forcefully truncates the 14-day blacklist lifespan down to a maximum of 2 hours, after which individual tracking keys naturally expire and disappear from the active cache window. Furthermore, because the optimized engine implements a generational version matrix to achieve O(1) flush speeds, any programmatic or manual invocation of a tag flush or reset (e.g., Cache::tags([...])->flush()) instantly bumps the internal atomic master version pointer. This shifts the computed cryptographic composite hash (sha1($this->tags->getNamespace())) for all overlapping components, rendering the entire existing index immediately unreachable. Consequently, through either natural 2-hour expiration or an intervening tag flush execution (like the cache naturally cleaning old values to free up memory), the invalidation state records are entirely wiped out. Because the tokens' physical cryptographic signatures remain structurally valid for up to 14 days, stolen, hijacked, or legitimately logged-out tokens are instantly and silently resurrected across the entire API gateway, leaving the application critically vulnerable to widespread Token Replay Attacks. Because this issue is caused by an upstream architectural assumption within the tymon/jwt-auth package rather than a core defect inside the framework, there is no direct framework version upgrade that can safely bypass this lifecycle collision without breaking business cache recycling bounds. Maravel version 10.74.0 introduced a way to backport the new fixed tagged cache from 20.x into 10.x by resolving TagSet and TaggedCache from DI, which is how this latent architectural lifecycle vulnerability was discovered. Users must apply the decoupled configuration workaround outlined below. As a workaround, make sure that cache memory size does not generate early natural evictions from cache to free up space, deleting blacklisted jwt ids before they expire. Applications must decouple flat authentication vectors from the relational tagging subsystem. This forces token identifiers to write directly to the primary cache keyspace as flat, un-tagged key-value pairs where they securely retain their unclipped 14-day lifecycle.
Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2.2.6, the `GET /api/v2/shop/payment-requests/{hash}` and `PUT /api/v2/shop/payment-requests/{hash}` endpoints look up the payment request solely by the hash from the URL. No ownership check is performed against the authenticated customer or the underlying order. An attacker who obtains a payment request hash can read the payment request and, through the `payment` IRI in the response, recover the underlying order's `tokenValue` (which itself grants access to the full order, items, addresses, customer email, totals); and/or update the payment request payload (e.g. `target_path`, `after_path`). These fields are used by the front-end controller to redirect the user after the payment, so an attacker can flip them to an attacker-controlled URL and intercept the buyer. The hash is a UUID, so it has to be obtained out-of-band (logs, shared links, referrer headers, a co-located client), but once it is known no other credential is required, neither authentication nor knowledge of the order token. The creation endpoint `POST /api/v2/shop/orders/{tokenValue}/payment-requests` shares the same flaw: it resolves the target order solely from the `tokenValue` in the URL without verifying that the caller owns the order. The issue is fixed in versions 2.0.18, 2.1.15, and 2.2.6. As a workaround, add a query extension that filters the `GET` operation; decorate the `PUT` state provider, guard the `POST` creation endpoint with a command-bus middleware, and wire the services.
Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2.2.6, an authorization bypass vulnerability exists in the shop account API. The `PATCH /api/v2/shop/account/orders/{tokenValue}/payments/{paymentId}` endpoint, used by an authenticated shop customer to change the payment method of an order that has been placed but not yet paid (state `STATE_NEW`), does not validate that the chosen payment method is enabled for the order's channel. The equivalent checkout endpoint (`PATCH /api/v2/shop/orders/{tokenValue}/payments/{paymentId}`) correctly rejects out-of-channel payment methods with `HTTP 422`; the account endpoint silently accepts them and returns `HTTP 200`. An authenticated customer can therefore assign any globally enabled payment method to their own placed order, including methods that the store operator has explicitly excluded from that channel. The issue is fixed in versions: 2.0.18, 2.1.15, 2.2.6 and above. As a workaround, decorate the `Sylius\Bundle\ApiBundle\Changer\PaymentMethodChangerInterface` service in the application.
Sylius is an Open Source eCommerce Framework on Symfony. Versions 2.0.0 through 2.0.17, 2.1.0 through 2.1.14, and 2.2.0 through 2.2.5 contain an improper workflow enforcement vulnerability in the cart `FormComponent`. When an order is completed while its cart page remains open, the stale LiveComponent does not detect the order’s changed state and continues to permit cart actions, allowing an authenticated customer to modify or permanently delete an already completed order. Versions 2.0.18, 2.1.15, and 2.2.6 contain a patch. As a workaround, deployments can copy the patched `FormComponent` into the application's `src/` directory and override the `sylius_shop.twig.component.cart.form` service definition to use that class.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.