Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

npm, Inc.npm, Inc.
VS
RakutenRakuten
npm, Inc.

npm, Inc.

1999 Harrison St, Oakland, 94612, US

Last Update: 02/10/2026

View Profile
Between 0 and 549
http://npmjs.com
100/1000Critical

Over 10 million software developers worldwide use npm, Inc.’s open source software and web registry to discover, share, and reuse packages of code. Our users download over 800,000 packages more than 7 billion times per week, and registry downloads have grown by more tha...

NAICS:5112
NAICS Definition:Software Publishers
Employees:21
Subsidiaries:53
12-month incidents
32
Known data breaches
3
Attack type number
3
Rakuten

Rakuten

Rakuten Crimson House, Setagaya-ku, 158-0094, JP

Last Update: 07/10/2026

View Profile
671/1000Weak

Rakuten Group, Inc. (TSE: 4755) is a global technology leader in services that empower individuals, communities, businesses and society. Founded in Tokyo in 1997 as an online marketplace, Rakuten has expanded to offer services in e-commerce, fintech, digital content and...

NAICS:5112
NAICS Definition:Software Publishers
Employees:10,943
Subsidiaries:9
12-month incidents
2
Known data breaches
1
Attack type number
2

Compliance Ranges Comparison

Based On Specific Ai Models Category
npm, Inc.

npm, Inc.

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
Rakuten

Rakuten

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Software Development Industry Avg (This Year)

npm, Inc. has 2947.62% more incidents than the average of same-industry companies with at least one recorded incident.

Incidents

Incidents vs Software Development Industry Avg (This Year)

Rakuten has 98.02% more incidents than the average of all companies with at least one recorded incident.

Incidents

Incident History - npm, Inc. (X = Date, Y = Severity)

npm, Inc. cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - Rakuten (X = Date, Y = Severity)

Rakuten cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
npm, Inc.

npm, Inc.

Incidents
🔒 Incident : Cyber Attack
PYPAIKNPMSEC1790756994
🔒 Incident : Cyber Attack
LAS1789993838
🔒 Incident : Cyber Attack
AIK1787999043
Rakuten

Rakuten

Incidents
🔒 Incident : Cyber Attack
RAK1777977150
🔒 Incident : Breach
GMORAKパークCITDAI1791383902

FAQ

Between npm, Inc. company and Rakuten company, which one has the best AI Cybersecurity Score ?
Between npm, Inc. company and Rakuten company, which one has experienced more cyber incidents in the past ?
Between npm, Inc. company and Rakuten company, which one has experienced more cyber incidents this year ?
Between npm, Inc. company and Rakuten company, which one has experienced at least one ransomware attack ?
Between npm, Inc. company and Rakuten company, which one has experienced at least one data breach ?
Between npm, Inc. company and Rakuten company, which one has experienced at least one targeted cyberattack ?
Between npm, Inc. company and Rakuten company, which one has experienced at least one vulnerability ?
Between npm, Inc. company and Rakuten company, which one holds the most compliance certifications ?
Between npm, Inc. company and Rakuten company, which one holds the fewest compliance certifications ?
Between npm, Inc. company and Rakuten company, which one has the most subsidiaries ?
Between npm, Inc. company and Rakuten company, which one has the largest number of employees ?
Between npm, Inc. and Rakuten, which company holds both SOC 2 Type 1 certifications ?
Between npm, Inc. and Rakuten, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - npm, Inc. or Rakuten ?
Which company is PCI DSS compliant - npm, Inc. or Rakuten ?
Between npm, Inc. and Rakuten, which company complies with HIPAA regulations for healthcare data ?
Between npm, Inc. and Rakuten, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-97032
SUMMARY

HTTP/2 servers could end up crashing due to inadvertently modifying its HPACK encoder concurrently. This happens because the server modifies the HPACK encoder from two goroutines without synchronization: one uses the encoder to encode a HEADERS frame as part of a response sent to a client and the other modifies the encoder's table size when handling a SETTINGS frame containing SETTINGS_HEADER_TABLE_SIZE that a client sends. A malicious client can repeatedly send a request while changing the header table size to crash the server.

PUBLISHED
Date2026-10-08
UPDATED
Date2026-10-08
IMPACT SCORE
NA
EXPLOITABILITY
NA
CVE-2026-97031
SUMMARY

Multiple ECH outer extension references are not permitted under RFC 9849; previously, a client could send a well-crafted packet that could trigger memory exhaustion in the server process by specifying multiple references. We now reject these as malformed and curb the memory amplification vector as a result.

PUBLISHED
Date2026-10-08
UPDATED
Date2026-10-08
IMPACT SCORE
NA
EXPLOITABILITY
NA
CVE-2026-97030
SUMMARY

A trusted template author may have previously written a valid template wherein the use of the 'yield' keyword would not be correctly escaped. We now ensure that valid keyword uses are escaped and non-keyword uses are not escaped.

PUBLISHED
Date2026-10-08
UPDATED
Date2026-10-08
IMPACT SCORE
NA
EXPLOITABILITY
NA
CVE-2026-96207
SUMMARY

Improper certificate validation in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network.

PUBLISHED
Date2026-10-08
UPDATED
Date2026-10-08
RISK INFORMATION (Score: 10)
CVSS3
Base Score: 10.0
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
IMPACT SCORE
5.8
EXPLOITABILITY
3.9
CVE-2026-94510
SUMMARY

Authorization bypass through user-controlled key in Microsoft Bookings allows an unauthorized attacker to elevate privileges over a network.

PUBLISHED
Date2026-10-08
UPDATED
Date2026-10-08
RISK INFORMATION (Score: 9.9)
CVSS3
Base Score: 9.9
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:L
IMPACT SCORE
5.3
EXPLOITABILITY
3.9