Company Details
pacific-union-college
571
13,725
6113
puc.edu
0
PAC_7104815
In-progress

Pacific Union College Company CyberSecurity Posture
puc.eduFor over 130 years, PUC has prepared students to lead lives of significance and service. As a fully accredited Seventh-day Adventist Christian liberal arts college, PUC will provide you with all the advantages of a larger university—a strong academic reputation; over 70 degrees and programs; cutting edge research; classes taught by Fulbright scholars; and a diverse student body—but with the benefits of a small college focused on the undergraduate experience and in an atmosphere of Christian community. As an added bonus, you’ll live and learn in the breathtakingly beautiful Napa Valley area of Northern California. Pacific Union College is a fully accredited institution by the WASC Senior College and University Commission (WSCUC) until 2026. In addition to the WSCUC accreditation, PUC has also received specialized accreditation from various organizations.
Company Details
pacific-union-college
571
13,725
6113
puc.edu
0
PAC_7104815
In-progress
Between 700 and 749

PUC Global Score (TPRM)XXXX

Description: On June 20, 2023, Pacific Union College (PUC) was the target of a cyberattack. Stating that the continuous cybersecurity problem, which has recently damaged some of their internal networks, phone systems, and web services, is causing them more problems. Other cybersecurity teams were enlisted to collaborate with our IT department, and federal authorities were notified. They have been actively working around the clock to restore and safeguard our systems going forward, as well as to control the issue.


No incidents recorded for Pacific Union College in 2025.
No incidents recorded for Pacific Union College in 2025.
No incidents recorded for Pacific Union College in 2025.
PUC cyber incidents detection timeline including parent company and subsidiaries

For over 130 years, PUC has prepared students to lead lives of significance and service. As a fully accredited Seventh-day Adventist Christian liberal arts college, PUC will provide you with all the advantages of a larger university—a strong academic reputation; over 70 degrees and programs; cutting edge research; classes taught by Fulbright scholars; and a diverse student body—but with the benefits of a small college focused on the undergraduate experience and in an atmosphere of Christian community. As an added bonus, you’ll live and learn in the breathtakingly beautiful Napa Valley area of Northern California. Pacific Union College is a fully accredited institution by the WASC Senior College and University Commission (WSCUC) until 2026. In addition to the WSCUC accreditation, PUC has also received specialized accreditation from various organizations.


À l’Université d’Ottawa, la plus grande université bilingue au monde, la population étudiante peut choisir d’étudier en français, en anglais, ou dans les deux langues. Située au cœur de la capitale du Canada, pays du G8, notre université jouit d’un accès direct aux plus grandes institutions du pays.

WGU, www.wgu.edu, is an online university for the 21st century. We are driven by a mission to expand access to higher education through online, competency-based degree programs. Since its establishment in 1997, WGU has grown into a national university, serving more than 120,000 students from all 50

Located in historic Providence, Rhode Island and founded in 1764, Brown University is the seventh-oldest college in the United States. Brown is an independent, coeducational Ivy League institution comprising undergraduate and graduate programs, plus the Alpert Medical School, School of Public Health

We are Mizzou! Our distinct mission, as Missouri's only state-supported member of the Association of American Universities, is to provide all Missourians the benefits of a world-class research university. We are stewards and builders of a priceless state resource, a unique physical infrastructure an

Rutgers, The State University of New Jersey, stands among America’s highest-ranked, most diverse public research universities. The oldest, largest, and top-ranked public university in the New York/New Jersey metropolitan area, you’ll find us at our main locations in three New Jersey cities, and our

The University of South Florida, a high-impact research university dedicated to student success and committed to community engagement, generates an annual economic impact of more than $6 billion. With campuses in Tampa, St. Petersburg and Sarasota-Manatee, USF serves approximately 50,000 students wh

At Colorado State, there’s this energy we all share—this undeniable excitement for what’s next. And it’s a feeling you can only find here. As you choose a college, one of the biggest questions most students have is what to study. At Colorado State, we offer over 250 programs, over 50 minors, and se
Vanderbilt University is a top-ranked teaching and research university in Nashville, Tennessee. Powered by collaboration. Follow Vanderbilt on Facebook, Twitter, TikTok and Instagram @VanderbiltU. See more Vanderbilt social media at https://social.vanderbilt.edu/ Located in Nashville, Tenn., and o

KU is a major comprehensive research and teaching university and a center for learning, scholarship, and creative endeavor. KU is the only Kansas Regents university to hold membership in the prestigious Association of American Universities (AAU), a select group of public and private research univers
.png)
Napa Valley is California's premier wine country. When not tasting wine from the various vineyards, there's no shortage of sights to see and...
John Muir Health. Residence: Walnut Creek. Education: BBA, Pacific Union College; MBA, Golden Gate University.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Pacific Union College is https://www.puc.edu.
According to Rankiteo, Pacific Union College’s AI-generated cybersecurity score is 749, reflecting their Moderate security posture.
According to Rankiteo, Pacific Union College currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Pacific Union College is not certified under SOC 2 Type 1.
According to Rankiteo, Pacific Union College does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Pacific Union College is not listed as GDPR compliant.
According to Rankiteo, Pacific Union College does not currently maintain PCI DSS compliance.
According to Rankiteo, Pacific Union College is not compliant with HIPAA regulations.
According to Rankiteo,Pacific Union College is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Pacific Union College operates primarily in the Higher Education industry.
Pacific Union College employs approximately 571 people worldwide.
Pacific Union College presently has no subsidiaries across any sectors.
Pacific Union College’s official LinkedIn profile has approximately 13,725 followers.
Pacific Union College is classified under the NAICS code 6113, which corresponds to Colleges, Universities, and Professional Schools.
No, Pacific Union College does not have a profile on Crunchbase.
Yes, Pacific Union College maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/pacific-union-college.
As of December 06, 2025, Rankiteo reports that Pacific Union College has experienced 1 cybersecurity incidents.
Pacific Union College has an estimated 14,538 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Cyber Attack.
Detection and Response: The company detects and responds to cybersecurity incidents through an third party assistance with other cybersecurity teams, and law enforcement notified with federal authorities, and remediation measures with actively working around the clock to restore and safeguard systems..
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.

Systems Affected: internal networksphone systemsweb services

Entity Name: Pacific Union College
Entity Type: Educational Institution
Industry: Education

Incident Response Plan Activated: True
Third Party Assistance: Other cybersecurity teams
Law Enforcement Notified: Federal authorities
Remediation Measures: Actively working around the clock to restore and safeguard systems
Third-Party Assistance: The company involves third-party assistance in incident response through Other cybersecurity teams.
Prevention of Data Exfiltration: The company takes the following measures to prevent data exfiltration: Actively working around the clock to restore and safeguard systems.
Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as Other cybersecurity teams.
Most Recent Incident Detected: The most recent incident detected was on 2023-06-20.
Most Significant System Affected: The most significant system affected in an incident was internal networksphone systemsweb services.
Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was Other cybersecurity teams.
.png)
HedgeDoc is an open source, real-time, collaborative, markdown notes application. Prior to 1.10.4, some of HedgeDoc's OAuth2 endpoints for social login providers such as Google, GitHub, GitLab, Facebook or Dropbox lack CSRF protection, since they don't send a state parameter and verify the response using this parameter. This vulnerability is fixed in 1.10.4.
Langflow versions up to and including 1.6.9 contain a chained vulnerability that enables account takeover and remote code execution. An overly permissive CORS configuration (allow_origins='*' with allow_credentials=True) combined with a refresh token cookie configured as SameSite=None allows a malicious webpage to perform cross-origin requests that include credentials and successfully call the refresh endpoint. An attacker-controlled origin can therefore obtain fresh access_token / refresh_token pairs for a victim session. Obtained tokens permit access to authenticated endpoints — including built-in code-execution functionality — allowing the attacker to execute arbitrary code and achieve full system compromise.
A vulnerability was detected in xerrors Yuxi-Know up to 0.4.0. This vulnerability affects the function OtherEmbedding.aencode of the file /src/models/embed.py. Performing manipulation of the argument health_url results in server-side request forgery. The attack can be initiated remotely. The exploit is now public and may be used. The patch is named 0ff771dc1933d5a6b78f804115e78a7d8625c3f3. To fix this issue, it is recommended to deploy a patch. The vendor responded with a vulnerability confirmation and a list of security measures they have established already (e.g. disabled URL parsing, disabled URL upload mode, removed URL-to-markdown conversion).
A security vulnerability has been detected in Rarlab RAR App up to 7.11 Build 127 on Android. This affects an unknown part of the component com.rarlab.rar. Such manipulation leads to path traversal. It is possible to launch the attack remotely. Attacks of this nature are highly complex. It is indicated that the exploitability is difficult. The exploit has been disclosed publicly and may be used. Upgrading to version 7.20 build 128 is able to mitigate this issue. You should upgrade the affected component. The vendor responded very professional: "This is the real vulnerability affecting RAR for Android only. WinRAR and Unix RAR versions are not affected. We already fixed it in RAR for Android 7.20 build 128 and we publicly mentioned it in that version changelog. (...) To avoid confusion among users, it would be useful if such disclosure emphasizes that it is RAR for Android only issue and WinRAR isn't affected."
A weakness has been identified in ZSPACE Q2C NAS up to 1.1.0210050. Affected by this issue is the function zfilev2_api.OpenSafe of the file /v2/file/safe/open of the component HTTP POST Request Handler. This manipulation of the argument safe_dir causes command injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.