Comparison Overview

KT&G

VS

BAT

KT&G

None
Last Update: 2025-12-09
Between 800 and 849

- Manufacturing and distribution of tobacco products. - Manufacturing and distribution of red ginseng, red ginseng products, and other health foods. - Manufacturing and distribution of food and beverage products. - Development, manufacturing and distribution of drugs, bio tech drugs,non pharmaceutical health complements, medical goods, medical equipment, and other related products. - Manufacturing and distribution of tobacco products related materials. - Trading - Real Estate, rental, and housing development business - Tobacco crop cultivation support - business related to governmental-commissioned testing, inspection, verification, and standardization. - Development, production and selling of tobacco and ginseng plant seeds - Business related to intellectual property management and licensing o brands,trademarks, and production technologies. - Research activities related to those mentioned above.

NAICS: 3122
NAICS Definition: Tobacco Manufacturing
Employees: 2,656
Subsidiaries: 1
12-month incidents
0
Known data breaches
0
Attack type number
0

BAT

4 Temple Place, None, London, None, GB, WC2R 2PG
Last Update: 2025-12-09
Between 800 and 849

We are BAT, a truly global company with a highly successful past and a transformational future. Founded in 1902, we have evolved into one of the world’s leading consumer goods businesses, the only truly global company in our sector. As a leading FTSE company, we are spread across six continents and have more than 46,000 people worldwide. Our purpose is to build A Better Tomorrow™ by reducing the health impact of our business through offering a greater choice of enjoyable and less risky*† products for our consumers. We are becoming a business that defines itself, not by the product it sells, but by the consumer needs that it meets. We are creating the brands of the future – brands with purpose. Digital transformation, technology and innovation are driving this change. And it will be actioned by our people, through our collaborative company culture and values. And while we have a long and proud history of sustainability achievements, we are transforming from being a business where sustainability has always been important to one where it is front and centre in all that we do. Our ESG efforts and commitment to high standards placed us on the CDP A list for climate change in 2022. We have also been in the prestigious Dow Jones Sustainability Indices for 21 years. Since 2018, we have been named as a Global Top Employer for our long-standing commitment to sustaining a diverse and inclusive culture and providing career opportunities for all of our people around the world. Together, we are building A Better Tomorrow™. * Based on the weight of evidence and assuming a complete switch from cigarette smoking. These products are not risk free and are addictive. † Our Vapour product Vuse (including Alto, Solo, Ciro and Vibe), and certain products, including Velo, Grizzly, Kodiak, and Camel Snus, which are sold in the U.S., are subject to FDA regulation and no reduced-risk claims will be made as to these products without agency clearance.

NAICS: 3122
NAICS Definition: Tobacco Manufacturing
Employees: 46,297
Subsidiaries: 3
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/kt&g.jpeg
KT&G
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/british-american-tobacco.jpeg
BAT
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
KT&G
100%
Compliance Rate
0/4 Standards Verified
BAT
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Tobacco Manufacturing Industry Average (This Year)

No incidents recorded for KT&G in 2025.

Incidents vs Tobacco Manufacturing Industry Average (This Year)

No incidents recorded for BAT in 2025.

Incident History — KT&G (X = Date, Y = Severity)

KT&G cyber incidents detection timeline including parent company and subsidiaries

Incident History — BAT (X = Date, Y = Severity)

BAT cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/kt&g.jpeg
KT&G
Incidents

No Incident

https://images.rankiteo.com/companyimages/british-american-tobacco.jpeg
BAT
Incidents

No Incident

FAQ

BAT company demonstrates a stronger AI Cybersecurity Score compared to KT&G company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, BAT company has disclosed a higher number of cyber incidents compared to KT&G company.

In the current year, BAT company and KT&G company have not reported any cyber incidents.

Neither BAT company nor KT&G company has reported experiencing a ransomware attack publicly.

Neither BAT company nor KT&G company has reported experiencing a data breach publicly.

Neither BAT company nor KT&G company has reported experiencing targeted cyberattacks publicly.

Neither KT&G company nor BAT company has reported experiencing or disclosing vulnerabilities publicly.

Neither KT&G nor BAT holds any compliance certifications.

Neither company holds any compliance certifications.

BAT company has more subsidiaries worldwide compared to KT&G company.

BAT company employs more people globally than KT&G company, reflecting its scale as a Tobacco Manufacturing.

Neither KT&G nor BAT holds SOC 2 Type 1 certification.

Neither KT&G nor BAT holds SOC 2 Type 2 certification.

Neither KT&G nor BAT holds ISO 27001 certification.

Neither KT&G nor BAT holds PCI DSS certification.

Neither KT&G nor BAT holds HIPAA certification.

Neither KT&G nor BAT holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A weakness has been identified in itsourcecode Online Pet Shop Management System 1.0. This vulnerability affects unknown code of the file /pet1/addcnp.php. This manipulation of the argument cnpname causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in Tenda AX9 22.03.01.46. This affects the function image_check of the component httpd. The manipulation results in use of weak hash. It is possible to launch the attack remotely. A high complexity level is associated with this attack. It is indicated that the exploitability is difficult. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 2.6
Severity: HIGH
AV:N/AC:H/Au:N/C:N/I:P/A:N
cvss3
Base: 3.7
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
cvss4
Base: 6.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A weakness has been identified in code-projects Student File Management System 1.0. This issue affects some unknown processing of the file /admin/update_student.php. This manipulation of the argument stud_id causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in code-projects Student File Management System 1.0. This vulnerability affects unknown code of the file /admin/save_user.php. The manipulation of the argument firstname results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown part of the file /admin/update_user.php. The manipulation of the argument user_id leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X