Company Details
museum-of-food-and-drink
27
1,683
712
mofad.org
0
MUS_9892132
In-progress

Museum of Food and Drink (MOFAD) Company CyberSecurity Posture
mofad.orgMOFAD is a new kind of museum that brings the world of food to life with exhibits you can taste, touch, and smell. We inspire public curiosity about food, what it means, and how it connects with the world around us. Our goal to be the world’s premier food museum and a global educational resource that inspires generations of curious eaters of all ages and backgrounds. The museum currently operates MOFAD Lab, a 5,000-square-foot experimental space in Williamsburg, Brooklyn. Learn more at mofad.org.
Company Details
museum-of-food-and-drink
27
1,683
712
mofad.org
0
MUS_9892132
In-progress
Between 750 and 799

MFD Global Score (TPRM)XXXX



No incidents recorded for Museum of Food and Drink (MOFAD) in 2025.
No incidents recorded for Museum of Food and Drink (MOFAD) in 2025.
No incidents recorded for Museum of Food and Drink (MOFAD) in 2025.
MFD cyber incidents detection timeline including parent company and subsidiaries

MOFAD is a new kind of museum that brings the world of food to life with exhibits you can taste, touch, and smell. We inspire public curiosity about food, what it means, and how it connects with the world around us. Our goal to be the world’s premier food museum and a global educational resource that inspires generations of curious eaters of all ages and backgrounds. The museum currently operates MOFAD Lab, a 5,000-square-foot experimental space in Williamsburg, Brooklyn. Learn more at mofad.org.


Pretend City Children’s Museum features a small, interconnected city designed to “build better brains” through purposeful play, hands-on learning experiences, role playing, and educational programming. As a non-profit 501(c)(3) organization serving all children, it depends on community-based funding
The Betty Brinn Children’s Museum is a private nonprofit organization dedicated to playful learning for all. The Museum's vibrant exhibit environments and facilitated in-person and virtual educational programs inspire children to actively explore the world around them. Accessibility to services that

Mission The Children's Discovery Museum of the Desert is a valuable community resource for children and families to experience the joy of learning about themselves and the world around them. The museum inspires personal growth by engaging curiosity and creativity through hands-on explorations of exh

The National Museum of the Royal Navy, established in 2009, tells the story of the four fighting forces of the British Royal Navy, the Royal Marines, the Fleet Air Arm, the Submarine Service and the Surface Fleet. Ours is the epic story of the Royal Navy, its impact on Britain and the world from i

The Hancock Historical Museum is a privately-funded, non-profit history museum founded in 1970 by five local civic leaders: Harold Corbin, Jack Harrington, Ed Heminger, Jim Brucklacher, and Joe Opperman. These five men had the foresight to create a place to preserve and share our local history. Over

The mission of the San Francisco Zoo is to connect all people with wildlife, inspire caring for nature, and advance conservation action. Nestled against the Pacific Ocean, the SF Zoo is an urban oasis. It is home to more than 1,000 exotic, endangered, and rescued animals representing nearly 250 spec
.png)
Since February of this year, the Museum of Food and Drink has been located on the second level of the Empire Stores building in Brooklyn.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Museum of Food and Drink (MOFAD) is http://www.mofad.org.
According to Rankiteo, Museum of Food and Drink (MOFAD)’s AI-generated cybersecurity score is 762, reflecting their Fair security posture.
According to Rankiteo, Museum of Food and Drink (MOFAD) currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Museum of Food and Drink (MOFAD) is not certified under SOC 2 Type 1.
According to Rankiteo, Museum of Food and Drink (MOFAD) does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Museum of Food and Drink (MOFAD) is not listed as GDPR compliant.
According to Rankiteo, Museum of Food and Drink (MOFAD) does not currently maintain PCI DSS compliance.
According to Rankiteo, Museum of Food and Drink (MOFAD) is not compliant with HIPAA regulations.
According to Rankiteo,Museum of Food and Drink (MOFAD) is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Museum of Food and Drink (MOFAD) operates primarily in the Museums, Historical Sites, and Zoos industry.
Museum of Food and Drink (MOFAD) employs approximately 27 people worldwide.
Museum of Food and Drink (MOFAD) presently has no subsidiaries across any sectors.
Museum of Food and Drink (MOFAD)’s official LinkedIn profile has approximately 1,683 followers.
Museum of Food and Drink (MOFAD) is classified under the NAICS code 712, which corresponds to Museums, Historical Sites, and Similar Institutions.
No, Museum of Food and Drink (MOFAD) does not have a profile on Crunchbase.
Yes, Museum of Food and Drink (MOFAD) maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/museum-of-food-and-drink.
As of December 03, 2025, Rankiteo reports that Museum of Food and Drink (MOFAD) has not experienced any cybersecurity incidents.
Museum of Food and Drink (MOFAD) has an estimated 2,133 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Museum of Food and Drink (MOFAD) has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.11.1, vllm has a critical remote code execution vector in a config class named Nemotron_Nano_VL_Config. When vllm loads a model config that contains an auto_map entry, the config class resolves that mapping with get_class_from_dynamic_module(...) and immediately instantiates the returned class. This fetches and executes Python from the remote repository referenced in the auto_map string. Crucially, this happens even when the caller explicitly sets trust_remote_code=False in vllm.transformers_utils.config.get_config. In practice, an attacker can publish a benign-looking frontend repo whose config.json points via auto_map to a separate malicious backend repo; loading the frontend will silently run the backend’s code on the victim host. This vulnerability is fixed in 0.11.1.
fastify-reply-from is a Fastify plugin to forward the current HTTP request to another server. Prior to 12.5.0, by crafting a malicious URL, an attacker could access routes that are not allowed, even though the reply.from is defined for specific routes in @fastify/reply-from. This vulnerability is fixed in 12.5.0.
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 21.0.2, 20.3.15, and 19.2.17, A Stored Cross-Site Scripting (XSS) vulnerability has been identified in the Angular Template Compiler. It occurs because the compiler's internal security schema is incomplete, allowing attackers to bypass Angular's built-in security sanitization. Specifically, the schema fails to classify certain URL-holding attributes (e.g., those that could contain javascript: URLs) as requiring strict URL security, enabling the injection of malicious scripts. This vulnerability is fixed in 21.0.2, 20.3.15, and 19.2.17.
Gin-vue-admin is a backstage management system based on vue and gin. In 2.8.6 and earlier, attackers can delete any file on the server at will, causing damage or unavailability of server resources. Attackers can control the 'FileMd5' parameter to delete any file and folder.
Portkey.ai Gateway is a blazing fast AI Gateway with integrated guardrails. Prior to 1.14.0, the gateway determined the destination baseURL by prioritizing the value in the x-portkey-custom-host request header. The proxy route then appends the client-specified path to perform an external fetch. This can be maliciously used by users for SSRF attacks. This vulnerability is fixed in 1.14.0.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.