Company Details
new-york-state-division-of-the-budget
392
1,738
921
ny.gov
0
NEW_2760424
In-progress

New York State Division of the Budget Company CyberSecurity Posture
ny.govThe New York State Division of the Budget (DOB) is the primary fiscal adviser to the Governor and is charged with developing, negotiating, and implementing the State budget --one of the largest government budgets in the country. The staff at DOB serve as an elite team of professionals, providing analysis and guidance to the Governor, and playing a critical role in the development and implementation of policy. DOB attracts talented analysts, who are interested in government and public policy, and offers opportunities in the full spectrum of policy areas. The skills and professional experience gained at DOB also translate to a variety of arenas and career paths. Please visit our website (http://www.budget.ny.gov/division/employment/employment.html) for information on currently available full-time and internship opportunities.
Company Details
new-york-state-division-of-the-budget
392
1,738
921
ny.gov
0
NEW_2760424
In-progress
Between 700 and 749

NYSDB Global Score (TPRM)XXXX

Description: Thousands of users of Excluded Workers Fund offered by the New York State Department of Labor were targeted in ATM skimming scams. One of the users reported that her savings were lost, upon investigation she got to know that the attacker had purchased a luxury watch worth $14K using her account. Blackhawk, the company that issued the card on behalf of the department upon getting several reports started investigating the scenario.
Description: In August 2025, the **State Attorney General’s Office** detected a **cybersecurity incident** involving unauthorized access to files containing **personal data**, including **names, Social Security numbers, and medical information**. While the investigation found no evidence of misuse or attempted misuse of the compromised data, the breach exposed sensitive information of an undisclosed number of individuals. The office engaged cybersecurity experts, implemented additional security measures, and reported the incident to the **FBI**. Affected individuals were notified in November 2025 and offered **identity protection services**. The breach underscores vulnerabilities in handling **personally identifiable information (PII)**, though no financial fraud, public disclosure, or systemic disruption was confirmed. The office emphasized its commitment to privacy and urged affected parties to monitor financial accounts and credit reports for suspicious activity.


No incidents recorded for New York State Division of the Budget in 2025.
No incidents recorded for New York State Division of the Budget in 2025.
No incidents recorded for New York State Division of the Budget in 2025.
NYSDB cyber incidents detection timeline including parent company and subsidiaries

The New York State Division of the Budget (DOB) is the primary fiscal adviser to the Governor and is charged with developing, negotiating, and implementing the State budget --one of the largest government budgets in the country. The staff at DOB serve as an elite team of professionals, providing analysis and guidance to the Governor, and playing a critical role in the development and implementation of policy. DOB attracts talented analysts, who are interested in government and public policy, and offers opportunities in the full spectrum of policy areas. The skills and professional experience gained at DOB also translate to a variety of arenas and career paths. Please visit our website (http://www.budget.ny.gov/division/employment/employment.html) for information on currently available full-time and internship opportunities.


A Metropolitan Planning Organization (MPO) is an agency created by federal law to provide local direction for urban transportation planning and the allocation of federal transportation funds to cities with populations greater than 50,000. There are about 400 MPOs across the country. While most MPOs

Develops and implements public policy on planning, land use, economic and social development, as well as counseling the Governor and the Legislature in all related matters. Reviews and adjudicates cases of proposed residential, commercial, industrial and institutional developments on a daily bas

Civic Consulting is an economic and public policy consultancy founded in 2002 to provide high quality research, analysis and practical, evidence-based policy advice in the areas of consumer policy, financial services, food chain issues, animal health and welfare, public risk management, and good gov

The US Oil & Gas Association (originally the Mid-Continent Oil & Gas Association) was founded in October 1917 in Tulsa, Oklahoma, following the United States’ entry into World War I. For more than eight decades, in good times and bad, the Association has been a strong advocate for the individuals

Federal Science Partners, LLC is a government affairs firm providing professional services to institutions of higher education, national research facilities, scientific and education organizations, and leading technology companies. The firm is comprised of respected appropriations aides and feder

Freedman Consulting, LLC, a mission-driven firm, offers strategic consulting services to foundations, nonprofit organizations, and public interest coalitions, advising many of the nation’s leading philanthropic institutions. Examples of our work include strategic planning and issue landscaping for m
.png)
Under President Trump, an agency intended to keep Americans safe has diverted resources from combating child abuse, trafficking and...
With help from Caroline McCarthy. Zohran Mamdani speaks into microphone. One of Mayor-elect Zohran Mamdani's most crucial appointees will be...
New York state is doing OK financially, budget officials say, as questions swirl around tax hikes for the wealthy, universal child care and...
Library of Congress employees were informed to take caution when emailing the office of the congressional scorekeeper.
WASHINGTON, Oct 10 (Reuters) - President Donald Trump on Friday blamed Democrats for his decision to lay off thousands of workers across the...
Shutdown layoffs: Federal health, homeland security, education, energy and Treasury Department workers received layoff notices on Friday,...
ALBANY, New York — Gov. Kathy Hochul is taking aim at regulations that make New York unaffordable, her budget chief told state department...
The New York State Division of Budget sent out their annual call letter Thursday, giving state agencies until Oct. 24 to submit annual...
GREENWIRE | The Trump administration is planning to withhold billions of dollars from one of the nation's largest public works projects in...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of New York State Division of the Budget is https://www.budget.ny.gov/.
According to Rankiteo, New York State Division of the Budget’s AI-generated cybersecurity score is 747, reflecting their Moderate security posture.
According to Rankiteo, New York State Division of the Budget currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, New York State Division of the Budget is not certified under SOC 2 Type 1.
According to Rankiteo, New York State Division of the Budget does not hold a SOC 2 Type 2 certification.
According to Rankiteo, New York State Division of the Budget is not listed as GDPR compliant.
According to Rankiteo, New York State Division of the Budget does not currently maintain PCI DSS compliance.
According to Rankiteo, New York State Division of the Budget is not compliant with HIPAA regulations.
According to Rankiteo,New York State Division of the Budget is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
New York State Division of the Budget operates primarily in the Public Policy Offices industry.
New York State Division of the Budget employs approximately 392 people worldwide.
New York State Division of the Budget presently has no subsidiaries across any sectors.
New York State Division of the Budget’s official LinkedIn profile has approximately 1,738 followers.
New York State Division of the Budget is classified under the NAICS code 921, which corresponds to Executive, Legislative, and Other General Government Support.
No, New York State Division of the Budget does not have a profile on Crunchbase.
Yes, New York State Division of the Budget maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/new-york-state-division-of-the-budget.
As of November 28, 2025, Rankiteo reports that New York State Division of the Budget has experienced 2 cybersecurity incidents.
New York State Division of the Budget has an estimated 1,023 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach and Cyber Attack.
Total Financial Loss: The total financial loss from these incidents is estimated to be $0.
Detection and Response: The company detects and responds to cybersecurity incidents through an third party assistance with blackhawk, and and third party assistance with cybersecurity experts engaged, and and remediation measures with security measures implemented to prevent future incidents, and recovery measures with identity protection services offered to affected individuals, and communication strategy with emailed notices sent to affected individuals (nov. 14, 2025); public advisory issued with protective guidance..
Title: ATM Skimming Scams Targeting Excluded Workers Fund Users
Description: Thousands of users of Excluded Workers Fund offered by the New York State Department of Labor were targeted in ATM skimming scams. One of the users reported that her savings were lost, upon investigation she got to know that the attacker had purchased a luxury watch worth $14K using her account. Blackhawk, the company that issued the card on behalf of the department upon getting several reports started investigating the scenario.
Type: ATM Skimming
Attack Vector: ATM Skimming
Vulnerability Exploited: ATM Skimming Devices
Motivation: Financial Gain
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.
Identification of Attack Vectors: The company identifies the attack vectors used in incidents through ATM Skimming Devices.

Financial Loss: Unknown
Brand Reputation Impact: Potential
Payment Information Risk: High
Average Financial Loss: The average financial loss per incident is $0.00.
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Personally Identifiable Information (Pii), Protected Health Information (Phi) and .

Entity Name: New York State Department of Labor
Entity Type: Government
Industry: Government
Location: New York, USA
Customers Affected: Thousands

Third Party Assistance: Blackhawk
Third-Party Assistance: The company involves third-party assistance in incident response through Blackhawk, Cybersecurity experts engaged.
Prevention of Data Exfiltration: The company takes the following measures to prevent data exfiltration: Security measures implemented to prevent future incidents.
Data Recovery from Ransomware: The company recovers data encrypted by ransomware through Identity protection services offered to affected individuals.
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: State Attorney General’s Office Public Advisory.

Investigation Status: Investigation ongoing by Blackhawk
Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through Emailed notices sent to affected individuals (Nov. 14 and 2025); public advisory issued with protective guidance.
Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: were Public statement issued with protective guidance for affected individuals., Emailed notices (Nov. 14 and 2025) with instructions for credit monitoring and identity protection..

Entry Point: ATM Skimming Devices
Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as Blackhawk, Cybersecurity experts engaged.
Corrective Actions Taken: The company has taken the following corrective actions based on post-incident analysis: Security measures implemented to prevent recurrence.
Most Recent Incident Detected: The most recent incident detected was on 2025-08-09.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2025-11-14.
Highest Financial Loss: The highest financial loss from an incident was Unknown.
Most Significant Data Compromised: The most significant data compromised in an incident were names, Social Security numbers, medical information and .
Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was Blackhawk, Cybersecurity experts engaged.
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were medical information, names and Social Security numbers.
Most Significant Recommendation Implemented: The most significant recommendation implemented to improve cybersecurity was Monitor financial accounts for suspicious activity (e.g., unauthorized transactions, new accounts)., Request free annual credit reports from TransUnion, Experian, and Equifax via www.annualcreditreport.com or 1-877-322-8228., Follow FTC guidelines to protect against identity theft (www.ftc.gov). and Contact the Attorney General’s office at 1-833-353-8060 for assistance..
Most Recent Source: The most recent source of information about an incident is State Attorney General’s Office Public Advisory.
Current Status of Most Recent Investigation: The current status of the most recent investigation is Investigation ongoing by Blackhawk.
Most Recent Stakeholder Advisory: The most recent stakeholder advisory issued was Public statement issued with protective guidance for affected individuals., .
Most Recent Customer Advisory: The most recent customer advisory issued were an Emailed notices (Nov. 14 and 2025) with instructions for credit monitoring and identity protection.
Most Recent Entry Point: The most recent entry point used by an initial access broker was an ATM Skimming Devices.
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.