Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

KongKong
VS
DiDiDiDi
Kong

Kong

San Francisco, 94105, US

Last Update: 30/03/2026

View Profile
758/1000Fair

Powering the API World. No AI without APIs. Kong enables any company to become an API-first company. Kong’s unified cloud native API platform is easy to use and works in any environment — unleashing developer productivity, automating security, and boosting performance ...

NAICS:5112
NAICS Definition:Software Publishers
Employees:922
Subsidiaries:0
12-month incidents
0
Known data breaches
0
Attack type number
1
DiDi

DiDi

-, Global, CN

Last Update: 02/04/2026

View Profile
Between 750 and 799
http://www.didiglobal.com
755/1000Fair

DiDi Global Inc. is a leading mobility technology platform. It offers a wide range of app-based services across Asia Pacific, Latin America, and other global markets, including ride hailing, taxi hailing, designated driving, hitch and other forms of shared mobility as w...

NAICS:5112
NAICS Definition:Software Publishers
Employees:30,646
Subsidiaries:0
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Ranges Comparison

Based On Specific Ai Models Category
Kong

Kong

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
DiDi

DiDi

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Software Development Industry Avg (This Year)

No incidents recorded for Kong in 2026.

Incidents

Incidents vs Software Development Industry Avg (This Year)

No incidents recorded for DiDi in 2026.

Incidents

Incident History - Kong (X = Date, Y = Severity)

Kong cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - DiDi (X = Date, Y = Severity)

DiDi cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
Kong

Kong

Incidents
🔒 Incident : Vulnerability
KON301062025
DiDi

DiDi

Incidents
🔒 Incident : Breach
DID3292232091125

FAQ

Between Kong company and DiDi company, which one has the best AI Cybersecurity Score ?
Between Kong company and DiDi company, which one has experienced more cyber incidents in the past ?
Between Kong company and DiDi company, which one has experienced more cyber incidents this year ?
Between Kong company and DiDi company, which one has experienced at least one ransomware attack ?
Between Kong company and DiDi company, which one has experienced at least one data breach ?
Between Kong company and DiDi company, which one has experienced at least one targeted cyberattack ?
Between Kong company and DiDi company, which one has experienced at least one vulnerability ?
Between Kong company and DiDi company, which one holds the most compliance certifications ?
Between Kong company and DiDi company, which one holds the fewest compliance certifications ?
Between Kong company and DiDi company, which one has the most subsidiaries ?
Between Kong company and DiDi company, which one has the largest number of employees ?
Between Kong and DiDi, which company holds both SOC 2 Type 1 certifications ?
Between Kong and DiDi, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - Kong or DiDi ?
Which company is PCI DSS compliant - Kong or DiDi ?
Between Kong and DiDi, which company complies with HIPAA regulations for healthcare data ?
Between Kong and DiDi, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-9693
SUMMARY

Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membership records when a user is removed from or leaves a team, which allows a previously removed user who is later re-invited to the team to view private channel thread root post content and metadata via the team threads API.. Mattermost Advisory ID: MMSA-2026-00682

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 3.5)
CVSS3
Base Score: 3.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
IMPACT SCORE
1.4
EXPLOITABILITY
2.1
CVE-2026-75587
SUMMARY

Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a diagnostics report, which allows a local attacker with access to a user's diagnostics report or log files to obtain the plaintext pre-auth secret configured for a connected server via inspecting the Server Connectivity (Step-3) diagnostics output. Mattermost Advisory ID: MMSA-2026-00716

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 3.6)
CVSS3
Base Score: 3.6
Complexity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N
IMPACT SCORE
1.4
EXPLOITABILITY
1.8
CVE-2026-75078
SUMMARY

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSHRM1.php. Performing a manipulation of the argument course results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 4.3)
CVSS2
Base Score: 5.0
Complexity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
CVSS3
Base Score: 4.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
CVSS4
Base Score: 2.1
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
1.4
EXPLOITABILITY
2.8
CVE-2026-67961
SUMMARY

An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mechanism of the Invoke script execution.

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
IMPACT SCORE
NA
EXPLOITABILITY
NA
CVE-2026-67919
SUMMARY

An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.java, installFromUri method, and DefaultPluginApplicationContextFactory components

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
IMPACT SCORE
NA
EXPLOITABILITY
NA