Company Details
jswsteel
20,930
908,100
212
jsw.in
0
JSW_2110248
In-progress

JSW Steel Company CyberSecurity Posture
jsw.inOver the last 35 years, we have partnered the country in its journey to self-reliance, by embracing sustainability, adopting cutting-edge technology and having innovation and R&D initiatives at the heart of our culture. From humble beginnings with a single plant in 1982, we are now India's leading manufacturer of value-added and high-end steels. Our plants in Karnataka, Tamil Nadu and Maharashtra have a total capacity of 29.7 MTPA, and we are scaling up existing plants and opening new ones to take that figure to 40 MTPA. Globally, we own a plate and pipe mill in the US, and mining assets in the US, Chile and Mozambique. But we're not ones to rest on our laurels. Driven by decades of experience and a dynamic culture, we constantly seek new ways to revolutionize steelmaking. To begin with, we integrate sustainability into everything we do. We benchmark our business vision and governance systems, manufacturing and sales processes, and even our customer and community engagement initiatives, against global best-in-class standards. We bolster these sustainability initiatives, by staying on the cutting edge of technology. It's a strategy that has helped us create the largest product portfolio in India, and at the same time, become India's largest exporter of steel with a presence in more than 100 countries. Today, nearly 40% of our products are high-value steels, a figure we intend to take up to 50% soon. We’ve made this technological prowess possible with a relentless focus on innovation and R&D. It has helped us stay ahead of competition, customise our offerings as per client requirements, partner with global leaders such as JFE Steel, Marubeni Itochu Steel, Praxair and Severfield Rowen Plc. to be cost-efficient, and be seen worldwide as a purveyor of high-end, value-added steel.
Company Details
jswsteel
20,930
908,100
212
jsw.in
0
JSW_2110248
In-progress
Between 750 and 799

JSW Steel Global Score (TPRM)XXXX

Description: JSW Steel, the global steel conglomerate in Texas was attacked by the SunCrypt ransomware group. The group demanded a huge ransom and apparently leaked a file from the stolen data to threaten the company.


No incidents recorded for JSW Steel in 2025.
No incidents recorded for JSW Steel in 2025.
No incidents recorded for JSW Steel in 2025.
JSW Steel cyber incidents detection timeline including parent company and subsidiaries

Over the last 35 years, we have partnered the country in its journey to self-reliance, by embracing sustainability, adopting cutting-edge technology and having innovation and R&D initiatives at the heart of our culture. From humble beginnings with a single plant in 1982, we are now India's leading manufacturer of value-added and high-end steels. Our plants in Karnataka, Tamil Nadu and Maharashtra have a total capacity of 29.7 MTPA, and we are scaling up existing plants and opening new ones to take that figure to 40 MTPA. Globally, we own a plate and pipe mill in the US, and mining assets in the US, Chile and Mozambique. But we're not ones to rest on our laurels. Driven by decades of experience and a dynamic culture, we constantly seek new ways to revolutionize steelmaking. To begin with, we integrate sustainability into everything we do. We benchmark our business vision and governance systems, manufacturing and sales processes, and even our customer and community engagement initiatives, against global best-in-class standards. We bolster these sustainability initiatives, by staying on the cutting edge of technology. It's a strategy that has helped us create the largest product portfolio in India, and at the same time, become India's largest exporter of steel with a presence in more than 100 countries. Today, nearly 40% of our products are high-value steels, a figure we intend to take up to 50% soon. We’ve made this technological prowess possible with a relentless focus on innovation and R&D. It has helped us stay ahead of competition, customise our offerings as per client requirements, partner with global leaders such as JFE Steel, Marubeni Itochu Steel, Praxair and Severfield Rowen Plc. to be cost-efficient, and be seen worldwide as a purveyor of high-end, value-added steel.


tshint is one of the biggest nickel alloy and stainless steel manufactory in china. our stianless steel cooperation partner: baosteel, lisco, acerinox, posco. our web site: www.tssgroup.com.cn video: v.youku.com/v_show/id_XNDQzMDc0Mjg4.html our advantage: 1) tsingshan holding group now is

Maaden is Saudi Arabia’s engine of industrial transformation and one of the world’s top ten mining giants by market cap and fastest growing globally. We’re building the future of mining, creating fully integrated value chains across gold, phosphate, bauxite, copper and beyond. Maaden’s new era of

Central Coal Fields Limited was established on 01/11/1975. It is a Miniratna company and is a subsidiary of Coal India Limited. CCL is headquartered at Darbhanga House, Ranchi, Jharkhand. It has Sixty-Five operative mines and Six washeries encompassing six districts of Jharkhand state. Central C

Salzgitter AG ranks among the leading steel technology groups with € 9 billion in external sales, a crude steel capacity of 7 million tons and a workforce of 25,000 employees. It is one of Europe's largest steel producers and the global market leader in the large-diameter pipes business. The Group
Sandvik is a global, high-tech engineering group providing solutions that enhance productivity, profitability and sustainability for the manufacturing, mining and infrastructure industries. We are at the forefront of digitalization and focus on optimizing our customers’ processes. Our world-leading
We are a global mining company producing iron ore, pellets, and nickel, and we are committed to becoming one of the safest, most trustworthy mining company in the world. With a workforce of 120,000 employees, we work every day to transform natural resources into prosperity and sustainable developmen

NAC Kazatomprom JSC is the national operator of the Republic of Kazakhstan for the import and export of uranium, rare metals, nuclear fuel for nuclear power plants. Since 2009, Kazakhstan has been the world leader in natural uranium mining, and Kazatomprom has priority rights to the country’s extens

First Quantum Minerals Ltd. is a global mining company producing copper and nickel, as well as gold and cobalt. Our growing portfolio of operations and projects spans four continents and employs around 20,000 people. We are well-known for our ‘can do’ attitude and specialist technical, project mana

Jindal Steel is one of India’s foremost integrated steel producers, renowned for its scale, efficiency, and commitment to excellence. Operating on a robust mine-to-metal model, the Company leverages captive resources, advanced manufacturing capabilities, and a global distribution network to deliver
.png)
Track key stocks like M&M and JSW Steel as Nifty eyes record highs and sector trends signal crucial trading opportunities—read the full...
India's import curbs on metallurgical coke, a key steelmaking fuel, have become a concern for many producers, Jayant Acharya,...
JSW Steel is actively positioning itself for the imminent adoption of the Carbon Border Adjustment Mechanism (CBAM) by the European Union,...
India's top steelmaker JSW Steel said it expects improved steel prices in the third quarter after reporting a nearly fourfold rise in...
Reliance Industries, JSW Steel, Tata Technologies, Dixon Technologies, Hindustan Zinc, REC, Havells India among marquee companies to declare...
Stocks to watch today, September 29: GIFT Nifty indicates a higher start for domestic indices. Here are the top stocks to watch for the day.
India's Supreme Court said on Friday that JSW Steel's $2.3 billion takeover of Bhushan Power and Steel (BPSL) could go ahead, reversing its...
This strategic partnership aims to combine the company's domain expertise in defence-grade electronic systems with Sibersentinel...
TechD Cybersecurity IPO: The Vijay Kedia-backed company is looking to raise ₹38.99 crore by offering 14.45 lakh new equity shares.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of JSW Steel is http://www.jsw.in.
According to Rankiteo, JSW Steel’s AI-generated cybersecurity score is 781, reflecting their Fair security posture.
According to Rankiteo, JSW Steel currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, JSW Steel is not certified under SOC 2 Type 1.
According to Rankiteo, JSW Steel does not hold a SOC 2 Type 2 certification.
According to Rankiteo, JSW Steel is not listed as GDPR compliant.
According to Rankiteo, JSW Steel does not currently maintain PCI DSS compliance.
According to Rankiteo, JSW Steel is not compliant with HIPAA regulations.
According to Rankiteo,JSW Steel is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
JSW Steel operates primarily in the Mining industry.
JSW Steel employs approximately 20,930 people worldwide.
JSW Steel presently has no subsidiaries across any sectors.
JSW Steel’s official LinkedIn profile has approximately 908,100 followers.
JSW Steel is classified under the NAICS code 212, which corresponds to Mining (except Oil and Gas).
No, JSW Steel does not have a profile on Crunchbase.
Yes, JSW Steel maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/jswsteel.
As of November 27, 2025, Rankiteo reports that JSW Steel has experienced 1 cybersecurity incidents.
JSW Steel has an estimated 3,667 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Ransomware.
Title: JSW Steel Ransomware Attack
Description: JSW Steel, the global steel conglomerate in Texas, was attacked by the SunCrypt ransomware group. The group demanded a huge ransom and apparently leaked a file from the stolen data to threaten the company.
Type: Ransomware
Threat Actor: SunCrypt ransomware group
Motivation: Financial gain
Common Attack Types: The most common types of attacks the company has faced is Ransomware.

Data Compromised: Stolen data

Entity Name: JSW Steel
Entity Type: Company
Industry: Steel
Location: Texas

Data Exfiltration: Yes

Ransom Demanded: Yes
Ransomware Strain: SunCrypt
Data Exfiltration: Yes
Last Ransom Demanded: The amount of the last ransom demanded was Yes.
Last Attacking Group: The attacking group in the last incident was an SunCrypt ransomware group.
Most Significant Data Compromised: The most significant data compromised in an incident was Stolen data.
Most Sensitive Data Compromised: The most sensitive data compromised in a breach was Stolen data.
Highest Ransom Demanded: The highest ransom demanded in a ransomware incident was Yes.
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.