Comparison Overview

Kimberly-Clark

VS

Stanley Black & Decker, Inc.

Kimberly-Clark

351 Phelps Dr, None, Irving, TX, US, 75038
Last Update: 2025-12-10

As a Kimberly-Clark employee, you have an opportunity to impact billions of lives through the products we make, the workplaces we create and the communities we serve. The proof is in our purpose – Here, we are creating Better Care for a Better World and it starts with YOU! Learn more about us and see what inspires you, careersatkc.com. Through collaborative teams that push boundaries and endless opportunities to work with some of the world’s most recognized brands, at Kimberly-Clark you and your purpose are in the driver seat of your career. Huggies®. Kleenex®. Andrex®. Scott®. Kotex®. Poise®. Depend®. The proof is in our products – For 150 years, our brands have been brought to market by a team of purpose-led innovators dedicated to creating Better Care for a Better World. And it takes the right people—in the right jobs and the right place—to make that happen. Join our 45,000+ employees who are changing the world for the better and generously giving back to communities and causes around the globe. Better Care for a Better World starts by taking care of you and giving you what you need to succeed. We’re dedicated to breaking down barriers to speed decision making and creating a workplace with relentless focus on our consumers and growing our people, like you. The proof is in our people – we've been rated as one of Forbes 2022 World's Best Employers, and it's because of the caring people and the amazing culture that brings out the best in everyone. Join our employees in our amazing culture that brings out the best in everyone. To make Kimberly-Clark's social media channels an engaging, respectful environment, here are our Community Guidelines: https://www.kimberly-clark.com/en-us/company/community-guidelines

NAICS: 30
NAICS Definition: Manufacturing
Employees: 34,282
Subsidiaries: 0
12-month incidents
0
Known data breaches
1
Attack type number
1

Stanley Black & Decker, Inc.

1000 Stanley Drive, New Britain, CT, 06053, US
Last Update: 2025-12-09

For the builders and protectors, for the makers and explorers, for those shaping and reshaping our world through hard work and inspiration, Stanley Black & Decker provides the tools and innovative solutions you can trust to get the job done—and we have since 1843. You repair your home and car with the tools we provide. Your car and your phone are secured with our fasteners. And the roads you drive on, the bridges you cross, the energy you consume, all of these most likely came to you via one of our infrastructure systems. We join forces to bring together the best of the best to create practical, meaningful products and services that make life easier—empowering people to do better, safer, more significant work. Innovation and excellence have powered our success, but we know there’s more we can do for the world and those who make it. Across our businesses, we’re investing in breakthrough innovation and digital excellence, striving for outperformance and increasing our focus on social responsibility. We define success as: delivering value to our customers, colleagues and communities. Our commitment to quality, safety and sustainability helps us on our path to becoming the type of uniquely human-centered global industrial company that keeps every stakeholder in mind, while helping to make the world better.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 25,799
Subsidiaries: 15
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/kimberly-clark.jpeg
Kimberly-Clark
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/stanley-black-decker-inc.jpeg
Stanley Black & Decker, Inc.
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Kimberly-Clark
100%
Compliance Rate
0/4 Standards Verified
Stanley Black & Decker, Inc.
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for Kimberly-Clark in 2025.

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for Stanley Black & Decker, Inc. in 2025.

Incident History — Kimberly-Clark (X = Date, Y = Severity)

Kimberly-Clark cyber incidents detection timeline including parent company and subsidiaries

Incident History — Stanley Black & Decker, Inc. (X = Date, Y = Severity)

Stanley Black & Decker, Inc. cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/kimberly-clark.jpeg
Kimberly-Clark
Incidents

Date Detected: 10/2017
Type:Breach
Attack Vector: Compromised Credentials
Motivation: Unknown
Blog: Blog
https://images.rankiteo.com/companyimages/stanley-black-decker-inc.jpeg
Stanley Black & Decker, Inc.
Incidents

No Incident

FAQ

Kimberly-Clark company demonstrates a stronger AI Cybersecurity Score compared to Stanley Black & Decker, Inc. company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Kimberly-Clark company has historically faced a number of disclosed cyber incidents, whereas Stanley Black & Decker, Inc. company has not reported any.

In the current year, Stanley Black & Decker, Inc. company and Kimberly-Clark company have not reported any cyber incidents.

Neither Stanley Black & Decker, Inc. company nor Kimberly-Clark company has reported experiencing a ransomware attack publicly.

Kimberly-Clark company has disclosed at least one data breach, while the other Stanley Black & Decker, Inc. company has not reported such incidents publicly.

Neither Stanley Black & Decker, Inc. company nor Kimberly-Clark company has reported experiencing targeted cyberattacks publicly.

Neither Kimberly-Clark company nor Stanley Black & Decker, Inc. company has reported experiencing or disclosing vulnerabilities publicly.

Neither Kimberly-Clark nor Stanley Black & Decker, Inc. holds any compliance certifications.

Neither company holds any compliance certifications.

Stanley Black & Decker, Inc. company has more subsidiaries worldwide compared to Kimberly-Clark company.

Kimberly-Clark company employs more people globally than Stanley Black & Decker, Inc. company, reflecting its scale as a Manufacturing.

Neither Kimberly-Clark nor Stanley Black & Decker, Inc. holds SOC 2 Type 1 certification.

Neither Kimberly-Clark nor Stanley Black & Decker, Inc. holds SOC 2 Type 2 certification.

Neither Kimberly-Clark nor Stanley Black & Decker, Inc. holds ISO 27001 certification.

Neither Kimberly-Clark nor Stanley Black & Decker, Inc. holds PCI DSS certification.

Neither Kimberly-Clark nor Stanley Black & Decker, Inc. holds HIPAA certification.

Neither Kimberly-Clark nor Stanley Black & Decker, Inc. holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, there is no handler for JSON parsing errors; SyntaxError from express.json() includes user input in the error message, which gets reflected in responses. User input (including HTML/JavaScript) can be exposed in error responses, creating an XSS risk if Content-Type isn't strictly enforced. This issue does not have a fix at the time of publication.

Risk Information
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, when creating prompts, JSON requests are sent to define and modify the prompts via PATCH endpoint for prompt groups (/api/prompts/groups/:groupId). However, the request bodies are not sufficiently validated for proper input, enabling users to modify prompts in a way that was not intended as part of the front end system. The patchPromptGroup function passes req.body directly to updatePromptGroup() without filtering sensitive fields. This issue is fixed in version 0.8.1.

Risk Information
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, when a user posts a question, the iconURL parameter of the POST request can be modified by an attacker. The malicious code is then stored in the chat which can then be shared to other users. When sharing chats with a potentially malicious “tracker”, resources loaded can lead to loss of privacy for users who view the chat link that is sent to them. This issue is fixed in version 0.8.1.

Risk Information
cvss4
Base: 8.6
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MaxKB is an open-source AI assistant for enterprise. Versions 2.3.1 and below have improper file permissions which allow attackers to overwrite the built-in dynamic linker and other critical files, potentially resulting in privilege escalation. This issue is fixed in version 2.4.0.

Risk Information
cvss3
Base: 8.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description

MaxKB is an open-source AI assistant for enterprise. In versions 2.3.1 and below, the tool module allows an attacker to escape the sandbox environment and escalate privileges under certain concurrent conditions. This issue is fixed in version 2.4.0.

Risk Information
cvss3
Base: 8.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H