Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Itaú Unibanco

Itaú Unibanco Vendor Cyber Rating & Cyber Score

itau.com.br

Hello! This is Itaú Unibanco's profile on Linkedin. We are the largest bank in Latin America and our purpose is to stimulate people's power of transformation. Here, we will share with you news about the bank, details about our work environment, opportunities and trends. 😉


Itaú Unibanco A.I CyberSecurity Scoring

Itaú Unibanco
Company Information
Website:http://www.itau.com.br
Employees number:112,846
Number of followers:4,159,209
NAICS:52211
Industry Type:Banking
Homepage:itau.com.br
Itaú Unibanco Risk Score (AI oriented)
Between 800 and 849
logo
Itaú UnibancoBanking
Updated:
04/04/2026
829/1000
Good
A
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Itaú Unibanco Global Score (TPRM)
xxxx
logo
Itaú UnibancoBanking
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Itaú Unibanco
Itaú UnibancoGood
Current Score
829A (GOOD)
01000
1 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
829Before Incident
MAY 2026
829Before Incident
APRIL 2026
829Before Incident
MARCH 2026
829Before Incident
FEBRUARY 2026
829Before Incident
JANUARY 2026
829Before Incident
DECEMBER 2025
828Before Incident
NOVEMBER 2025
828Before Incident
OCTOBER 2025
828Before Incident
SEPTEMBER 2025
828Before Incident
AUGUST 2025
828Before Incident
JULY 2025
828Before Incident
APRIL 2025
829Before Incident
Vulnerability
01 Apr 2025Itaú Unibanco
Veeam and Itaú: Iran boosts cyberattacks, VENON targets Brazilian banks, England Hockey investigates breach

Iran’s Cyber Operations Expand with Criminal PartnershipsNew Rust-Based Malware Targets Brazilian BanksEngland Hockey Investigates Ransomware BreachStorm-2561 Exploits SEO Poisoning for Credential TheftHive0163 Deploys AI-Assisted MalwareOperation Lightning Disrupts SocksEscort Proxy NetworkVeeam Patches Critical RCE Flaws in Backup SoftwarePixRevolution Trojan Hijacks Brazil’s PIX Payments

828After Incident
CRITICAL-1
ITAVEE1773411944
Cybersecurity Roundup: State-Backed Threats, Banking Malware, and Major Takedowns Recent cybersecurity developments highlight escalating threats from state-sponsored actors, sophisticated banking malware, and large-scale law enforcement operations. Iran’s Cyber Operations Expand with Criminal Partnerships Research from Check Point reveals Iran’s Ministry of Intelligence and Security is collaborating with cybercriminal groups to enhance its cyber capabilities. Iranian APTs like Void Manticore are leveraging tools such as the Rhadamanthys infostealer and engaging in ransomware-as-a-service (RaaS) ecosystems. This strategy obscures attribution by sourcing malware, infrastructure, and initial access from underground markets rather than developing proprietary tools. New Rust-Based Malware Targets Brazilian Banks Brazilian firm ZenoX uncovered VENON, a Rust-based banking trojan targeting 33 financial institutions in Brazil. The malware spreads via DLL side-loading, ClickFix social engineering, and employs nine evasion techniques. It monitors active windows, hijacks shortcuts, and deploys fake overlays to steal credentials particularly from Itaú’s banking app. VENON can also reverse modifications to avoid detection. England Hockey Investigates Ransomware Breach The AiLock ransomware gang claims to have stolen 129GB of data from England Hockey, threatening to leak it unless a ransom is paid. The organization, which oversees 800+ clubs and 150,000 players, is working with law enforcement and cybersecurity experts to assess the breach. AiLock, active since April 2025, uses double-extortion tactics and advanced encryption. Storm-2561 Exploits SEO Poisoning for Credential Theft Microsoft Threat Intelligence reports that Storm-2561 is distributing fake VPN clients via SEO poisoning. Users searching for legitimate VPN software are redirected to malicious sites hosting ZIP files with MSI installers that side-load the Hyrax infostealer. The malware, digitally signed to appear legitimate, captures VPN credentials and maintains persistence via the Windows RunOnce key. Hive0163 Deploys AI-Assisted Malware IBM X-Force researcher Golo Mühr revealed that Hive0163 is using Slopoly, an AI-generated malware, to maintain persistence in ransomware attacks. Deployed via PowerShell scripts and scheduled tasks, Slopoly acts as a backdoor, beaconing system data and executing commands from a C2 server. While AI helped generate structured code, the malware relies on standard persistence techniques. Hive0163 frequently uses ClickFix, malvertising, and access brokers to deliver threats like NodeSnake, Interlock RAT, and Interlock ransomware. Operation Lightning Disrupts SocksEscort Proxy Network A multinational law enforcement operation, Operation Lightning, dismantled the SocksEscort residential proxy network. Authorities seized 34 domains and 23 servers across seven countries and froze $3.5 million in cryptocurrency. The service, which infected routers with AVRecon malware, sold access to 369,000 compromised IPs used for fraud, ransomware, and account takeovers. The network had 124,000 users and caused tens of millions in losses. Veeam Patches Critical RCE Flaws in Backup Software Veeam released patches for multiple vulnerabilities in its Backup & Replication software, including four critical remote code execution (RCE) flaws that could allow low-privileged users to execute code on backup servers. The bugs also enable privilege escalation and credential theft. Fixes are included in versions 12.3.2.4465 and 13.0.1.2067. Veeam warned that attackers often reverse-engineer patches to target unpatched systems, noting backup servers are prime ransomware targets. PixRevolution Trojan Hijacks Brazil’s PIX Payments Researchers at Zimperium discovered PixRevolution, an Android banking trojan that intercepts Brazil’s PIX instant payment system by replacing recipient payment keys during transactions. The malware abuses Android accessibility permissions to monitor screens, stream activity to a command server, and allow real-time intervention by attackers. It spreads via fake Google Play store pages and targets Brazil’s PIX network, used by 76% of Brazilians and processing over three billion transactions monthly.
INCIDENT DETAILS -
TYPE
State-Sponsored Cyber OperationsBanking TrojanRansomwareInfostealerAI-Assisted MalwareProxy Network TakedownVulnerability PatchBanking Trojan
MOTIVATION
Cyber Espionage, Financial Gain (RaaS)Financial Theft (Banking Credentials)Financial Gain (Ransomware)Credential Theft (VPN Credentials)Persistence in Ransomware AttacksFraud, Ransomware, Account TakeoversFinancial Theft (PIX Payment Hijacking)
IMPACT
Tens of millions in losses129GB of data stolenBrazilian financial institutions (33 targets)England Hockey’s systemsUsers searching for VPN softwareSystems targeted by Hive0163369,000 compromised IPs (routers)Veeam Backup & Replication serversAndroid devices in BrazilEngland Hockey’s operations under investigationDisruption of SocksEscort proxy networkPotential reputational damage to England HockeyPotential reputational damage to VeeamPotential legal liabilities for unpatched systemsHigh (banking credentials)High (VPN credentials)High (PIX payment information)High (banking credentials)High (PIX payment hijacking)
DATA BREACH
Banking credentials129GB of unspecified dataVPN credentialsPIX payment informationHigh (banking credentials)High (unspecified data)High (VPN credentials)High (PIX payment information)Yes (129GB stolen)Yes (AiLock ransomware)Yes (Slopoly malware)Yes (banking credentials)Yes (VPN credentials)Yes (PIX payment information)

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Itaú Unibanco ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Itaú Unibanco's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Itaú Unibanco's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Itaú Unibanco ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Itaú Unibanco's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?