NBL A.I CyberSecurity Scoring
08/02/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for Nokia Bell Labs in 2026.
No incidents recorded for Nokia Bell Labs in 2026.
No incidents recorded for Nokia Bell Labs in 2026.
Telecommunications
Safaricom is the leading provider of converged communication solutions in Kenya. In addition to providing a broad range of first-class products and services for Telephony, Broadband Internet and Financial services, Safaricom seeks to uplift the welfare of Kenyans through value-added services and support for community projects. With over 29 Million subscribers and an estimated market share of 67%, the Company has the widest modern mobile network coverage in Kenya and prides in its experienced shareholders, attractive tariffs, a nationwide network of effective dealers, high caliber staff and management enabling it to maintain its position as the region’s mobile market leader. M-PESA has over 23 million subscribers, supported by a nationwide agent network of over 156,000 outlets. M-PESA is the world's most developed biggest mobile payment system. Facts about Safaricom • Employs over 5,500 staff directly and over 500,000 indirectly • Has approximately 4,945 network sites across the country • 50% of employees and 32% of senior management working at Safaricom are women. • Has the largest call center in Sub-Saharan Africa Our people are our most valuable asset and are key to the achievement of our vision of transforming lives. This is reflected in our commitment to creating a working environment that supports our staff. We offer employees a wellness programme, crèche facilities, access to subsidized gym facilities, leisure amenities, regular social events, competitive salaries and career opportunities. We give back to the society through the Safaricom Foundation. Since inception, the foundation has disbursed 2 billion shillings in different initiatives that provide sustainable community-based solutions, contributing towards Kenya’s development agenda, and the Millennium Development Goals. Safaricom is a key member and supporter of the B Team and the B Team – Africa, alliances of business leaders who are committed to responsible and sustainable business practices.
Make a new start. A start that will build beautiful relationships, shape millions of ideas. Enable a new way to live, learn, work and play. At Jio, we build products and services of the future to empower billions of Indians make their dreams a reality. Jio is about YOU. Join the movement to make India Digital. Chat on MyJio App: http://tiny.jio.com/chat1 Chat on WhatsApp: http://tiny.jio.com/LiveChat
Rogers is Canada’s communications and entertainment company, driven to connect and entertain Canadians. For more information, please visit rogers.com or investors.rogers.com. Déterminée à connecter et à divertir les Canadiens et Canadiennes, Rogers est la référence canadienne en matière de communications et de divertissement. Pour en savoir plus, visitez rogers.com ou investisseurs.rogers.com. This LinkedIn company page is moderated. For more info, please review our commenting policy here: http://roge.rs/2ofPXLN
ACN is the leading direct selling telecommunications and essential services provider. ACN Inc. was founded in 1993 by four entrepreneurs and is now operating in North America. ACN offers essential products and services that people use every day, while also offering a powerful business ownership opportunity for entrepreneurs. ACN LinkedIn is a US site only.
Reliance Communications Limited, founded by the late Shri Dhirubhai H Ambani (1932-2002), has Corporate clientele that includes 40,000 Indian and multinational corporations, including small and medium enterprises. Reliance Communications has established a pan-India, Next-Generation, digital network that is capable of supporting best-of-class services spanning the entire communications value chain. Reliance Communications owns and operates the world's largest Next-Generation IP-enabled connectivity infrastructure, comprising fiber optic cable systems in India, the USA, Europe, Middle East and the Asia Pacific region.
Proximus Group is a provider of future-proof connectivity, IT and digital services, headquartered in Brussels. The Group is actively engaged in building a connected world that people trust, so society blooms. The Domestic segment is focused on providing state-of-the art telecommunications and IT services in the Benelux. In Belgium, core products and services are offered under the Proximus, Mobile Vikings and Scarlet brands for the residential market and Proximus NXT for the Enterprise market. The Group is also active in the Netherlands and in Luxembourg (Tango and Proximus NXT). Proximus Global overarches the international activities of the Group, gathering the strengths of BICS, Telesign and Route Mobile. Encompassing the entire value chain from P2P Voice & Messaging and Mobility services to CPaaS and Digital Identity, Proximus Global is in a unique position to become a global digital communications leader. The Group has the ambition to build the #1 gigabit network for Belgium and plays a central role in creating inspiring digital ecosystems, while fostering an engaging culture and empowering ways of working. Building upon these strengths, Proximus aims to contribute to an inclusive and sustainable digital society, delight customers with an unrivalled experience and achieve profitable growth both locally and internationally to deliver long-term value for stakeholders. With 13,131 employees, imbued with Proximus' Think Possible mindset and all engaged to offer a superior customer experience, the Group realized an underlying Group revenue of EUR 6,430 million end-2024.
The future of mobile isn’t on the horizon, it’s happening now. At Ericsson, we’re building the foundation for an open network ecosystem where industries, developers, and enterprises thrive. The convergence of 5G, AI, cloud, and network APIs isn’t just a technological shift; it’s a transformation that is redefining industries and enhancing everyday life. Open, programmable networks are enabling real-time innovation and unlocking new business models across the globe. Imagine a world where developers can dynamically access network capabilities on demand, where enterprises don’t just use connectivity but shape it. This isn’t a distant vision, it’s the ecosystem we’re creating today. Collaboration fuels everything we do. By working across industries, we’re designing a future where connectivity isn’t just seamless. It’s intelligent, programmable, and transformative. The shift is happening. Are you part of it?
At Vodafone, our purpose is to connect everyone. From the seabed to the stars, we provide innovative mobile and fixed connectivity solutions to empower our customers across the globe. And we're constantly expanding coverage to bridge continents and spread inclusion, even in the most remote places. When everyone is connected, we can create a future full of possibilities. Find more information at www.vodafone.com #EveryoneConnected
Welcome to Deutsche Telekom. As one of the world's most valuable brands, we design innovative solutions and products in the areas of connectivity, networks, digitalization and security. #connectingyourworld At Deutsche Telekom, we believe that each and every one of us has the power to move society forward. That's why we're committed to creating a culture of collaboration and innovation that everyone can participate in. We believe that diversity and inclusion are the key to creative solutions. Our employees work in 34 countries worldwide. As a leading employer, we support them with offers and benefits that enrich their work and private life. These include flexible working hours, hybrid and remote work, learning and development opportunities, health and wellbeing, as well as attractive employee benefits.
Latest updates, reports, and threat intel affecting the global network.
IEEE's flagship global event returns to India, focusing on 6G innovation, sustainability, and intelligent connectivity.
Nokia has just published its latest Threat Intelligence ReportIt reveals the worrying extent of the cybersecurity challenges facing telcos...
Press Release. Critical networks face stealthy intrusions, record-breaking DDoS attacks and rising cryptographic demands, according to Nokia...
Nokia's eleventh annual Threat Intelligence Report also finds compromised home connections are enabling a surge in DDoS attacks,...
Vodafone and Nokia claim FTTP latency breakthroughDeutsche Telekom acquires medical data management software firm Telefónica builds private...
While Bell Labs researchers were using the Horn Antenna in Holmdel, N.J., they discovered a buzzing noise that proved the big bang theory.
Advancing Photonics Technologies (APT), a coalition led by Princeton's Office of Innovation to advance the photonics and optics industry in...
Join our webinar to learn how to counter Quantum AI threats and build unbreakable cyber resilience now.
Nokia ( ($GB:0HAF) ) has shared an announcement. Nokia has announced changes to its leadership team and the creation of two new...
A flaw was found in DPDK lib/vhost. Missing length validation before reading command_data in the virtio-net control-queue handler can cause an out-of-bounds read and a host process crash.
Maravel, a PHP framework oriented towards dependency injection, prior to version 10.74.0 has a high-severity Token Replay Vulnerability arising from a structural lifecycle mismatch between stateless token validation engines and high-performance relational caching layers. Any application with low cache memory that causes premature eviction to free up memory and applications running macropay-solutions/maravel-framework that utilize tymon/jwt-auth for API token authentication and blacklist management or any other package that does the same may be affected. This architectural risk might also impact native Laravel applications utilizing cache tags under specific volatile or eviction-capped environments. tymon/jwt-auth automatically probes for cache tag support. If found, it forcefully wraps 14-day token blacklist entries (jti) inside a relational tymon.jwt tag. In environments where the O(1) Atomic Lazy Eviction model is active — either natively inside Maravel-Framework v20.x or manually backported into v10.x via the explicit DI container singletons provided in PR #104 (App\Cache\TaggedCache and App\Cache\TagSet) — a strict global tracking ceiling (Container::TAGGED_CACHE_TTL_CAP_SECONDS) of 7,200 seconds (2 hours) is enforced to secure the system against memory index bloat. This ceiling forcefully truncates the 14-day blacklist lifespan down to a maximum of 2 hours, after which individual tracking keys naturally expire and disappear from the active cache window. Furthermore, because the optimized engine implements a generational version matrix to achieve O(1) flush speeds, any programmatic or manual invocation of a tag flush or reset (e.g., Cache::tags([...])->flush()) instantly bumps the internal atomic master version pointer. This shifts the computed cryptographic composite hash (sha1($this->tags->getNamespace())) for all overlapping components, rendering the entire existing index immediately unreachable. Consequently, through either natural 2-hour expiration or an intervening tag flush execution (like the cache naturally cleaning old values to free up memory), the invalidation state records are entirely wiped out. Because the tokens' physical cryptographic signatures remain structurally valid for up to 14 days, stolen, hijacked, or legitimately logged-out tokens are instantly and silently resurrected across the entire API gateway, leaving the application critically vulnerable to widespread Token Replay Attacks. Because this issue is caused by an upstream architectural assumption within the tymon/jwt-auth package rather than a core defect inside the framework, there is no direct framework version upgrade that can safely bypass this lifecycle collision without breaking business cache recycling bounds. Maravel version 10.74.0 introduced a way to backport the new fixed tagged cache from 20.x into 10.x by resolving TagSet and TaggedCache from DI, which is how this latent architectural lifecycle vulnerability was discovered. Users must apply the decoupled configuration workaround outlined below. As a workaround, make sure that cache memory size does not generate early natural evictions from cache to free up space, deleting blacklisted jwt ids before they expire. Applications must decouple flat authentication vectors from the relational tagging subsystem. This forces token identifiers to write directly to the primary cache keyspace as flat, un-tagged key-value pairs where they securely retain their unclipped 14-day lifecycle.
Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2.2.6, the `GET /api/v2/shop/payment-requests/{hash}` and `PUT /api/v2/shop/payment-requests/{hash}` endpoints look up the payment request solely by the hash from the URL. No ownership check is performed against the authenticated customer or the underlying order. An attacker who obtains a payment request hash can read the payment request and, through the `payment` IRI in the response, recover the underlying order's `tokenValue` (which itself grants access to the full order, items, addresses, customer email, totals); and/or update the payment request payload (e.g. `target_path`, `after_path`). These fields are used by the front-end controller to redirect the user after the payment, so an attacker can flip them to an attacker-controlled URL and intercept the buyer. The hash is a UUID, so it has to be obtained out-of-band (logs, shared links, referrer headers, a co-located client), but once it is known no other credential is required, neither authentication nor knowledge of the order token. The creation endpoint `POST /api/v2/shop/orders/{tokenValue}/payment-requests` shares the same flaw: it resolves the target order solely from the `tokenValue` in the URL without verifying that the caller owns the order. The issue is fixed in versions 2.0.18, 2.1.15, and 2.2.6. As a workaround, add a query extension that filters the `GET` operation; decorate the `PUT` state provider, guard the `POST` creation endpoint with a command-bus middleware, and wire the services.
Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2.2.6, an authorization bypass vulnerability exists in the shop account API. The `PATCH /api/v2/shop/account/orders/{tokenValue}/payments/{paymentId}` endpoint, used by an authenticated shop customer to change the payment method of an order that has been placed but not yet paid (state `STATE_NEW`), does not validate that the chosen payment method is enabled for the order's channel. The equivalent checkout endpoint (`PATCH /api/v2/shop/orders/{tokenValue}/payments/{paymentId}`) correctly rejects out-of-channel payment methods with `HTTP 422`; the account endpoint silently accepts them and returns `HTTP 200`. An authenticated customer can therefore assign any globally enabled payment method to their own placed order, including methods that the store operator has explicitly excluded from that channel. The issue is fixed in versions: 2.0.18, 2.1.15, 2.2.6 and above. As a workaround, decorate the `Sylius\Bundle\ApiBundle\Changer\PaymentMethodChangerInterface` service in the application.
Sylius is an Open Source eCommerce Framework on Symfony. Versions 2.0.0 through 2.0.17, 2.1.0 through 2.1.14, and 2.2.0 through 2.2.5 contain an improper workflow enforcement vulnerability in the cart `FormComponent`. When an order is completed while its cart page remains open, the stale LiveComponent does not detect the order’s changed state and continues to permit cart actions, allowing an authenticated customer to modify or permanently delete an already completed order. Versions 2.0.18, 2.1.15, and 2.2.6 contain a patch. As a workaround, deployments can copy the patched `FormComponent` into the application's `src/` directory and override the `sylius_shop.twig.component.cart.form` service definition to use that class.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.