GBMSLBMRGELGEDP A.I CyberSecurity Scoring
03/02/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for GROUPE BON MARCHÉ : Samaritaine, Le Bon Marché Rive Gauche et La Grande Epicerie de Paris. in 2026.
No incidents recorded for GROUPE BON MARCHÉ : Samaritaine, Le Bon Marché Rive Gauche et La Grande Epicerie de Paris. in 2026.
No incidents recorded for GROUPE BON MARCHÉ : Samaritaine, Le Bon Marché Rive Gauche et La Grande Epicerie de Paris. in 2026.
O Magalu é o maior ecossistema para comprar e vender no Brasil, uma plataforma digital, com pontos físicos e calor humano. Desde maio de 2011, a companhia é listada no Novo Mercado da B3. Nos últimos anos, fez 14 aquisições, consolidando sua presença nacional. Além de 1.400 lojas em 27 estados do país, o Magalu conta com mais de dez marcas online como: Netshoes, Zattini, Shoestock, Estante Virtual, Época Cosméticos, Jovem Nerd, Kabum, CanalTech, Com School, Steal The Look - além de milhares de sellers em seu marketplace e um superaplicativo com uma base instalada de 21 milhões de usuários ativos. Atualmente, o Magalu emprega cerca de 40 000 funcionários. Sua política de gestão de pessoas foi reconhecida com diversos prêmios. Há mais de 20 anos está entre as melhores empresas para se trabalhar nos rankings da revista VocêS/A e do Great Place to Work Institute. Quer saber um pouco mais? Acesse a nossa página de carreiras: https://carreiras.magazineluiza.com.br/
7-Eleven introduced the world to convenience. And in return, the world made us the #1 convenience retailer. It started with a simple idea – give customers what they want, when and where they want it. That was 1927. And what started on a single ice dock in Dallas, Texas, has since grown to more than 70,000 locations in 18 countries around the globe. The idea may have been simple, but it started a retail revolution.
Founded in 1946, Tupperware's signature container created the modern food storage category that revolutionized the way the world stores, serves and prepares food. Today, we continue to innovate for the benefit of people and our planet by designing innovative, functional and environmentally responsible products that people love and trust. With a purpose to nurture a better future, Tupperware products are alternatives to single-use items - meant to reduce food waste and single-use plastic waste. We distribute our products into nearly 80 countries primarily through independent representatives around the world.
Ahold Delhaize is one of the world’s largest food retail groups, we are a leader in supermarkets and e-commerce, and a company at the forefront of sustainable retailing. Our local brands employ around 393,000 associates in around 9,400 local grocery, small format, and specialty stores. Our family of brands include Albert, Albert Heijn, AB Vassilopoulos, bol, Delhaize, ENA, Etos, Food Lion, Gall & Gall, The GIANT Company, Giant Food, Hannaford, Maxi, Mega Image, Profi, Stop & Shop, and Super Indo. We encourage associates to develop to their full potential, gain new skills and build the right capabilities for the future. As a global company, we provide many challenging opportunities to learn and try new things. We value fresh insights and new perspectives because they help us understand and serve customers and communities better, and we strive to be a better place to work where our associates are welcome just the way they are. Join us in our journey to inspire everyone to eat and live better, for a healthier future for people and the planet.
“DMart is a one-stop supermarket chain that aims to offer customers a wide range of basic home and personal products under one roof. Each DMart store stocks home utility products - including food, toiletries, beauty products, garments, kitchenware, bed and bath linen, home appliances and more - available at competitive prices that our customers appreciate. Our core objective is to offer customers good products at great value. DMart was started by Mr. Radhakishan Damani and his family to address the growing needs of the Indian family. From the launch of its first store in Powai in 2002, DMart today has a well-established presence in 439 locations across Maharashtra, Gujarat, Andhra Pradesh, Madhya Pradesh, Karnataka, Telangana, Chhattisgarh, NCR, Tamil Nadu, Punjab and Rajasthan. With our mission to be the lowest priced retailer in the regions we operate, our business continues to grow with new locations planned in more cities. The supermarket chain of DMart stores is owned and operated by Avenue Supermarts Ltd. (ASL). The company has its headquarters in Mumbai.”
Speedway operates across the U.S., predominately in the Midwest and East Coast. In May 2021, 7-Eleven acquired 3,800 Speedway Stores from Marathon Petroleum Corp., increasing 7-Eleven’s total number of stores to more than 13,000 in the U.S. and Canada and allowing 7-Eleven to bring convenience to more customers than ever before. Learn more about 7-Eleven and their family of brands here: https://corp.7-eleven.com/corp/about
Titan Company Ltd is the organization that brought about a paradigm shift in the Indian watch market when it introduced its futuristic quartz technology, complemented by international styling. With India's two most recognized and loved brands Titan and Tanishq to its credit, Titan Company Ltd is the fifth largest integrated own brand watch manufacturer in the world. The success story began in 1984 with a joint venture between the Tata Group and the Tamil Nadu Industrial Development Corporation. Presenting Titan quartz watches that sported an international look, Titan Company Ltd transformed the Indian watch market. After Sonata, a value brand of functionally styled watches at affordable prices, Titan Company Ltd reached out to the youth segment with Fastrack, its third brand, trendy and chic. The company has sold 150 million watches world over and manufactures over 15 million watches every year. Backed by over 6,000 employees, two exclusive design studios for watches and jewellery, 10 manufacturing units, and innumerable admirers’ world over, Titan Company Ltd continues to grow and set new standards for innovation and quality. The organization is all geared to repeat the Titan and Tanishq success story with each new offering. https://www.facebook.com/CareersAtTitan/
We’ve come a long way since it all started over 380 years ago. We’ve built up a network of 11,500 branches across the country. To give you a sense of how big that is, we’ve got more branches than the four biggest banks in the UK put together. Or put simply, we’re the largest retail network in the UK. So we’re there for our customers, wherever they are. But our biggest branch by far is our website, which gets nearly 1 million visitors a week, so we’re building on our digital strategy too. As you can imagine, a business this big has lots of opportunities in lots of different areas. So we’re always looking out for enthusiastic, ambitious and customer-focused people to join us. And we’re striving to become “simpler to run, better for customers and a great place to work”, so innovation is really important. We’re confident the changes we make will be for the best, benefiting both our people and our customers. Social Media Policy: https://bit.ly/3gwSgEl
Leroy Merlin is a major player in the global DIY market. We help people around the world with all their home improvement projects, from renovations and extensions, to decoration and repairs... We offer a wide range of DIY solutions that cover plumbing, lighting, heating, electricity, sanitation, security, cooking, gardening and much more. At Leroy Merlin, we believe that people are at the heart of any business. This commitment, based on our Human First strategy, has allowed us to be regularly reward by the “Great Place to Work” Institute and "Top Employers" Institute in different countries. Adapting to local markets and promoting partnerships are key drivers for Leroy Merlin. We believe that it's only by building long-lasting relationships that we can create value for everyone: our customers, co-workers, suppliers, local markets and stakeholders.
Latest updates, reports, and threat intel affecting the global network.
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in elixir-grpc grpc (GRPC.Compressor.Gzip, GRPC.Message modules) allows a denial of service via a gzip decompression bomb. This vulnerability is associated with program files lib/grpc/compressor/gzip.ex, lib/grpc/message.ex and program routines 'Elixir.GRPC.Compressor.Gzip':decompress/1, 'Elixir.GRPC.Message':from_data/2. 'Elixir.GRPC.Compressor.Gzip':decompress/1 calls :zlib.gunzip/1 directly on attacker-controlled bytes with no decompressed-size limit, ratio check, or incremental decoding. Because this module is the registered gzip GRPC.Compressor implementation, it is invoked automatically whenever an incoming gRPC frame carries the grpc-encoding: gzip header. :zlib.gunzip/1 allocates the entire decompressed result as a single binary, so a small highly compressible payload (for example a few kilobytes of zeros, which gzip compresses at roughly 1000:1) expands to multiple gigabytes inside a single call. The max_receive_message_length limit is enforced only against the already-decompressed message, so it provides no protection. An unauthenticated remote peer can send a single crafted frame to exhaust the BEAM node's heap and trigger an out-of-memory kill. This issue affects grpc: from 0.4.0 before 1.0.0.
Allocation of Resources Without Limits or Throttling vulnerability in elixir-grpc grpc allows unauthenticated attackers to exhaust the BEAM's memory and crash the server by streaming a large or slow-trickle unary request body. 'Elixir.GRPC.Server.Adapters.Cowboy.Handler':read_full_body/3 (lib/grpc/server/adapters/cowboy/handler.ex) accumulates every received chunk into a single growing binary with no size cap. Additionally, when the client omits the grpc-timeout header, the per-chunk read timeout resolves to :infinity, allowing a slow-trickle client to keep the connection alive indefinitely while memory grows. A single connection is sufficient to exhaust server memory and crash the node. This issue affects grpc from 0.3.1 before 1.0.0.
Deserialization of Untrusted Data and Allocation of Resources Without Limits or Throttling vulnerabilities in elixir-grpc grpc allow unauthenticated attackers to crash the BEAM node via atom table exhaustion and, when a decoded term flows into a call site that invokes it, achieve remote code execution on the server. 'Elixir.GRPC.Codec.Erlpack':decode/2 (lib/grpc/codec/erlpack.ex) calls :erlang.binary_to_term/1 on the raw gRPC message body without the :safe option, no size bound, and no type guard. Any unauthenticated peer that sends a request with Content-Type: application/grpc+erlpack can send a crafted payload that mints arbitrary new atoms (which are never garbage-collected, exhausting the bounded atom table and crashing the VM) or that encodes a fun term which, if applied anywhere downstream, executes attacker-controlled code inside the server process. This issue affects grpc from 0.4.0 before 1.0.0.
The browserstack-cypress-cli is BrowserStack's CLI which allows users to run Cypress tests on BrowserStack. Versions prior to 1.36.4 are vulnerable to OS command injection via the cypress_config_file configuration parameter. In readCypressConfigUtil.js, the loadJsFile() function constructs a shell command by interpolating the user-controlled cypress_config_filepath value into a template literal, then executes it via child_process.execSync(). Shell metacharacters in the config path (specifically " and ;) allow breaking out of the quoted argument and injecting arbitrary commands. This issue has been fixed in version 1.36.6.
Authorization Bypass Through User-Controlled Key vulnerability in elixir-grpc grpc allows authenticated attackers to access or modify resources belonging to other users by smuggling a conflicting value for any path-bound field via the query string or request body. In 'Elixir.GRPC.Server.Transcode':map_request/5 (lib/grpc/server/transcode.ex), all three clauses use Map.merge/2 with path bindings as the first argument, giving them the lowest merge precedence. A request such as GET /users/me/profile?user_id=victim (or a POST with {"user_id": "victim"} when body: "*") yields a decoded protobuf struct where the path-bound field carries the attacker-supplied value rather than the router-extracted value. Any handler that uses the path-bound field for authorization, multi-tenancy scoping, or ownership checks is silently bypassed. This issue affects grpc from 0.8.0 before 1.0.0.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.