Italscania S.p.A. A.I CyberSecurity Scoring
26/03/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for Italscania S.p.A. in 2026.
No incidents recorded for Italscania S.p.A. in 2026.
No incidents recorded for Italscania S.p.A. in 2026.
Mercedes-Benz Research and Development India (MBRDI) is the largest research and development centre for Mercedes-Benz Group AG outside of Germany. With over 27 years of innovation, MBRDI is contributing towards building the world’s most desirable cars, right here from India. Our mission - shape the future of sustainable mobility, one innovation at a time. MBRDI’s expertise includes developing new technologies like connected, autonomous and electric in the mobility world - driving digital acceleration, leading excellence in-car software and paving the way for sustainable mobility. MBRDI currently employs over 8500 professionals in the field of engineering, digitalisation, testing and simulation, and data science, with people at the heart of our culture. Our philosophy - When every individual shines in his or her own capabilities, we shine! We are committed to building an environment where everyone is enabled to bring their true self to work, each day. By fostering a diverse & inclusive work ecosystem, and enabling equal opportunities, we are building a culture that inspires innovation and sparks creativity and growth.
Lear Corporation (NYSE: LEA) is a global automotive leader in Seating and E-Systems. The company designs, manufactures, and delivers advanced technologies to the world’s major automakers. Building on more than 100 years of heritage, Lear is the largest U.S.-based automotive supplier, headquartered in Southfield, Michigan. Driven by a commitment to innovation, operational excellence, and sustainability, Lear’s global team of talented employees is shaping the future of mobility by developing solutions that enhance comfort, safety, and efficiency. More information is available at Lear.com.
With its four brands BMW, MINI, Rolls-Royce and BMW Motorrad, the BMW Group is the world’s leading premium manufacturer of automobiles and motorcycles and also provides premium financial services. The BMW Group production network comprises over 30 production sites worldwide; the company has a global sales network in more than 140 countries. In 2024, the BMW Group sold over 2.45 million passenger vehicles and more than 210,000 motorcycles worldwide. The profit before tax in the financial year 2024 was € 11.0 billion on revenues amounting to € 142.4 billion. As of 31 December 2024, the BMW Group had a workforce of 159,104 employees. The economic success of the BMW Group has always been based on long-term thinking and responsible action. Sustainability is a key element of the BMW Group’s corporate strategy and covers all products from the supply chain and production to the end of their useful life.
We build International trucks and engines and IC Bus® school and commercial buses that are as tough and as smart as the people who drive them. Our solutions deliver greater uptime and productivity to fleets across North America. We also develop Fleetrite® aftermarket parts. In everything we do, our vision is to accelerate the impact of sustainable mobility to create the cleaner, safer world we all deserve. We are part of the TRATON Group, one of the world's leading commercial vehicle manufacturers.
Scania is a world-leading provider of transport solutions committed to a better tomorrow. Our purpose is to drive the shift towards a sustainable transport system. In doing so, we are creating a world of mobility that’s better for business, society and our environment. Employing more than 50,000 people in about 100 countries, Scania’s research and development is concentrated in Sweden, while production takes place in Europe and South America.
In 1903, out of a small shed in Milwaukee, Wisconsin, four young men lit a cultural wildfire that would grow and spread across geographies and generations. Their innovation and imagination for what was possible on two wheels sparked a transportation revolution and lifestyle that would make Harley-Davidson the most desirable motorcycle brand in the world. • Our Mission: More than building machines, we stand for the timeless pursuit of adventure. Freedom for the soul. • Our Vision: Building our legend and leading our industry through innovation, evolution and emotion. Our Mission and Vision honor our past and help define our future. And what we hope you see in these guiding statements is a consumer-led company that’s driven to win, lead and deliver a Harley-Davidson experience that our riders expect and deserve – one where adventure and “freedom for the soul” are the payoff. To do this, we are redefining our culture to reignite the company’s soul and spirit. We are calling our cultural journey “H-D#1” represented by our recognizable #1 logo, introduced in 1969 to celebrate a National Racing Championship. The #1 logo is uniquely ours - an iconic symbol of winning and the hard work it takes to get there. The Hardwire is Harley-Davidson’s 2021-2025 strategic plan guided by our mission and vision. Our plan is targeting long-term profitable growth through focused efforts that extend and strengthen our brand and drive value for all stakeholders. The Hardwire is designed to enhance the desirability of Harley-Davidson and fuel our unique lifestyle brand. For more information, visit our company site: www.harley-davidson.com or our career site: jobs.harley-davidson.com
With more than 1,200 stores in the United States, Discount Tire has grown to become the leading independent retailer of tires and wheels. The company was founded in 1960 when founder Bruce T. Halle rented a building on Stadium Boulevard in Ann Arbor, MI. Although the inventory consisted of only six tires and the showroom was not quite the showroom we see today, faith, vision and hard work were then, and still remain, the foundation on which this company has grown and prospered. As with any new start up, Bruce Halle's venture faced numerous challenges - perhaps one of the biggest being that he didn't own an air compressor. Having only six tires and a portable air tank, Halle would race back and forth to a nearby gas station, filling the tires with air as he sold them. Day by day, tire by tire, this one-man operation slowly grew into what is now one of the most recognized names in the industry. Discount Tire has a vision that not only lives but thrives in the hearts of its employees each and every day. From part-time to full-time employees at the store, regional or corporate level our employees work to be the best in the business. One common thread running through the hearts of everyone within the organization remains the same - treat customers and fellow employees with respect and fairness. Care for those in need, always do what is right, work hard, be responsible and have fun. The employees of Discount Tire represent our philosophy and its brand by remaining knowledgeable, friendly and honest. By offering the highest level of customer service, more product choices and the lowest prices, they have earned the right to be considered trusted experts. Building customer relationships has allowed Discount Tire to become a leader in the industry. Our continual growth not only provides opportunities for employee advancement, but allows more customers to remain confident when choosing us for all of their tire and wheel needs.
Li Auto Inc. is a leader in China's new energy vehicle market. The Company designs, develops, manufactures, and sells premium smart electric vehicles. Its mission is: Create a Mobile Home, Create Happiness (创造移动的家,创造幸福的家). Through innovations in product, technology, and business model, the Company provides families with safe, convenient, and comfortable products and services. Li Auto is a pioneer in successfully commercializing extended-range electric vehicles in China. While firmly advancing along this technological route, it builds platforms for battery electric vehicles in parallel. The Company leverages technology to create value for users. It concentrates its in-house development efforts on proprietary range extension systems, innovative electric vehicle technologies, and smart vehicle solutions. The Company started volume production in November 2019. Its current model lineup includes Li MEGA, a high-tech flagship family MPV, Li L9, a six-seat flagship family SUV, Li L8, a six-seat premium family SUV, Li L7, a five-seat flagship family SUV, and Li L6, a five-seat premium family SUV. The Company will continue to expand its product lineup to target a broader user base.
Honda Cars India Ltd. (HCIL), a leading manufacturer of premium cars in India, was established in December 1995 with a commitment to provide Honda’s passenger car models and technologies, to the Indian customers. HCIL’s corporate office is based in Greater Noida, UP and its state-of-the-art manufacturing facility is located at Tapukara, District. Alwar, Rajasthan. Honda’s models are strongly associated with advanced design and technology, apart from their established qualities of durability, reliability, safety, and fuel-efficiency. The company has a strong sales and distribution network spread across the country. Besides the new car business, Honda offers one stop solution for buying and selling pre-owned cars through its business function Honda Auto Terrace. The Honda Certified Pre-owned cars come with an assurance of quality and peace of mind that caters to the diverse and burgeoning needs of pre-owned car buyers across the country.
Latest updates, reports, and threat intel affecting the global network.
tls_opt_dtls_peer_connection_id_value_get() in subsys/net/lib/sockets/sockets_tls.c, which handles getsockopt(SOL_TLS, TLS_DTLS_PEER_CID_VALUE), passed the caller-supplied optval directly to mbedtls_ssl_get_peer_cid() without verifying the buffer was at least MBEDTLS_SSL_CID_OUT_LEN_MAX (default 32) bytes. mbedtls_ssl_get_peer_cid() copies the peer-negotiated DTLS Connection ID (length 1..MBEDTLS_SSL_CID_OUT_LEN_MAX) into that buffer without a destination-size parameter, so a caller-supplied optlen smaller than the CID causes a write of up to 31 bytes past the buffer end. In CONFIG_USERSPACE builds the getsockopt syscall verifier (z_vrfy_zsock_getsockopt) bounce-buffers the user's optval into a kernel allocation of exactly optlen bytes (k_usermode_alloc_from_copy -> z_thread_malloc), so an unprivileged user thread that passes a small optlen on a connected DTLS socket with Connection ID enabled induces a kernel-heap buffer overflow, with the overflowing content being the remote peer's CID. The defect requires CONFIG_MBEDTLS_SSL_DTLS_CONNECTION_ID, an established DTLS session with a negotiated peer CID, and (for the kernel-crossing case) CONFIG_USERSPACE. Introduced when the TLS_DTLS_CID option was added (v3.5.0). The fix rejects callers whose optlen is below MBEDTLS_SSL_CID_OUT_LEN_MAX with -EINVAL.
react18-use is a React 19 use hook shim. Between 2026-05-19 01:07:01 and 2026-05-19 15:20:43, the default branch contained malicious commits 7b79148d1495a2505f9277da295a98cf176f4496 through 7b79148d1495a2505f9277da295a98cf176f4496 that executed remote attacker-controlled code on developer machines during `npm install`. The commits were removed by force-push, but local clones, forks, and direct-SHA URLs may still contain them, and `npm install` against an affected checkout will still execute the code today. The package was not published to npm. `src/install.js` was added and wired into the `postinstall` script. It fetched a JavaScript payload from an attacker-controlled HTTPS endpoint (configurable via an environment variable), disabled TLS verification, and evaluated the response as code with `require` available. Execution was deliberately skipped on CI and cloud/serverless environments, targeting developer workstations. The second-stage payload was attacker-hosted and cannot be reconstructed. Assume full compromise of anything reachable from a Node process with the user's permissions. Those who ran `npm install` against an affected checkout on a developer machine on or after 2026-05-19 01:07:01 should treat the machine as compromised, rotate every credential the machine could reach, audit account activity since 2026-05-19 01:07:01, and clean local clones.
The UpdateHub management subsystem (subsys/mgmt/updatehub/updatehub.c) drives every update operation through a single file-scope ctx structure that holds the CoAP block context, payload buffer, status code, socket, and a one-element poll-fd array fds[1]. Access to ctx was not serialized, and prepare_fds() wrote ctx.fds[ctx.nfds] and incremented ctx.nfds with no bounds check. Two independent paths mutate ctx concurrently: the background autohandler running on the system workqueue, and user-triggered operations reached through the updatehub run shell command, direct API calls, or — since the operations are exposed as syscalls — userspace threads. When a second flow enters prepare_fds() while ctx.nfds is already 1, the write lands one element past the array; by struct layout it overlaps the adjacent ctx.sock/ctx.nfds members. More broadly, the unsynchronized sharing lets two flows interleave connection setup and teardown, double-closing a socket descriptor or scribbling the shared buffers. The result is corruption of the update subsystem's internal state and denial of service of the firmware-update path; the out-of-bounds write is contained within the ctx structure and there is no demonstrated path to memory outside it or to code execution. Triggering requires a local actor able to invoke update operations (or, with CONFIG_USERSPACE, an unprivileged userspace thread) and to win a timing race against the background handler; remote peers cannot control the race timing. The fix serializes the entry points with a mutex and adds a bounds check to prepare_fds().
The UpdateHub over-the-air update client's start_coap_client() in subsys/mgmt/updatehub/updatehub.c leaks the CoAP/DTLS socket descriptor on its connection-setup failure paths. The shared error: cleanup gated socket closing on a ret > 0 flag, but ret was set to -1 immediately after the socket was created, so when zsock_setsockopt() (DTLS) or zsock_connect() subsequently failed the gate was false and cleanup_connection() was never called. The open descriptor in the global ctx.sock was then overwritten by the next attempt, permanently leaking it from the socket / net_context pool until reboot. The failing setup path is reached every time the OTA client tries to contact the UpdateHub server and the connection cannot be established — driven automatically by the periodic autohandler() poll (and on demand via the updatehub_probe()/updatehub_update() API or the updatehub run shell command). The DTLS handshake/connect outcome is influenceable by a network or on-path attacker who drops, resets, or otherwise disrupts traffic to the server, and also fails naturally whenever the server is unreachable. Each failed attempt permanently leaks one descriptor; once the shared socket pool is exhausted, networking degrades device-wide until the device is rebooted, a denial-of-service condition. Severity is low because the leak rate is bounded by the configured OTA poll interval (default once per 24 hours), the effect is gradual and recovered by reboot, and only builds with the UpdateHub client enabled are affected. There is no memory-corruption, information-disclosure, or authentication impact.
Certain web interface components in affected TP-Link Aginet devices do not validate and sanitize user-supplied input properly before passing it to system-level command execution functions. An authenticated adjacent attacker may inject specially crafted input to execute arbitrary operation system commands with elevated privileges. Successful exploitation may allow execution of arbitrary system commands, potentially leading to full device compromise.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.