Comparison Overview
LightStream by Truist

LightStream by Truist
San Diego, 92101, US
Last Update: 15/02/2026
LightStream is the nation’s premier online consumer lender. Our mission is to innovate, invent and constantly seek a brighter approach to money. The freedom to do that comes from the fact that we’re backed by Truist, the seventh-largest bank holding company in America, ...

Goldman Sachs
200 West Street, New York, 10282, US
Last Update: 20/05/2026
We aspire to be the world’s most exceptional financial institution, united by our shared values of partnership, client service, integrity, and excellence. Operating at the center of capital markets, we act as one firm, mobilizing our people, capital, and ideas to deli...
Compliance Ranges Comparison

LightStream by Truist







Goldman Sachs






Benchmark & Cyber Underwriting Signals
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for LightStream by Truist in 2026.
Incidents vs Financial Services Industry Avg (This Year)
Goldman Sachs has 8.26% fewer incidents than the average of all companies with at least one recorded incident.
Incident History - LightStream by Truist (X = Date, Y = Severity)
LightStream by Truist cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Goldman Sachs (X = Date, Y = Severity)
Goldman Sachs cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

LightStream by Truist

Goldman Sachs
FAQ
Latest Global CVEs
Improper authorization in Microsoft Exchange Online allows an unauthorized attacker to disclose information over a network.
Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network.
Exposure of sensitive information to an unauthorized actor in Microsoft Graph allows an authorized attacker to disclose information over a network.
Improper neutralization of special elements in output used by a downstream component ('injection') in Copilot Chat (Microsoft Edge) allows an unauthorized attacker to disclose information over a network.
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an authorized attacker to execute code over a network.