Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
New Canadians Centre

New Canadians Centre Vendor Cyber Rating & Cyber Score

nccpeterborough.ca

Founded in 1979, the New Canadians Centre Peterborough (NCC) is a non-profit charitable organization dedicated to supporting immigrants, refugees and other newcomers in the City of Kawartha Lakes, Haliburton County, City and County of Peterborough and Northumberland County. Our vision is a vibrant and inclusive community where people who are new to Canada thrive and are valued. Our Values: Respect, Equity and Inclusion, Collaboration, Dedication, Celebration


NCC A.I CyberSecurity Scoring

NCC
Company Information
Website:http://www.nccpeterborough.ca/
Employees number:86
Number of followers:846
NAICS:
Industry Type:Non-profit Organization Management
Homepage:nccpeterborough.ca
NCC Risk Score (AI oriented)
Between 700 and 749
logo
NCCNon-profit Organization Management
Updated:
13/03/2026
716/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
NCC Global Score (TPRM)
xxxx
logo
NCCNon-profit Organization Management
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

NCC
NCCModerate
Current Score
716Ba (MODERATE)
01000
1 incidents
-41 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
720Before Incident
JUNE 2026
720Before Incident
MAY 2026
718Before Incident
APRIL 2026
718Before Incident
MARCH 2026
716Before Incident
FEBRUARY 2026
755Before Incident
Cyber Attack
01 Feb 2026NCC
Canadian Non-Profit Organization: Seedworm: Iranian APT on Networks of U.S. Bank, Airport, Software Company

Iranian APT Group Seedworm Targets U.S. and Israeli Networks Amid Escalating Conflict

714After Incident
CRITICAL-41
NEW1772742770
Iranian APT Group Seedworm Targets U.S. and Israeli Networks Amid Escalating Conflict Since February 2026, the Iranian advanced persistent threat (APT) group Seedworm (also known as MuddyWater, Temp Zagros, or Static Kitten) has been detected on the networks of multiple U.S. organizations, with activity persisting in recent days. The campaign follows U.S. and Israeli military strikes on Iran including the killing of Iran’s Supreme Leader Ayatollah Ali Khamenei on March 1 which have heightened regional tensions and increased the likelihood of retaliatory cyber operations. ### Targets and Tactics Seedworm has compromised networks across critical sectors, including: - A U.S. bank - A U.S. airport - A U.S. software company with Israeli operations (a supplier to defense and aerospace industries) - A Canadian non-profit organization The group deployed two previously unknown backdoors: 1. Dindoor – A Deno-based backdoor signed with a certificate issued to "Amy Cherne," found on the Israeli branch of the targeted software company, a U.S. bank, and the Canadian non-profit. Attackers attempted to exfiltrate data using Rclone to a Wasabi cloud storage bucket, though success remains unconfirmed. 2. Fakeset – A Python-based backdoor signed with certificates for "Amy Cherne" and "Donald Gay" (a certificate previously linked to Seedworm). It was downloaded from Backblaze cloud storage servers and deployed against a U.S. airport and non-profit. Seedworm also leveraged Stagecomp and Darkcomp malware, historically associated with the group, though these were not directly observed in the latest intrusions. The use of shared certificates suggests a coordinated campaign. ### Broader Iranian Cyber Threat Landscape Seedworm, a subordinate element of Iran’s Ministry of Intelligence and Security (MOIS), has been active since 2017, initially focusing on Middle Eastern targets before expanding to telecommunications, defense, government, and energy sectors globally. The group employs custom malware, dual-use tools, and social engineering including spear-phishing and "honeytrap" operations to gain access. #### Recent Activity by Iranian-Aligned Groups - Handala (Iranian-aligned hacktivist group): - December 2025: Claimed to compromise the phones of former Israeli PM Naftali Bennett and Benjamin Netanyahu’s Chief of Staff, leaking contacts and media (though researchers disputed full device access). - February–March 2026: Alleged breaches of Israel’s largest healthcare network and Sharjah National Oil Corporation, exfiltrating 1.3TB of sensitive data (including financial records and oil contracts). Some claims may be exaggerated for psychological impact. - Ongoing: Threatened to target Netanyahu and other high-profile figures. - Marshtreader (Pink Sandstorm/Agrius): - June 2025: Scanned Israeli vulnerable cameras (CVE-2023-6895, CVE-2017-7921) for bombing damage assessment (BDA) and reconnaissance. - Conducted password-spraying attacks on Israeli municipal governments, followed by spear-phishing to deliver remote access tools (RATs). - DieNet (Pro-Palestinian hacktivist group): - Emerged in March 2025, intensifying DDoS attacks on U.S. critical infrastructure (energy, finance, healthcare, government) after the arrest of activist Mahmoud Khalil. ### Geopolitical Context and Cyber Escalation Risks The February 28, 2026, U.S.-Israeli airstrikes which killed Khamenei and other Iranian officials triggered retaliatory missile strikes by Iran against U.S. and Israeli targets. Cyber operations are a key component of Iran’s asymmetric response, with both nations having a history of destructive attacks (e.g., Iran’s Shamoon wiper, Israel’s Stuxnet). The UK’s National Cyber Security Centre (NCSC) warned that Iranian state-linked actors retain cyber capabilities despite potential disruptions, while Check Point reported that Handala has used Starlink since January 2026 to maintain connectivity amid Iranian internet shutdowns. ### Expected Threat Vectors Given Iran’s past tactics, defenders should anticipate: - DDoS and defacements targeting government, energy, transportation, and financial sectors for psychological and economic pressure. - Credential harvesting (password spraying, mailbox compromises) against defense, NGOs, and logistics contractors. - Hack-and-leak operations (e.g., Handala’s partial data leaks) to intimidate and disrupt. - Destructive attacks (wipers, ransomware) on critical infrastructure, particularly in energy, telecoms, and defense supply chains. - Opportunistic targeting of exposed OT systems, logistics networks, and contractor VPNs. ### Historical Precedents - Stuxnet (2010): A U.S.-Israeli cyberweapon that sabotaged Iran’s Natanz nuclear facility, demonstrating the potential for physical destruction via cyber means. The facility was hit again in June 2025 and March 2026 U.S. strikes. - Druidfly (Homeland Justice/Karma): - 2022: Wiped Albanian government systems after diplomatic fallout over MEK dissidents. - 2023–2025: Deployed BibiWiper against Israeli targets, encrypting files and destroying master boot records (MBRs). - June 2025: Targeted Albania again, disrupting Tirana’s public services. ### Conclusion Seedworm’s recent intrusions pre-positioned before the latest conflict escalation highlight Iran’s strategic cyber capabilities and willingness to leverage espionage, disruption, and destruction against perceived adversaries. With hacktivist groups amplifying attacks and state-aligned actors refining their tooling, organizations in the U.S., Israel, and allied nations remain at heightened risk of targeted cyber operations as the conflict evolves.
INCIDENT DETAILS -
TYPE
EspionageCyber AttackData Exfiltration
MOTIVATION
RetaliationEspionageDisruptionGeopolitical Influence
IMPACT
NetworksCloud StorageOT SystemsData Exfiltration AttemptsNetwork Intrusions
DATA BREACH
Sensitive DataFinancial RecordsOil ContractsPersonally Identifiable InformationNumber Of Records Exposed: 1.3TB (alleged)Sensitivity Of Data: High
JANUARY 2026
755Before Incident
DECEMBER 2025
755Before Incident
NOVEMBER 2025
755Before Incident
OCTOBER 2025
755Before Incident
SEPTEMBER 2025
755Before Incident
AUGUST 2025
755Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for NCC ?
?
What was NCC's A.I Rankiteo Cyber Score in June 2026 ?
?
What was NCC's A.I Rankiteo Cyber Score in May 2026 ?
?
What was NCC's A.I Rankiteo Cyber Score in April 2026 ?
?
What was NCC's A.I Rankiteo Cyber Score in March 2026 ?
?
What was NCC's A.I Rankiteo Cyber Score in February 2026 ?
?
What was NCC's A.I Rankiteo Cyber Score in January 2026 ?
?
What was NCC's A.I Rankiteo Cyber Score in December 2025 ?
?
What was NCC's A.I Rankiteo Cyber Score in November 2025 ?
?
What was NCC's A.I Rankiteo Cyber Score in October 2025 ?
?
What was NCC's A.I Rankiteo Cyber Score in September 2025 ?
?
What was NCC's A.I Rankiteo Cyber Score in August 2025 ?
?
What is the average per-incident point impact on NCC's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with NCC ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view NCC's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?
New Canadians Centre Cyber Scoring History | Rankiteo