ORW A.I CyberSecurity Scoring
10/01/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for Open RAN World in 2026.
No incidents recorded for Open RAN World in 2026.
No incidents recorded for Open RAN World in 2026.
Lumen connects the world. We digitally connect people, data and applications – quickly, securely and effortlessly. Everything we do at Lumen takes advantage of our network strength. From metro connectivity to long-haul data transport to our edge cloud, security, and managed service capabilities, we meet our customers’ needs today and as they build for tomorrow.
Televisa es una gran corporación de telecomunicaciones que posee y opera una de las compañías de cable más relevantes y un sistema líder de televisión de paga vía satélite en México. El negocio de cable de Televisa ofrece servicios integrales que incluyen video, servicios de datos de alta velocidad y servicios de voz a clientes residenciales y comerciales, así ́como servicios administrados a empresas de telecomunicación locales e internacionales. Televisa posee una participación mayoritaria en Sky, un sistema líder de televisión de paga directa al hogar vía satélite y proveedor de banda ancha que opera en México, la República Dominicana y Centroamérica. Televisa es titular de una serie de concesiones del gobierno mexicano que le autorizan a transmitir programación a través de estaciones de televisión para las señales de TelevisaUnivision, Inc. (“TelevisaUnivision”), y los sistemas de cable y televisión satelital de Televisa. Además, Televisa es el mayor accionista de TelevisaUnivision, la compañía controladora de Univision Communications Inc., una empresa de medios líder en la producción, creación y distribución de contenido en español a través de varios canales de transmisión en México, Estados Unidos y a más de 70 países a través de operadores de cable, canales de televisión y servicios adicionales por internet (“OTT”, por sus siglas en inglés). Televisa también tiene intereses en la publicación y distribución de revistas, deportes profesionales y entretenimiento en vivo, y juegos.
Nokia is a global leader in connectivity for the AI era. With expertise across fixed, mobile, and transport networks, powered by the innovation of Nokia Bell Labs, we’re advancing connectivity to secure a brighter world. Advanced connectivity is key to enable the opportunities of AI – opening new doors for us and our customers. Once known for connecting people, our technology is now essential to connecting intelligence. Our priority is to deliver superior performance with the trust and security our customers need and we’re a committed innovation partner, shaping the future of connectivity. For our latest updates, please visit us online www.nokia.com To view open positions and to apply, please visit: www.nokia.com/careers
Our 15 000 talented colleagues serve millions of customers every day in one of the world’s most connected regions. With a strong connectivity base, we’re the hub in the digital ecosystem, empowering people, companies and societies to stay in touch with everything that matters 24/7/365 - on their terms. Our goal is to make Telia better for customers, employees, owners and societies in the Nordics and the Baltics.
A TIM é a empresa de telefonia móvel que mais cresce no Brasil. Atualmente, possui mais de 13 mil colaboradores em todo o país que trabalham entregando serviços inovadores e de qualidade em telefonia móvel, fixa e internet banda larga. É uma companhia feita de pessoas criativas, com energia realizadora e foco no cliente. Transparência, qualidade e inovação para que os consumidores brasileiros possam fazer cada vez mais e ir mais longe. Conheça as oportunidades na aba de Carreiras!
We’re one of the world’s leading communications services companies. At BT Group, the solutions we sell are integral to modern life. Our purpose is as simple as it is ambitious: we connect for good. There are no limits to what people can do when they connect. And as technology changes our world, connections are becoming even more important to everyday life. Today, that’s truer than ever. The connections we make are helping solve the world’s biggest challenges such as the global pandemic, climate change and cyber security. Through the power of technology, we’re supporting customers to live, work and play together better.
Safaricom is the leading provider of converged communication solutions in Kenya. In addition to providing a broad range of first-class products and services for Telephony, Broadband Internet and Financial services, Safaricom seeks to uplift the welfare of Kenyans through value-added services and support for community projects. With over 29 Million subscribers and an estimated market share of 67%, the Company has the widest modern mobile network coverage in Kenya and prides in its experienced shareholders, attractive tariffs, a nationwide network of effective dealers, high caliber staff and management enabling it to maintain its position as the region’s mobile market leader. M-PESA has over 23 million subscribers, supported by a nationwide agent network of over 156,000 outlets. M-PESA is the world's most developed biggest mobile payment system. Facts about Safaricom • Employs over 5,500 staff directly and over 500,000 indirectly • Has approximately 4,945 network sites across the country • 50% of employees and 32% of senior management working at Safaricom are women. • Has the largest call center in Sub-Saharan Africa Our people are our most valuable asset and are key to the achievement of our vision of transforming lives. This is reflected in our commitment to creating a working environment that supports our staff. We offer employees a wellness programme, crèche facilities, access to subsidized gym facilities, leisure amenities, regular social events, competitive salaries and career opportunities. We give back to the society through the Safaricom Foundation. Since inception, the foundation has disbursed 2 billion shillings in different initiatives that provide sustainable community-based solutions, contributing towards Kenya’s development agenda, and the Millennium Development Goals. Safaricom is a key member and supporter of the B Team and the B Team – Africa, alliances of business leaders who are committed to responsible and sustainable business practices.
Trublion historique des Télécoms, Free reste un opérateur pas comme les autres. Nous continuons de nous distinguer de nos concurrents par nos produits, par notre politique tarifaire ou encore par le ton employé avec nos abonnés. Cette différence a aussi construit la grande entreprise que nous sommes devenus, qui réunit aujourd’hui plus de 11 500 collaborateurs. Elle a fait de nous un employeur… pas comme les autres.
Connecting Nation. Accelerating Indonesia's Future. As Indonesia's leading digital telecommunications company, Telkomsel is committed to building a connected, competitive, and future-ready society. For over 29 years, we've empowered individuals, homes, and businesses with innovative connectivity and digital solutions. With a nationwide network of over 271,000 BTS, we serve 159.4 million mobile users and 9.6 million fixed broadband (IndiHome B2C) customers. We continually expand our 4G coverage, advance 5G innovation, and deploy the latest fixed broadband technologies to enhance our customers' experiences. Beyond connectivity, Telkomsel plays a key role in driving Indonesia's digital transformation through services such as Digital Lifestyle, Advertising, Enterprise Solutions, and the Internet of Things (IoT). Guided by Environmental, Social, and Governance (ESG) principles, we are committed to creating a sustainable and inclusive digital ecosystem that benefits both people and the planet. Discover more at telkomsel.com or connect via the MyTelkomsel App, Facebook (Telkomsel), X (@telkomsel), and Instagram (@telkomsel).
Latest updates, reports, and threat intel affecting the global network.
Real-world concerns continue to shadow its potential.
Selected by Rakuten Mobile to deploy ORAN RUs across its network in Japan. PLANO, Texas–(BUSINESS WIRE)–#ORAN–Airspan Networks Holdings LLC (“Airspan”),...
As 6G becomes embedded into public infrastructure including smart cities, 'Internet of Things' and autonomous vehicles - safety,...
SK Telecom rejects government-mediated data breach compensation scheme over fears it could lead to $4 billion in customer claims.
350 percent growth in open cybersecurity positions from 2013 to 2021.
VIAVI and Calnex introduce Open RAN testbeds, enabling faster, cost-effective pre-certification testing for 5G and 6G networks.
Viavi Solutions partnered with Calnex Solutions on open radio access network (RAN) test solutions across protocol, signal,...
Plug-and-play testbeds for end-to-end and cybersecurity testing with validation for O-RUs, O-DUs and O-CUs ensure O-RAN ALLIANCE and 3GPP...
U.S. officials of both parties spent years struggling to develop homegrown alternatives to China's telecom giants. The GOP abruptly defunded...
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in elixir-grpc grpc (GRPC.Compressor.Gzip, GRPC.Message modules) allows a denial of service via a gzip decompression bomb. This vulnerability is associated with program files lib/grpc/compressor/gzip.ex, lib/grpc/message.ex and program routines 'Elixir.GRPC.Compressor.Gzip':decompress/1, 'Elixir.GRPC.Message':from_data/2. 'Elixir.GRPC.Compressor.Gzip':decompress/1 calls :zlib.gunzip/1 directly on attacker-controlled bytes with no decompressed-size limit, ratio check, or incremental decoding. Because this module is the registered gzip GRPC.Compressor implementation, it is invoked automatically whenever an incoming gRPC frame carries the grpc-encoding: gzip header. :zlib.gunzip/1 allocates the entire decompressed result as a single binary, so a small highly compressible payload (for example a few kilobytes of zeros, which gzip compresses at roughly 1000:1) expands to multiple gigabytes inside a single call. The max_receive_message_length limit is enforced only against the already-decompressed message, so it provides no protection. An unauthenticated remote peer can send a single crafted frame to exhaust the BEAM node's heap and trigger an out-of-memory kill. This issue affects grpc: from 0.4.0 before 1.0.0.
Allocation of Resources Without Limits or Throttling vulnerability in elixir-grpc grpc allows unauthenticated attackers to exhaust the BEAM's memory and crash the server by streaming a large or slow-trickle unary request body. 'Elixir.GRPC.Server.Adapters.Cowboy.Handler':read_full_body/3 (lib/grpc/server/adapters/cowboy/handler.ex) accumulates every received chunk into a single growing binary with no size cap. Additionally, when the client omits the grpc-timeout header, the per-chunk read timeout resolves to :infinity, allowing a slow-trickle client to keep the connection alive indefinitely while memory grows. A single connection is sufficient to exhaust server memory and crash the node. This issue affects grpc from 0.3.1 before 1.0.0.
Deserialization of Untrusted Data and Allocation of Resources Without Limits or Throttling vulnerabilities in elixir-grpc grpc allow unauthenticated attackers to crash the BEAM node via atom table exhaustion and, when a decoded term flows into a call site that invokes it, achieve remote code execution on the server. 'Elixir.GRPC.Codec.Erlpack':decode/2 (lib/grpc/codec/erlpack.ex) calls :erlang.binary_to_term/1 on the raw gRPC message body without the :safe option, no size bound, and no type guard. Any unauthenticated peer that sends a request with Content-Type: application/grpc+erlpack can send a crafted payload that mints arbitrary new atoms (which are never garbage-collected, exhausting the bounded atom table and crashing the VM) or that encodes a fun term which, if applied anywhere downstream, executes attacker-controlled code inside the server process. This issue affects grpc from 0.4.0 before 1.0.0.
The browserstack-cypress-cli is BrowserStack's CLI which allows users to run Cypress tests on BrowserStack. Versions prior to 1.36.4 are vulnerable to OS command injection via the cypress_config_file configuration parameter. In readCypressConfigUtil.js, the loadJsFile() function constructs a shell command by interpolating the user-controlled cypress_config_filepath value into a template literal, then executes it via child_process.execSync(). Shell metacharacters in the config path (specifically " and ;) allow breaking out of the quoted argument and injecting arbitrary commands. This issue has been fixed in version 1.36.6.
Authorization Bypass Through User-Controlled Key vulnerability in elixir-grpc grpc allows authenticated attackers to access or modify resources belonging to other users by smuggling a conflicting value for any path-bound field via the query string or request body. In 'Elixir.GRPC.Server.Transcode':map_request/5 (lib/grpc/server/transcode.ex), all three clauses use Map.merge/2 with path bindings as the first argument, giving them the lowest merge precedence. A request such as GET /users/me/profile?user_id=victim (or a POST with {"user_id": "victim"} when body: "*") yields a decoded protobuf struct where the path-bound field carries the attacker-supplied value rather than the router-extracted value. Any handler that uses the path-bound field for authorization, multi-tenancy scoping, or ownership checks is silently bypassed. This issue affects grpc from 0.8.0 before 1.0.0.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.