ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

LiveAuctioneers is the leading online auction marketplace for one-of-a-kind items, rare collectibles and coveted goods. LiveAuctioneers is part of Auction Technology Group plc (LON:ATG), the operator of the world’s leading marketplaces and auction services for online auctions, seamlessly connecting bidders to an underexplored world of secondary goods that have been curated by thousands of trusted auctioneer experts.

LiveAuctioneers A.I CyberSecurity Scoring

LiveAuctioneers

Company Details

Linkedin ID:

liveauctioneers

Employees number:

55

Number of followers:

4,303

NAICS:

513

Industry Type:

Technology, Information and Internet

Homepage:

liveauctioneers.com

IP Addresses:

0

Company ID:

LIV_2486005

Scan Status:

In-progress

AI scoreLiveAuctioneers Risk Score (AI oriented)

Between 700 and 749

https://images.rankiteo.com/companyimages/liveauctioneers.jpeg
LiveAuctioneers Technology, Information and Internet
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreLiveAuctioneers Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/liveauctioneers.jpeg
LiveAuctioneers Technology, Information and Internet
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

LiveAuctioneers Company CyberSecurity News & History

Past Incidents
2
Attack Types
1
EntityTypeSeverityImpactSeenBlog DetailsIncident DetailsView
LiveAuctioneersBreach8546/2020
Rankiteo Explanation :
Attack with significant impact with customers data leaks

Description: The Washington State Office of the Attorney General reported a data breach involving LiveAuctioneers affecting 38,523 residents. The breach occurred on June 19, 2020, due to a cyberattack that exploited a third-party software solution, leading to the exposure of user names, email addresses, and hashed passwords. The breach was discovered on July 11, 2020, and notification was provided on September 3, 2020.

LiveAuctioneers, LLCBreach8546/2020
Rankiteo Explanation :
Attack with significant impact with customers data leaks

Description: The California Office of the Attorney General reported a data breach involving LiveAuctioneers, LLC on September 10, 2020. The breach occurred on June 19, 2020, and involved unauthorized access to user account information, including names, email addresses, mailing addresses, phone numbers, visit history, and decrypted passwords, although complete payment card numbers were not accessed.

LiveAuctioneers
Breach
Severity: 85
Impact: 4
Seen: 6/2020
Blog:
Rankiteo Explanation
Attack with significant impact with customers data leaks

Description: The Washington State Office of the Attorney General reported a data breach involving LiveAuctioneers affecting 38,523 residents. The breach occurred on June 19, 2020, due to a cyberattack that exploited a third-party software solution, leading to the exposure of user names, email addresses, and hashed passwords. The breach was discovered on July 11, 2020, and notification was provided on September 3, 2020.

LiveAuctioneers, LLC
Breach
Severity: 85
Impact: 4
Seen: 6/2020
Blog:
Rankiteo Explanation
Attack with significant impact with customers data leaks

Description: The California Office of the Attorney General reported a data breach involving LiveAuctioneers, LLC on September 10, 2020. The breach occurred on June 19, 2020, and involved unauthorized access to user account information, including names, email addresses, mailing addresses, phone numbers, visit history, and decrypted passwords, although complete payment card numbers were not accessed.

Ailogo

LiveAuctioneers Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for LiveAuctioneers

Incidents vs Technology, Information and Internet Industry Average (This Year)

No incidents recorded for LiveAuctioneers in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for LiveAuctioneers in 2025.

Incident Types LiveAuctioneers vs Technology, Information and Internet Industry Avg (This Year)

No incidents recorded for LiveAuctioneers in 2025.

Incident History — LiveAuctioneers (X = Date, Y = Severity)

LiveAuctioneers cyber incidents detection timeline including parent company and subsidiaries

LiveAuctioneers Company Subsidiaries

SubsidiaryImage

LiveAuctioneers is the leading online auction marketplace for one-of-a-kind items, rare collectibles and coveted goods. LiveAuctioneers is part of Auction Technology Group plc (LON:ATG), the operator of the world’s leading marketplaces and auction services for online auctions, seamlessly connecting bidders to an underexplored world of secondary goods that have been curated by thousands of trusted auctioneer experts.

Loading...
similarCompanies

LiveAuctioneers Similar Companies

IndiaMART InterMESH Limited

IndiaMART is India's largest online B2B marketplace, connecting buyers with suppliers across a wide array of industries. IndiaMART provides a platform for Small & Medium Enterprises (SMEs), large enterprises, and individual buyers, helping them access diverse portfolios of quality products. Since

Sohu.com

Sohu.com Inc. (NASDAQ: SOHU) is China's premier online brand and indispensable to the daily life of millions of Chinese, providing a network of web properties and community based/web 2.0 products which offer the vast Sohu user community a broad array of choices regarding information, entertainment a

Indeed

More people find jobs on Indeed than anywhere else. Indeed is the #1 job site in the world (Comscore, Total Visits, March 2024) and allows job seekers to search millions of jobs in more than 60 countries and 28 languages. Indeed has more than 580 million Job Seeker Profiles. Every day, job seekers u

We are a technology company that unlocks access to energy for the benefit of all. As innovators, that’s been our mission for nearly a century. Today, we face a global imperative to create a future with more energy, but less carbon. Our diverse, innovative change makers are focused on going further i

As a leading internet technology company based in China, NetEase, Inc. (NASDAQ: NTES and HKEX:9999, "NetEase") provides premium online services centered around content creation. With extensive offerings across its expanding gaming ecosystem, NetEase develops and operates some of China's most popula

OYO is a global platform that aims to empower entrepreneurs and small businesses with hotels and homes by providing full-stack technology products and services that aims to increase revenue and ease operations; bringing easy-to-book, affordable, and trusted accommodation to customers around the worl

Jumia Group

Jumia (NYSE :JMIA) is a leading e-commerce platform in Africa. It is built around a marketplace, Jumia Logistics, and JumiaPay. The marketplace helps millions of consumers and sellers to connect and transact. Jumia Logistics enables the delivery of millions of packages through our network of local p

Avnet

Avnet is a global electronic components distributor with extensive design, product, marketing and supply chain expertise for customers and suppliers at every stage of the product lifecycle. For the past 100 years, Avnet has helped its customers and suppliers around the world realize the transformati

The Death Star

The mission of the Death Star is to keep the local systems "in line". As we have recently dissolved our Board of Directors, there is little resistance to our larger goal of universal domination. Our Stormtroopers are excellent shots and operate with our Navy, and are fielded like marines - sep

newsone

LiveAuctioneers CyberSecurity News

October 21, 2024 08:55 PM
Live Auction Marketplace Confirms Data Breach After Bad Actor Puts User Database Up for Sale on The Dark Web

LiveAuctioneers, an online auction platform headquartered in the United States, has confirmed a security incident after a database containing 3.4 million user...

July 15, 2020 07:00 AM
LiveAuctioneers data breach: Millions of cracked passwords for sale, say researchers | The Daily Swig

Antiques marketplace blames breach on data processing partner LiveAuctioneers, an online antiques marketplace, has revealed that it suffered...

July 13, 2020 07:00 AM
LiveAuctioneers reports data breach after user records sold online

LiveAuctioneers has disclosed a data breach after a well-known data breach broker began selling 3.4 million stolen user records on a hacker forum.

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

LiveAuctioneers CyberSecurity History Information

Official Website of LiveAuctioneers

The official website of LiveAuctioneers is https://www.liveauctioneers.com.

LiveAuctioneers’s AI-Generated Cybersecurity Score

According to Rankiteo, LiveAuctioneers’s AI-generated cybersecurity score is 714, reflecting their Moderate security posture.

How many security badges does LiveAuctioneers’ have ?

According to Rankiteo, LiveAuctioneers currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does LiveAuctioneers have SOC 2 Type 1 certification ?

According to Rankiteo, LiveAuctioneers is not certified under SOC 2 Type 1.

Does LiveAuctioneers have SOC 2 Type 2 certification ?

According to Rankiteo, LiveAuctioneers does not hold a SOC 2 Type 2 certification.

Does LiveAuctioneers comply with GDPR ?

According to Rankiteo, LiveAuctioneers is not listed as GDPR compliant.

Does LiveAuctioneers have PCI DSS certification ?

According to Rankiteo, LiveAuctioneers does not currently maintain PCI DSS compliance.

Does LiveAuctioneers comply with HIPAA ?

According to Rankiteo, LiveAuctioneers is not compliant with HIPAA regulations.

Does LiveAuctioneers have ISO 27001 certification ?

According to Rankiteo,LiveAuctioneers is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of LiveAuctioneers

LiveAuctioneers operates primarily in the Technology, Information and Internet industry.

Number of Employees at LiveAuctioneers

LiveAuctioneers employs approximately 55 people worldwide.

Subsidiaries Owned by LiveAuctioneers

LiveAuctioneers presently has no subsidiaries across any sectors.

LiveAuctioneers’s LinkedIn Followers

LiveAuctioneers’s official LinkedIn profile has approximately 4,303 followers.

NAICS Classification of LiveAuctioneers

LiveAuctioneers is classified under the NAICS code 513, which corresponds to Others.

LiveAuctioneers’s Presence on Crunchbase

Yes, LiveAuctioneers has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/live-auctioneers.

LiveAuctioneers’s Presence on LinkedIn

Yes, LiveAuctioneers maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/liveauctioneers.

Cybersecurity Incidents Involving LiveAuctioneers

As of November 28, 2025, Rankiteo reports that LiveAuctioneers has experienced 2 cybersecurity incidents.

Number of Peer and Competitor Companies

LiveAuctioneers has an estimated 12,595 peer or competitor companies worldwide.

What types of cybersecurity incidents have occurred at LiveAuctioneers ?

Incident Types: The types of cybersecurity incidents that have occurred include Breach.

Incident Details

Can you provide details on each incident ?

Incident : Data Breach

Title: LiveAuctioneers Data Breach

Description: Unauthorized access to user account information, including names, email addresses, mailing addresses, phone numbers, visit history, and decrypted passwords.

Date Detected: 2020-06-19

Date Publicly Disclosed: 2020-09-10

Type: Data Breach

Attack Vector: Unauthorized Access

Incident : Data Breach

Title: LiveAuctioneers Data Breach

Description: The Washington State Office of the Attorney General reported a data breach involving LiveAuctioneers affecting 38,523 residents. The breach occurred on June 19, 2020, due to a cyberattack that exploited a third-party software solution, leading to the exposure of user names, email addresses, and hashed passwords. The breach was discovered on July 11, 2020, and notification was provided on September 3, 2020.

Date Detected: 2020-07-11

Date Publicly Disclosed: 2020-09-03

Type: Data Breach

Attack Vector: Exploitation of third-party software

Vulnerability Exploited: Third-party software vulnerability

What are the most common types of attacks the company has faced ?

Common Attack Types: The most common types of attacks the company has faced is Breach.

Impact of the Incidents

What was the impact of each incident ?

Incident : Data Breach LIV207072725

Data Compromised: Names, Email addresses, Mailing addresses, Phone numbers, Visit history, Decrypted passwords

Incident : Data Breach LIV612072925

Data Compromised: User names, Email addresses, Hashed passwords

What types of data are most commonly compromised in incidents ?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Names, Email Addresses, Mailing Addresses, Phone Numbers, Visit History, Decrypted Passwords, , User Names, Email Addresses, Hashed Passwords and .

Which entities were affected by each incident ?

Incident : Data Breach LIV207072725

Entity Name: LiveAuctioneers, LLC

Entity Type: Company

Industry: Online Auction

Incident : Data Breach LIV612072925

Entity Name: LiveAuctioneers

Entity Type: Company

Industry: Online Auction

Customers Affected: 38523

Data Breach Information

What type of data was compromised in each breach ?

Incident : Data Breach LIV207072725

Type of Data Compromised: Names, Email addresses, Mailing addresses, Phone numbers, Visit history, Decrypted passwords

Personally Identifiable Information: namesemail addressesmailing addressesphone numbers

Incident : Data Breach LIV612072925

Type of Data Compromised: User names, Email addresses, Hashed passwords

Number of Records Exposed: 38523

References

Where can I find more information about each incident ?

Incident : Data Breach LIV207072725

Source: California Office of the Attorney General

Date Accessed: 2020-09-10

Incident : Data Breach LIV612072925

Source: Washington State Office of the Attorney General

Where can stakeholders find additional resources on cybersecurity best practices ?

Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: California Office of the Attorney GeneralDate Accessed: 2020-09-10, and Source: Washington State Office of the Attorney General.

Additional Questions

Incident Details

What was the most recent incident detected ?

Most Recent Incident Detected: The most recent incident detected was on 2020-06-19.

What was the most recent incident publicly disclosed ?

Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2020-09-03.

Impact of the Incidents

What was the most significant data compromised in an incident ?

Most Significant Data Compromised: The most significant data compromised in an incident were names, email addresses, mailing addresses, phone numbers, visit history, decrypted passwords, , User names, Email addresses, Hashed passwords and .

Data Breach Information

What was the most sensitive data compromised in a breach ?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were visit history, Email addresses, names, User names, email addresses, decrypted passwords, Hashed passwords, phone numbers and mailing addresses.

What was the number of records exposed in the most significant breach ?

Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 408.0.

References

What is the most recent source of information about an incident ?

Most Recent Source: The most recent source of information about an incident are Washington State Office of the Attorney General and California Office of the Attorney General.

cve

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=liveauctioneers' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge