Comparison Overview
Lloyds Banking Group

Lloyds Banking Group
25 Gresham Street, London, EC2V 7HN, GB
Last Update: 15/09/2026
Our purpose is Helping Britain Prosper. We do this by creating a more sustainable and inclusive future for people and businesses, shaping finance as a force for good. We're part of an ever-changing industry and are currently on a journey to shape the financial services...

Fannie Mae
1100 15th St NW, Washington, District of Columbia, US, 20005
Last Update: 14/09/2026
Fannie Mae creates opportunities for people to buy, refinance, or rent a home. We are a leading source of mortgage financing in all markets and at all times. We ensure the availability of affordable mortgage loans. The financing solutions we develop make homeownership a...
Compliance Ranges Comparison

Lloyds Banking Group







Fannie Mae






Benchmark & Cyber Underwriting Signals
Incidents vs Financial Services Industry Avg (This Year)
Lloyds Banking Group has 12.36% more incidents than the average of same-industry companies with at least one recorded incident.
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for Fannie Mae in 2026.
Incident History - Lloyds Banking Group (X = Date, Y = Severity)
Lloyds Banking Group cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Fannie Mae (X = Date, Y = Severity)
Fannie Mae cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Lloyds Banking Group

Fannie Mae
FAQ
Latest Global CVEs
The web management service in affected RouterOS versions contains an integer underflow in its HTTP request body handling that is reachable before authentication. This can be leveraged by an unauthenticated network attacker to achieve arbitrary code execution as root, or to cause a denial of service, using a single crafted request.
Denuvo Anti-Tamper through 2026-03-04 allows bypass of a hypervisor presence check via CPUID interception (SimpleSvm.sys on AMD; hyperkd.sys and hyperhv.dll on Intel).
PeaZip before 11.3.0, in a non-default configuration, is vulnerable to OS command injection via a filename in an archive because "quotation character already used in the string" is mishandled.
Zilliz Attu before 3.0.0 has a Playground feature that does not require authentication for proxying arbitrary HTTP and HTTPS requests to URLs on the public internet.
The Playground feature of Zilliz Attu before 3.0.0 allows SSRF (proxying of requests to private IP addresses).