Company Details
ohsu
16,777
96,908
62
ohsu.edu
0
ORE_1404184
In-progress

Oregon Health & Science University Company CyberSecurity Posture
ohsu.eduAt OHSU, we deliver breakthroughs for better health. We're driven by the belief that better health starts with innovations in the lab, in the classroom, at the bedside and in our communities. From cancer to Alzheimer's to cardiovascular care, we collaborate every day to identify and deliver new ways to understand disease, treat illness and train the next generation of scientists and health professionals. It takes all of us - from scientists, clinicians and nurses to a top-notch professional staff. Join us.
Company Details
ohsu
16,777
96,908
62
ohsu.edu
0
ORE_1404184
In-progress
Between 750 and 799

OHSU Global Score (TPRM)XXXX



No incidents recorded for Oregon Health & Science University in 2025.
No incidents recorded for Oregon Health & Science University in 2025.
No incidents recorded for Oregon Health & Science University in 2025.
OHSU cyber incidents detection timeline including parent company and subsidiaries

At OHSU, we deliver breakthroughs for better health. We're driven by the belief that better health starts with innovations in the lab, in the classroom, at the bedside and in our communities. From cancer to Alzheimer's to cardiovascular care, we collaborate every day to identify and deliver new ways to understand disease, treat illness and train the next generation of scientists and health professionals. It takes all of us - from scientists, clinicians and nurses to a top-notch professional staff. Join us.


Every day, 119,000 compassionate caregivers serve patients and communities through Providence St. Joseph Health, a national, Catholic, not-for-profit health system, driven by a belief that health is a human right. Rooted in the founding missions of the Sisters of Providence and the Sisters of St.

Texas Children’s Hospital is a world-class pediatric facility, nationally recognized as a top children’s hospital, and voted one of the best places to work in Houston for nine years running. We’re committed to creating a healthy community for children by providing the best pediatric care possible, t
Ardent Health is a leading provider of healthcare in communities across the country. With a focus on consumer-friendly processes and investments in innovative services and technologies, Ardent is passionate about making healthcare better and easier to access. Through its subsidiaries, Ardent owns an

O nascimento da Sociedade Beneficente Israelita Brasileira Albert Einstein, na década de 50, resultou do compromisso da comunidade judaica em oferecer à população brasileira uma referência em qualidade da prática médica. Mas a Sociedade queria ir além da simples construção de um hospital. E assi
For more than half a century, UCLA Health has provided the best in healthcare and the latest in medical technology to the people of Los Angeles and throughout the world. Comprised of Ronald Reagan UCLA Medical Center, UCLA Medical Center Santa Monica, Resnick Neuropsychiatric Hospital at UCLA, UCLA

Formed in 1994, Brown University Health (Formerly Lifespan) is a not-for-profit health system based in Providence, RI comprising three teaching hospitals of The Warren Alpert Medical School of Brown University: Rhode Island Hospital and its Hasbro Children's; The Miriam Hospital; and Bradley Hospita

Siemens Healthineers is a leading medtech company with over 125 years of experience. We pioneer breakthroughs in healthcare. For everyone. Everywhere. Sustainably. Our portfolio, spanning in vitro and in vivo diagnostics to image-guided therapy and cancer care, is crucial for clinical decision-makin

Queensland Health is the state's largest healthcare provider. We are committed to ensuring all Queenslanders have access to a range of public healthcare services aimed at achieving good health and well-being. Through a network of 16 Hospital and Health Services, as well as the Mater Hospitals, Quee

Driven by the vision of its Chairman, Dr. Prathap C. Reddy, the Apollo Hospitals Group pioneered corporate healthcare in India. Apollo revolutionized healthcare when Dr Prathap Reddy opened the first hospital in Chennai in 1983. Today Apollo is the world’s largest integrated healthcare platform wit
.png)
The Oregon Health Authority is encouraging pregnant women and others in contact with infants to get vaccinated against whooping cough,...
Pertussis cases in Oregon have reached unprecedented levels, prompting state officials to urge residents to ensure vaccinations are current,...
PORTLAND, Ore. — Oregon has recorded its highest number of pertussis cases ever, prompting state health officials to urge...
The health system has not responded; the letter comes amid contract tensions as well as fear over Trump mass deportations push.
OHSU emphasizes crucial role of vaccines, including hepatitis B, for babies Amid changes in federal recommendations, pediatric health...
As Congress debates how to bring down premiums, enrollment is down by nearly 17% in the most recent data, and state officials are urging...
By Garrett Christensen on Thursday, December 11th, 2025 in Northeastern Oregon News Northeastern Oregon Top Stories. LA GRANDE – The M.J. Murdock Charitable...
Researchers at Oregon Health & Science University have identified a type of enzyme with a complicated name — cell migration inducing and...
The Court of Appeals of the State of Oregon recently held in Trumper v. Women's Healthcare Associates, LLC that an at-will employee could...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Oregon Health & Science University is http://ohsu.edu.
According to Rankiteo, Oregon Health & Science University’s AI-generated cybersecurity score is 784, reflecting their Fair security posture.
According to Rankiteo, Oregon Health & Science University currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Oregon Health & Science University is not certified under SOC 2 Type 1.
According to Rankiteo, Oregon Health & Science University does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Oregon Health & Science University is not listed as GDPR compliant.
According to Rankiteo, Oregon Health & Science University does not currently maintain PCI DSS compliance.
According to Rankiteo, Oregon Health & Science University is not compliant with HIPAA regulations.
According to Rankiteo,Oregon Health & Science University is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Oregon Health & Science University operates primarily in the Hospitals and Health Care industry.
Oregon Health & Science University employs approximately 16,777 people worldwide.
Oregon Health & Science University presently has no subsidiaries across any sectors.
Oregon Health & Science University’s official LinkedIn profile has approximately 96,908 followers.
Oregon Health & Science University is classified under the NAICS code 62, which corresponds to Health Care and Social Assistance.
No, Oregon Health & Science University does not have a profile on Crunchbase.
Yes, Oregon Health & Science University maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/ohsu.
As of December 21, 2025, Rankiteo reports that Oregon Health & Science University has not experienced any cybersecurity incidents.
Oregon Health & Science University has an estimated 31,363 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Oregon Health & Science University has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Versa SASE Client for Windows versions released between 7.8.7 and 7.9.4 contain a local privilege escalation vulnerability in the audit log export functionality. The client communicates user-controlled file paths to a privileged service, which performs file system operations without impersonating the requesting user. Due to improper privilege handling and a time-of-check time-of-use race condition combined with symbolic link and mount point manipulation, a local authenticated attacker can coerce the service into deleting arbitrary directories with SYSTEM privileges. This can be exploited to delete protected system folders such as C:\\Config.msi and subsequently achieve execution as NT AUTHORITY\\SYSTEM via MSI rollback techniques.
The WP JobHunt plugin for WordPress, used by the JobCareer theme, is vulnerable to unauthorized modification of data due to a missing capability check on the 'cs_update_application_status_callback' function in all versions up to, and including, 7.7. This makes it possible for authenticated attackers, with Candidate-level access and above, to inject cross-site scripting into the 'status' parameter of applied jobs for any user.
The WP JobHunt plugin for WordPress, used by the JobCareer theme, is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 7.7 via the 'cs_update_application_status_callback' due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with Candidate-level access and above, to send a site-generated email with injected HTML to any user.
The FiboSearch – Ajax Search for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `thegem_te_search` shortcode in all versions up to, and including, 1.32.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This vulnerability requires TheGem theme (premium) to be installed with Header Builder mode enabled, and the FiboSearch "Replace search bars" option enabled for TheGem integration.
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.0 via the ajax_get_members function. This is due to the use of a predictable low-entropy token (5 hex characters derived from md5 of post ID) to identify member directories and insufficient authorization checks on the unauthenticated AJAX endpoint. This makes it possible for unauthenticated attackers to extract sensitive data including usernames, display names, user roles (including administrator accounts), profile URLs, and user IDs by enumerating predictable directory_id values or brute-forcing the small 16^5 token space.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.