Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

OGASCOOGASCO
VS
EcopetrolEcopetrol
OGASCO

OGASCO

54D1 - Industrial City of Abu Dhabi (ICAD1), Abu Dhabi - Industrial city of Abu Dhabi, 53266, AE

Last Update: 19/03/2026

View Profile
Between 700 and 749
http://www.ogasco.ae
745/1000Moderate

OGASCO is one of the leading providers of Engineering, Procurement, and Construction (EPC) services among the oil and gas industry in the middle east region since our establishment in 1994, with a strong commitment to quality and track record of successful projects with...

NAICS:211
NAICS Definition:Oil and Gas Extraction
Employees:171
Subsidiaries:0
12-month incidents
0
Known data breaches
0
Attack type number
0
Ecopetrol

Ecopetrol

Cra. 13 No. 36-24, Bogotá, ----, CO

Last Update: 20/07/2026

View Profile
Between 650 and 699
http://www.ecopetrol.com.co
664/1000Weak

Ecopetrol (NYSE: EC) es la compañía más grande en Colombia y uno de los principales grupos de energía de Latinoamérica. Cuenta con más de 18.000 empleados y es responsable del 60% de la producción de hidrocarburos en Colombia. Es propietaria de las dos refinerías del Co...

NAICS:211
NAICS Definition:Oil and Gas Extraction
Employees:12,683
Subsidiaries:3
12-month incidents
2
Known data breaches
1
Attack type number
2

Compliance Ranges Comparison

Based On Specific Ai Models Category
OGASCO

OGASCO

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
Ecopetrol

Ecopetrol

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Oil and Gas Industry Avg (This Year)

No incidents recorded for OGASCO in 2026.

Incidents

Incidents vs Oil and Gas Industry Avg (This Year)

Ecopetrol has 94.17% more incidents than the average of all companies with at least one recorded incident.

Incidents

Incident History - OGASCO (X = Date, Y = Severity)

OGASCO cyber incidents detection timeline including parent company and subsidiaries.

No timeline data available
R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - Ecopetrol (X = Date, Y = Severity)

Ecopetrol cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
OGASCO

OGASCO

Incidents
No explicit notable incidents reported.
Ecopetrol

Ecopetrol

Incidents
🔒 Incident : Ransomware
ECO1784557630
🔒 Incident : Breach
ECO1784348677

FAQ

Between OGASCO company and Ecopetrol company, which one has the best AI Cybersecurity Score ?
Between OGASCO company and Ecopetrol company, which one has experienced more cyber incidents in the past ?
Between OGASCO company and Ecopetrol company, which one has experienced more cyber incidents this year ?
Between OGASCO company and Ecopetrol company, which one has experienced at least one ransomware attack ?
Between OGASCO company and Ecopetrol company, which one has experienced at least one data breach ?
Between OGASCO company and Ecopetrol company, which one has experienced at least one targeted cyberattack ?
Between OGASCO company and Ecopetrol company, which one has experienced at least one vulnerability ?
Between OGASCO company and Ecopetrol company, which one holds the most compliance certifications ?
Between OGASCO company and Ecopetrol company, which one holds the fewest compliance certifications ?
Between OGASCO company and Ecopetrol company, which one has the most subsidiaries ?
Between OGASCO company and Ecopetrol company, which one has the largest number of employees ?
Between OGASCO and Ecopetrol, which company holds both SOC 2 Type 1 certifications ?
Between OGASCO and Ecopetrol, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - OGASCO or Ecopetrol ?
Which company is PCI DSS compliant - OGASCO or Ecopetrol ?
Between OGASCO and Ecopetrol, which company complies with HIPAA regulations for healthcare data ?
Between OGASCO and Ecopetrol, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-9693
SUMMARY

Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membership records when a user is removed from or leaves a team, which allows a previously removed user who is later re-invited to the team to view private channel thread root post content and metadata via the team threads API.. Mattermost Advisory ID: MMSA-2026-00682

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 3.5)
CVSS3
Base Score: 3.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
IMPACT SCORE
1.4
EXPLOITABILITY
2.1
CVE-2026-75587
SUMMARY

Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a diagnostics report, which allows a local attacker with access to a user's diagnostics report or log files to obtain the plaintext pre-auth secret configured for a connected server via inspecting the Server Connectivity (Step-3) diagnostics output. Mattermost Advisory ID: MMSA-2026-00716

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 3.6)
CVSS3
Base Score: 3.6
Complexity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N
IMPACT SCORE
1.4
EXPLOITABILITY
1.8
CVE-2026-75078
SUMMARY

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSHRM1.php. Performing a manipulation of the argument course results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
RISK INFORMATION (Score: 4.3)
CVSS2
Base Score: 5.0
Complexity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
CVSS3
Base Score: 4.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
CVSS4
Base Score: 2.1
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
1.4
EXPLOITABILITY
2.8
CVE-2026-67961
SUMMARY

An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mechanism of the Invoke script execution.

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
IMPACT SCORE
NA
EXPLOITABILITY
NA
CVE-2026-67919
SUMMARY

An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.java, installFromUri method, and DefaultPluginApplicationContextFactory components

PUBLISHED
Date2026-08-17
UPDATED
Date2026-08-17
IMPACT SCORE
NA
EXPLOITABILITY
NA