Company Details
ibex-global
22,315
347,194
None
ibex.co
0
IBE_2400470
In-progress

ibex Company CyberSecurity Posture
ibex.coibex delivers innovative business process outsourcing (BPO), smart digital marketing, online acquisition technology, and end-to-end customer engagement solutions to help companies acquire, engage, and retain valuable customers. Today, ibex operates a global CX delivery center model consisting of 34 operations facilities around the world, while deploying next-generation technology to drive superior customer experiences for many of the world’s leading companies across retail, e-commerce, healthcare, fintech, utilities, and logistics. ibex leverages its diverse global team of over 30,000 employees together with industry-leading technology, including its Wave X platform, to manage nearly 200 million critical customer interactions, adding over $2.2B in lifetime customer revenue each year and driving a truly differentiated customer experience. To learn more, visit our website at ibex.co and connect with us on LinkedIn.
Company Details
ibex-global
22,315
347,194
None
ibex.co
0
IBE_2400470
In-progress
Between 750 and 799

ibex Global Score (TPRM)XXXX

Description: On August 6, 2021, the Maine Office of the Attorney General reported a data breach involving Ibex Global Solutions, Inc. The breach, which occurred between July 27, 2020 and August 17, 2020, involved a malware attack affecting 59 Maine residents, and compromised personal information including names, Social Security numbers, and medical information.


No incidents recorded for ibex in 2025.
No incidents recorded for ibex in 2025.
No incidents recorded for ibex in 2025.
ibex cyber incidents detection timeline including parent company and subsidiaries

ibex delivers innovative business process outsourcing (BPO), smart digital marketing, online acquisition technology, and end-to-end customer engagement solutions to help companies acquire, engage, and retain valuable customers. Today, ibex operates a global CX delivery center model consisting of 34 operations facilities around the world, while deploying next-generation technology to drive superior customer experiences for many of the world’s leading companies across retail, e-commerce, healthcare, fintech, utilities, and logistics. ibex leverages its diverse global team of over 30,000 employees together with industry-leading technology, including its Wave X platform, to manage nearly 200 million critical customer interactions, adding over $2.2B in lifetime customer revenue each year and driving a truly differentiated customer experience. To learn more, visit our website at ibex.co and connect with us on LinkedIn.


Líder em Contact Center na América Latina e um dos maiores do mundo em BPO, especializado em soluções para gestão do relacionamento com o consumidor, o Grupo Contax atua de maneira consultiva e personalizada por meio de diferentes canais de comunicação. Além de desenvolver, estabelecer e operar cont

eTelecare Global Solutions is one of the largest and fastest growing business process outsourcing companies in the world, with 15 contact centers across four regions, and more on the way. eTelecare manages programs through contact centers in the U.S., the Philippines, Nicaragua and South Africa

Tigbur Group is International and dynamic business oriented workforce solutions and Facility management, r
.png)
WASHINGTON, Nov. 19, 2025 (GLOBE NEWSWIRE) -- ibex (NASDAQ: IBEX), a leading global provider of business process outsourcing (BPO) and...
Corbel, a New York–based AI-powered operating system for industrial equipment manufacturers, has raised $6.7 million in Seed funding.
Ray Security, an Israeli cybersecurity startup, announced today that it has emerged from stealth with an $11 million seed funding round...
Ray Security, the world's first predictive data security platform, today announced its emergence from stealth with an $11 million seed...
The Israeli startup claims its AI platform cuts enterprise data risk by 90%.
Westermo has introduced the Ibex-4000 series, new access points that support Wi-Fi 6/6E technology, developed in accordance with EN 50155.
The Israeli cybersecurity industry has long been a force in global technology, producing a steady stream of startups that deliver...
Discover Matrix's innovative, cyber-secure BFSI security solutions at IBEX India 2025, strengthening compliance and operational efficiency...
BBVA, the most transparent Ibex 35 company in cybersecurity. BBVA ranks first in the '4th Cybersecurity Transparency Report' prepared by Watch &...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of ibex is http://ibex.co.
According to Rankiteo, ibex’s AI-generated cybersecurity score is 775, reflecting their Fair security posture.
According to Rankiteo, ibex currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, ibex is not certified under SOC 2 Type 1.
According to Rankiteo, ibex does not hold a SOC 2 Type 2 certification.
According to Rankiteo, ibex is not listed as GDPR compliant.
According to Rankiteo, ibex does not currently maintain PCI DSS compliance.
According to Rankiteo, ibex is not compliant with HIPAA regulations.
According to Rankiteo,ibex is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
ibex operates primarily in the Outsourcing/Offshoring industry.
ibex employs approximately 22,315 people worldwide.
ibex presently has no subsidiaries across any sectors.
ibex’s official LinkedIn profile has approximately 347,194 followers.
ibex is classified under the NAICS code None, which corresponds to Others.
No, ibex does not have a profile on Crunchbase.
Yes, ibex maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/ibex-global.
As of December 06, 2025, Rankiteo reports that ibex has experienced 1 cybersecurity incidents.
ibex has an estimated 255 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach.
Title: Data Breach at Ibex Global Solutions, Inc.
Description: A malware attack compromised personal information including names, Social Security numbers, and medical information of 59 Maine residents.
Date Detected: 2021-08-06
Date Publicly Disclosed: 2021-08-06
Type: Data Breach
Attack Vector: Malware
Common Attack Types: The most common types of attacks the company has faced is Breach.

Data Compromised: Names, Social security numbers, Medical information
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Names, Social Security Numbers, Medical Information and .

Entity Name: Ibex Global Solutions, Inc.
Entity Type: Company
Customers Affected: 59

Type of Data Compromised: Names, Social security numbers, Medical information
Number of Records Exposed: 59
Sensitivity of Data: High

Source: Maine Office of the Attorney General
Date Accessed: 2021-08-06
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Maine Office of the Attorney GeneralDate Accessed: 2021-08-06.
Most Recent Incident Detected: The most recent incident detected was on 2021-08-06.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2021-08-06.
Most Significant Data Compromised: The most significant data compromised in an incident were names, Social Security numbers, medical information and .
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Social Security numbers, medical information and names.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 59.0.
Most Recent Source: The most recent source of information about an incident is Maine Office of the Attorney General.
.png)
HedgeDoc is an open source, real-time, collaborative, markdown notes application. Prior to 1.10.4, some of HedgeDoc's OAuth2 endpoints for social login providers such as Google, GitHub, GitLab, Facebook or Dropbox lack CSRF protection, since they don't send a state parameter and verify the response using this parameter. This vulnerability is fixed in 1.10.4.
Langflow versions up to and including 1.6.9 contain a chained vulnerability that enables account takeover and remote code execution. An overly permissive CORS configuration (allow_origins='*' with allow_credentials=True) combined with a refresh token cookie configured as SameSite=None allows a malicious webpage to perform cross-origin requests that include credentials and successfully call the refresh endpoint. An attacker-controlled origin can therefore obtain fresh access_token / refresh_token pairs for a victim session. Obtained tokens permit access to authenticated endpoints — including built-in code-execution functionality — allowing the attacker to execute arbitrary code and achieve full system compromise.
A vulnerability was detected in xerrors Yuxi-Know up to 0.4.0. This vulnerability affects the function OtherEmbedding.aencode of the file /src/models/embed.py. Performing manipulation of the argument health_url results in server-side request forgery. The attack can be initiated remotely. The exploit is now public and may be used. The patch is named 0ff771dc1933d5a6b78f804115e78a7d8625c3f3. To fix this issue, it is recommended to deploy a patch. The vendor responded with a vulnerability confirmation and a list of security measures they have established already (e.g. disabled URL parsing, disabled URL upload mode, removed URL-to-markdown conversion).
A security vulnerability has been detected in Rarlab RAR App up to 7.11 Build 127 on Android. This affects an unknown part of the component com.rarlab.rar. Such manipulation leads to path traversal. It is possible to launch the attack remotely. Attacks of this nature are highly complex. It is indicated that the exploitability is difficult. The exploit has been disclosed publicly and may be used. Upgrading to version 7.20 build 128 is able to mitigate this issue. You should upgrade the affected component. The vendor responded very professional: "This is the real vulnerability affecting RAR for Android only. WinRAR and Unix RAR versions are not affected. We already fixed it in RAR for Android 7.20 build 128 and we publicly mentioned it in that version changelog. (...) To avoid confusion among users, it would be useful if such disclosure emphasizes that it is RAR for Android only issue and WinRAR isn't affected."
A weakness has been identified in ZSPACE Q2C NAS up to 1.1.0210050. Affected by this issue is the function zfilev2_api.OpenSafe of the file /v2/file/safe/open of the component HTTP POST Request Handler. This manipulation of the argument safe_dir causes command injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.