Perforce Software A.I CyberSecurity Scoring
Perforce Software
Company Information
Website:http://www.perforce.com
Employees number:2,031
Number of followers:70,177
NAICS:5112
Industry Type:Software Development
Homepage:perforce.com
Perforce Software Risk Score (AI oriented)
Between 750 and 799
Perforce SoftwareSoftware Development
Updated:
23/04/2026
23/04/2026
756/1000
Fair
Baa
Perforce Software Global Score (TPRM)
xxxx
Perforce SoftwareSoftware Development
Score locked

Perforce SoftwareFair
Current Score
756Baa (FAIR)
01000
2 incidents
-5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
757
MAY 2026
757
APRIL 2026
761
Vulnerability
22 Apr 2026 • Perforce Software
Perforce: Misconfigured Perforce servers remain widespread, threaten sensitive data exposure
Exposed Perforce P4 Servers Leave Source Code Vulnerable to Unauthorized Access
756
CRITICAL-5
PER1776926729
Exposed Perforce P4 Servers Leave Source Code Vulnerable to Unauthorized Access
A recent investigation by Australian security researcher Morgan Robertson has uncovered widespread misconfigurations in internet-exposed Perforce P4 servers, exposing sensitive source code to potential breaches. Of the 6,122 publicly accessible instances analyzed, 72% allowed read-only access via a default remote user account, while 21% had at least one account with no password, granting direct read-write permissions.
Even more alarmingly, 4% of servers were vulnerable to full system compromise due to an unsecured "superuser" account. Among the 2,826 servers still active at their original IP addresses, 54% permitted unauthenticated read-only access to source code.
The affected organizations span multiple industries, including a North American law enforcement software provider, a commercial EV startup, a global industrial automation firm, and a banking software manufacturer. Robertson has notified Perforce and over 60 impacted entities about the exposures, though the full scope of potential data leaks remains unclear. The findings highlight persistent risks tied to improperly secured version control systems in enterprise environments.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
MARCH 2026
761
FEBRUARY 2026
761
JANUARY 2026
761
DECEMBER 2025
761
NOVEMBER 2025
761
OCTOBER 2025
761
SEPTEMBER 2025
760
AUGUST 2025
760
JULY 2025
760
MAY 2025
762
Vulnerability
01 May 2025 • Perforce Software
Perforce: Unsecured Perforce Servers Expose Sensitive Data From Major Orgs
Thousands of Perforce Servers Exposed in Widespread Misconfiguration Crisis
760
CRITICAL-2
PER1776784296
Thousands of Perforce Servers Exposed in Widespread Misconfiguration Crisis
In spring 2025, Australian security researcher Morgan Robertson uncovered a critical security gap in internet-facing Perforce P4 servers, a version control platform widely used in gaming, semiconductor design, and other data-intensive industries. His analysis revealed 6,122 exposed instances, with alarming misconfigurations leaving sensitive data vulnerable to exploitation.
Of the identified servers, 72% allowed unauthenticated read-only access via a default-enabled remote user account, while 21% had at least one account with no password, granting direct read-write access. Even more concerning, 4% exposed an unprotected ‘superuser’ account, enabling full system compromise through command injection. Most servers also permitted user enumeration and exposed server details by default.
By the time Robertson disclosed his findings on Tuesday, 2,826 servers remained active at their original IP addresses. Of these, 54% (1,525 servers) still allowed unauthenticated read-only access, and 17% (501 servers) permitted user enumeration without authentication. Among the affected organizations were AAA and indie game developers, universities, animation studios, crypto projects, and manufacturers, as well as high-profile entities such as:
- A regional defense contractor
- Medical technology providers
- A North American law enforcement software vendor
- An international industrial automation firm
- A North American commercial EV startup
- An Asian retail POS and ERP software vendor
- A banking software maker
Exposed data included client information, internal projects, personal data, credentials, source code, and product schematics. Robertson emphasized that the issue extends beyond public servers many Perforce instances on internal networks are deployed with the same insecure defaults, creating a privilege escalation risk for insider threats or attackers with network access.
Perforce was notified of the findings a year prior and responded by disabling the remote user account by default and updating its documentation to improve security. In a May 2025 blog post, the company acknowledged that while P4 is trusted by security-conscious teams, proper configuration is essential to prevent exposure. Robertson also contacted over 60 affected organizations to warn them of the risks.
The incident underscores the persistent threat of misconfigured enterprise software, even in systems handling highly sensitive intellectual property.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Perforce Software ??
What was Perforce Software's A.I Rankiteo Cyber Score in May 2026 ??
What was Perforce Software's A.I Rankiteo Cyber Score in April 2026 ??
What was Perforce Software's A.I Rankiteo Cyber Score in March 2026 ??
What was Perforce Software's A.I Rankiteo Cyber Score in February 2026 ??
What was Perforce Software's A.I Rankiteo Cyber Score in January 2026 ??
What was Perforce Software's A.I Rankiteo Cyber Score in December 2025 ??
What was Perforce Software's A.I Rankiteo Cyber Score in November 2025 ??
What was Perforce Software's A.I Rankiteo Cyber Score in October 2025 ??
What was Perforce Software's A.I Rankiteo Cyber Score in September 2025 ??
What was Perforce Software's A.I Rankiteo Cyber Score in August 2025 ??
What was Perforce Software's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on Perforce Software's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Perforce Software ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Perforce Software's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?