Comparison Overview

ITC Limited

VS

Stanley Black & Decker, Inc.

ITC Limited

Virginia House, 37 J L Nehru Road, Kolkata, West Bengal, IN, 700071
Last Update: 2026-01-19
Between 800 and 849

ITC is one of India's foremost private sector companies with a Gross Revenue of ₹ 73,465 crores and EBITDA of ₹ 24,025 crores (as on 31.03.2025). ITC has a diversified presence in FMCG, Packaging, Paperboards & Specialty Papers and Agri-Business. ITC's aspiration to be an exemplar in sustainability practices is manifest in its status as the only company in the world, of its size and diversity, to be carbon, water and solid waste recycling positive. In addition, ITC's businesses and value chains create sustainable livelihoods for nearly 9 million people, a majority of whom represent the poorest in rural India.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 59,071
Subsidiaries: 2
12-month incidents
0
Known data breaches
0
Attack type number
0

Stanley Black & Decker, Inc.

1000 Stanley Drive, New Britain, CT, US, 06053
Last Update: 2026-01-23

For the builders and protectors, for the makers and explorers, for those shaping and reshaping our world through hard work and inspiration, Stanley Black & Decker provides the tools and innovative solutions you can trust to get the job done—and we have since 1843. You repair your home and car with the tools we provide. Your car and your phone are secured with our fasteners. And the roads you drive on, the bridges you cross, the energy you consume, all of these most likely came to you via one of our infrastructure systems. We join forces to bring together the best of the best to create practical, meaningful products and services that make life easier—empowering people to do better, safer, more significant work. Innovation and excellence have powered our success, but we know there’s more we can do for the world and those who make it. Across our businesses, we’re investing in breakthrough innovation and digital excellence, striving for outperformance and increasing our focus on social responsibility. We define success as: delivering value to our customers, colleagues and communities. Our commitment to quality, safety and sustainability helps us on our path to becoming the type of uniquely human-centered global industrial company that keeps every stakeholder in mind, while helping to make the world better.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 28,984
Subsidiaries: 15
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/itc-limited.jpeg
ITC Limited
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/stanley-black-decker-inc.jpeg
Stanley Black & Decker, Inc.
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
ITC Limited
100%
Compliance Rate
0/4 Standards Verified
Stanley Black & Decker, Inc.
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for ITC Limited in 2026.

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for Stanley Black & Decker, Inc. in 2026.

Incident History — ITC Limited (X = Date, Y = Severity)

ITC Limited cyber incidents detection timeline including parent company and subsidiaries

Incident History — Stanley Black & Decker, Inc. (X = Date, Y = Severity)

Stanley Black & Decker, Inc. cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/itc-limited.jpeg
ITC Limited
Incidents

No Incident

https://images.rankiteo.com/companyimages/stanley-black-decker-inc.jpeg
Stanley Black & Decker, Inc.
Incidents

No Incident

FAQ

ITC Limited company demonstrates a stronger AI Cybersecurity Score compared to Stanley Black & Decker, Inc. company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Stanley Black & Decker, Inc. company has disclosed a higher number of cyber incidents compared to ITC Limited company.

In the current year, Stanley Black & Decker, Inc. company and ITC Limited company have not reported any cyber incidents.

Neither Stanley Black & Decker, Inc. company nor ITC Limited company has reported experiencing a ransomware attack publicly.

Neither Stanley Black & Decker, Inc. company nor ITC Limited company has reported experiencing a data breach publicly.

Neither Stanley Black & Decker, Inc. company nor ITC Limited company has reported experiencing targeted cyberattacks publicly.

Neither ITC Limited company nor Stanley Black & Decker, Inc. company has reported experiencing or disclosing vulnerabilities publicly.

Neither ITC Limited nor Stanley Black & Decker, Inc. holds any compliance certifications.

Neither company holds any compliance certifications.

Stanley Black & Decker, Inc. company has more subsidiaries worldwide compared to ITC Limited company.

ITC Limited company employs more people globally than Stanley Black & Decker, Inc. company, reflecting its scale as a Manufacturing.

Neither ITC Limited nor Stanley Black & Decker, Inc. holds SOC 2 Type 1 certification.

Neither ITC Limited nor Stanley Black & Decker, Inc. holds SOC 2 Type 2 certification.

Neither ITC Limited nor Stanley Black & Decker, Inc. holds ISO 27001 certification.

Neither ITC Limited nor Stanley Black & Decker, Inc. holds PCI DSS certification.

Neither ITC Limited nor Stanley Black & Decker, Inc. holds HIPAA certification.

Neither ITC Limited nor Stanley Black & Decker, Inc. holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network.

Risk Information
cvss3
Base: 9.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
Description

Improper access control in Azure Front Door (AFD) allows an unauthorized attacker to elevate privileges over a network.

Risk Information
cvss3
Base: 9.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description

Azure Entra ID Elevation of Privilege Vulnerability

Risk Information
cvss3
Base: 9.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
Description

Moonraker is a Python web server providing API access to Klipper 3D printing firmware. In versions 0.9.3 and below, instances configured with the "ldap" component enabled are vulnerable to LDAP search filter injection techniques via the login endpoint. The 401 error response message can be used to determine whether or not a search was successful, allowing for brute force methods to discover LDAP entries on the server such as user IDs and user attributes. This issue has been fixed in version 0.10.0.

Risk Information
cvss4
Base: 2.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Runtipi is a Docker-based, personal homeserver orchestrator that facilitates multiple services on a single server. Versions 3.7.0 and above allow an authenticated user to execute arbitrary system commands on the host server by injecting shell metacharacters into backup filenames. The BackupManager fails to sanitize the filenames of uploaded backups. The system persists user-uploaded files directly to the host filesystem using the raw originalname provided in the request. This allows an attacker to stage a file containing shell metacharacters (e.g., $(id).tar.gz) at a predictable path, which is later referenced during the restore process. The successful storage of the file is what allows the subsequent restore command to reference and execute it. This issue has been fixed in version 4.7.0.

Risk Information
cvss3
Base: 8.0
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H