Company Details
kaye-smith
70
1,050
323
kayesmith.com
0
KAY_2112280
In-progress


Kaye-Smith Vendor Cyber Rating & Cyber Score
kayesmith.comKaye-Smith is a leader in the execution and management of business-critical communications in the Pacific Northwest. We support many of the leading banks, credit unions, insurance providers, health care organizations, non-profits, utilities, manufacturers and biotech innovators in the region. From electronic and paper statement processing to highly-personalized, targeted marketing programs, it's critical that your company deliver on your brand promise at every point of contact. We understand the importance of brand consistency and reliability and our clients look to us to develop solutions to ensure that their data is handled securely and communications reach the intended audience or customer. ISO 27001 certified, Gramm-Leach-Bliley and HIPAA compliant, and SSAE No. 16 - SOC 2 audited, we help our clients execute their business communications securely, effectively and efficiently, providing them with the tools they need to control costs, increase efficiency, reduce capital investment, ensure compliance and maximize the marketing opportunity of every communication. Facilities in Seattle and Portland provide built in disaster recovery and business continuity.
Company Details
kaye-smith
70
1,050
323
kayesmith.com
0
KAY_2112280
In-progress
Between 650 and 699

Kaye-Smith Global Score (TPRM)XXXX

Description: Kaye-Smith reported a data breach after hackers successfully obtained access to confidential consumer information following a ransomware attack. The breach compromised the names, addresses and Social Security numbers. Kaye-Smith sent out data breach letters to all affected parties, informing them of the incident.
Description: The Washington State Office of the Attorney General reported a data breach involving Kaye-Smith Enterprises, Inc., on October 4, 2022. The breach occurred between May 18, 2022, and June 2, 2022, due to a ransomware attack, impacting the personal information of 36,119 Washington residents, including names, addresses, and account numbers. Affected individuals were notified on September 16, 2022, and offered complimentary credit monitoring services.


No incidents recorded for Kaye-Smith in 2026.
No incidents recorded for Kaye-Smith in 2026.
No incidents recorded for Kaye-Smith in 2026.
Kaye-Smith cyber incidents detection timeline including parent company and subsidiaries

Kaye-Smith is a leader in the execution and management of business-critical communications in the Pacific Northwest. We support many of the leading banks, credit unions, insurance providers, health care organizations, non-profits, utilities, manufacturers and biotech innovators in the region. From electronic and paper statement processing to highly-personalized, targeted marketing programs, it's critical that your company deliver on your brand promise at every point of contact. We understand the importance of brand consistency and reliability and our clients look to us to develop solutions to ensure that their data is handled securely and communications reach the intended audience or customer. ISO 27001 certified, Gramm-Leach-Bliley and HIPAA compliant, and SSAE No. 16 - SOC 2 audited, we help our clients execute their business communications securely, effectively and efficiently, providing them with the tools they need to control costs, increase efficiency, reduce capital investment, ensure compliance and maximize the marketing opportunity of every communication. Facilities in Seattle and Portland provide built in disaster recovery and business continuity.


LEADING THE WAY IN PRODUCT I.D. For almost 70 years, Cubbison has been leading the way in providing product identification solutions to a variety of industries with an even greater variety of applications. Whatever your need may be, Cubbison has the experience and expertise to collaborate with you t

Image Craft is nationally recognized for planning, production and execution any kind of unique and exciting methods of visual communications. You can feel our passion about graphics: Any Image. Any Size. Any Where. Environmental graphics are essential to every workplace and retail outlet. Wall mu
Celebrating individuality, style and craftsmanship. At Crane & Co, we pride ourselves on helping our customers make their own individual mark on the world. Whether designing custom stationery that becomes your signature, forging new business connections with a stylish stack of business cards, or

MANDEL is a 4th generation graphic solutions provider that started in 1892. Innovation is the backbone of our team, and "NO PROBLEM" is our mantra. Our reputation as the leader in large & small format custom graphics and POP Display programs is based on the innovative edge we've developed as a uni

DCC Group, founded in 1978, headquartered in Mumbai, India. DCC is Asia’s largest provider of printing technologies for Fashion & Sports Apparels, Home Textile, Promotional and Soft Signage applications. DCC Group ecosystem comprises 5 companies; Creative Industries - Manufactures eco-friendly w

Williams & Heintz Map Corporation is a map printer; producing maps, printing maps, folding maps for entrepreneurs, government agencies, and map publishers since 1921. There is a special craft to printing and folding maps, different from any other sheet fed work, and at Williams & Heintz, we are mast

We opened our doors as Lewis Printing Company in Richmond, Virginia on January 2, 1922. In just four years the business outgrew its space at 21 N.12th Street and moved to 1107 East Cary Street, where it stayed for about 40 years. In 1964, we moved into a larger, custom-built production facility at

All Print Supplies Ltd. are one of the UK's leading suppliers of sign vinyl and materials to the sign, exhibition and display markets. Available for next day delivery anywhere in the UK mainland, we provide a well stocked range of digital print vinyls, sign and wrap coloured vinyls, films for garm

In October of 2012, Darien natives Jamie Hanford and Sean Calvillo started a company under the name Force 5 Lacrosse. Force 5 distributed lacrosse uniforms and apparel products. Force 5 also provided lacrosse instruction via private lessons and summer camps. Jamie and Sean built a profitable busines
.png)
Kaye-Smith Enterprises Inc. will pay $2 million to settle allegations the financial-services industry support provider negligently failed to...
Kaye-Smith Enterprises Inc. agreed to pay $2 million to resolve a data breach class action lawsuit.
WASHINGTON, UNITED STATES — Kaye-Smith Enterprises, a hospital billing and mailing vendor, has agreed to a $2 million settlement after a...
This Legal Update discusses recent cyber-litigation trends, notable data breach class-action litigation, and considerations for protecting privilege during a...
Martin Earl Smith, Jr., 54, of Tappahannock, Virginia, passed away on Saturday, March 2, 2024. He was born to his parents, Martin E. Smith Sr., and Theresa Kay...
MultiCare Health System in Washington suffered a third-party data breach that originated at its mailing service provider, Kaye-Smith.
Washington state's MultiCare said sensitive employee information was impacted after one of its partners was the subject of a ransomware...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Kaye-Smith is http://www.kayesmith.com.
According to Rankiteo, Kaye-Smith’s AI-generated cybersecurity score is 671, reflecting their Weak security posture.
According to Rankiteo, Kaye-Smith currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Kaye-Smith has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Kaye-Smith is not certified under SOC 2 Type 1.
According to Rankiteo, Kaye-Smith does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Kaye-Smith is not listed as GDPR compliant.
According to Rankiteo, Kaye-Smith does not currently maintain PCI DSS compliance.
According to Rankiteo, Kaye-Smith is not compliant with HIPAA regulations.
According to Rankiteo,Kaye-Smith is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Kaye-Smith operates primarily in the Printing Services industry.
Kaye-Smith employs approximately 70 people worldwide.
Kaye-Smith presently has no subsidiaries across any sectors.
Kaye-Smith’s official LinkedIn profile has approximately 1,050 followers.
Kaye-Smith is classified under the NAICS code 323, which corresponds to Printing and Related Support Activities.
No, Kaye-Smith does not have a profile on Crunchbase.
Yes, Kaye-Smith maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/kaye-smith.
As of April 04, 2026, Rankiteo reports that Kaye-Smith has experienced 2 cybersecurity incidents.
Kaye-Smith has an estimated 5,126 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Data Leak and Ransomware.
Detection and Response: The company detects and responds to cybersecurity incidents through an communication strategy with kaye-smith sent out data breach letters to all affected parties, informing them of the incident., and communication strategy with notified affected individuals and offered complimentary credit monitoring services..
Title: Kaye-Smith Data Breach
Description: Kaye-Smith reported a data breach after hackers successfully obtained access to confidential consumer information following a ransomware attack.
Type: Data Breach
Attack Vector: Ransomware
Title: Kaye-Smith Enterprises, Inc. Data Breach
Description: The Washington State Office of the Attorney General reported a data breach involving Kaye-Smith Enterprises, Inc., on October 4, 2022. The breach occurred between May 18, 2022, and June 2, 2022, due to a ransomware attack, impacting the personal information of 36,119 Washington residents, including names, addresses, and account numbers. Affected individuals were notified on September 16, 2022, and offered complimentary credit monitoring services.
Date Detected: 2022-10-04
Date Publicly Disclosed: 2022-10-04
Type: Data Breach
Attack Vector: Ransomware
Common Attack Types: The most common types of attacks the company has faced is Data Leak.

Data Compromised: Names, Addresses, Social security numbers

Data Compromised: Names, Addresses, Account numbers
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Names, Addresses, Social Security Numbers, , Names, Addresses, Account Numbers and .

Entity Name: Kaye-Smith Enterprises, Inc.
Entity Type: Company
Location: Washington
Customers Affected: 36119

Communication Strategy: Kaye-Smith sent out data breach letters to all affected parties, informing them of the incident.

Communication Strategy: Notified affected individuals and offered complimentary credit monitoring services

Type of Data Compromised: Names, Addresses, Social security numbers

Type of Data Compromised: Names, Addresses, Account numbers
Number of Records Exposed: 36119
Personally Identifiable Information: namesaddressesaccount numbers

Source: Washington State Office of the Attorney General
Date Accessed: 2022-10-04
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Washington State Office of the Attorney GeneralDate Accessed: 2022-10-04.
Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through Kaye-Smith sent out data breach letters to all affected parties, informing them of the incident. and Notified affected individuals and offered complimentary credit monitoring services.

Customer Advisories: Kaye-Smith sent out data breach letters to all affected parties, informing them of the incident.
Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: were Kaye-Smith sent out data breach letters to all affected parties and informing them of the incident..
Most Recent Incident Detected: The most recent incident detected was on 2022-10-04.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2022-10-04.
Most Significant Data Compromised: The most significant data compromised in an incident were names, addresses, Social Security numbers, , names, addresses, account numbers and .
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were names, Social Security numbers, account numbers and addresses.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 380.0.
Most Recent Source: The most recent source of information about an incident is Washington State Office of the Attorney General.
Most Recent Customer Advisory: The most recent customer advisory issued were an Kaye-Smith sent out data breach letters to all affected parties and informing them of the incident.
.png)
Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.
The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.
XSS vulnerability in cveInterface.js allows for inject HTML to be passed to display, as cveInterface trusts input from CVE API services
Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and red_url parameters.
A reflected cross-site scripting (XSS) vulnerability in the login_newpwd.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda parameter.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.