Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Perforce Software

Perforce Software Vendor Cyber Rating & Cyber Score

perforce.com

Perforce Software is the modern DevOps tech stack built to ensure AI governance. As software delivery grows more complex and AI accelerates both opportunity and risk, organizations can’t afford trade-offs between speed, scale, and control. That’s especially true for teams building high-stakes, revenue-critical applications where failure isn’t an option. Perforce helps organizations govern software delivery in the age of AI execution. Our solutions enforce guardrails across code, quality, infrastructure, and data—so teams can innovate faster without introducing risk. Designed to integrate with the tools teams already use, Perforce embeds governance and security throughout the development lifecycle, helping organizations manage complexity


Perforce Software A.I CyberSecurity Scoring

Perforce Software
Company Information
Website:http://www.perforce.com
Employees number:2,031
Number of followers:70,177
NAICS:5112
Industry Type:Software Development
Homepage:perforce.com
Perforce Software Risk Score (AI oriented)
Between 750 and 799
logo
Perforce SoftwareSoftware Development
Updated:
23/04/2026
756/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Perforce Software Global Score (TPRM)
xxxx
logo
Perforce SoftwareSoftware Development
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Perforce Software
Perforce SoftwareFair
Current Score
756Baa (FAIR)
01000
2 incidents
-5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
757Before Incident
MAY 2026
757Before Incident
APRIL 2026
761Before Incident
Vulnerability
22 Apr 2026Perforce Software
Perforce: Misconfigured Perforce servers remain widespread, threaten sensitive data exposure

Exposed Perforce P4 Servers Leave Source Code Vulnerable to Unauthorized Access

756After Incident
CRITICAL-5
PER1776926729
Exposed Perforce P4 Servers Leave Source Code Vulnerable to Unauthorized Access A recent investigation by Australian security researcher Morgan Robertson has uncovered widespread misconfigurations in internet-exposed Perforce P4 servers, exposing sensitive source code to potential breaches. Of the 6,122 publicly accessible instances analyzed, 72% allowed read-only access via a default remote user account, while 21% had at least one account with no password, granting direct read-write permissions. Even more alarmingly, 4% of servers were vulnerable to full system compromise due to an unsecured "superuser" account. Among the 2,826 servers still active at their original IP addresses, 54% permitted unauthenticated read-only access to source code. The affected organizations span multiple industries, including a North American law enforcement software provider, a commercial EV startup, a global industrial automation firm, and a banking software manufacturer. Robertson has notified Perforce and over 60 impacted entities about the exposures, though the full scope of potential data leaks remains unclear. The findings highlight persistent risks tied to improperly secured version control systems in enterprise environments.
INCIDENT DETAILS -
TYPE
Misconfiguration
IMPACT
Data Compromised: Sensitive source codeSystems Affected: Perforce P4 servers
DATA BREACH
Type Of Data Compromised: Source codeSensitivity Of Data: High
MARCH 2026
761Before Incident
FEBRUARY 2026
761Before Incident
JANUARY 2026
761Before Incident
DECEMBER 2025
761Before Incident
NOVEMBER 2025
761Before Incident
OCTOBER 2025
761Before Incident
SEPTEMBER 2025
760Before Incident
AUGUST 2025
760Before Incident
JULY 2025
760Before Incident
MAY 2025
762Before Incident
Vulnerability
01 May 2025Perforce Software
Perforce: Unsecured Perforce Servers Expose Sensitive Data From Major Orgs

Thousands of Perforce Servers Exposed in Widespread Misconfiguration Crisis

760After Incident
CRITICAL-2
PER1776784296
Thousands of Perforce Servers Exposed in Widespread Misconfiguration Crisis In spring 2025, Australian security researcher Morgan Robertson uncovered a critical security gap in internet-facing Perforce P4 servers, a version control platform widely used in gaming, semiconductor design, and other data-intensive industries. His analysis revealed 6,122 exposed instances, with alarming misconfigurations leaving sensitive data vulnerable to exploitation. Of the identified servers, 72% allowed unauthenticated read-only access via a default-enabled remote user account, while 21% had at least one account with no password, granting direct read-write access. Even more concerning, 4% exposed an unprotected ‘superuser’ account, enabling full system compromise through command injection. Most servers also permitted user enumeration and exposed server details by default. By the time Robertson disclosed his findings on Tuesday, 2,826 servers remained active at their original IP addresses. Of these, 54% (1,525 servers) still allowed unauthenticated read-only access, and 17% (501 servers) permitted user enumeration without authentication. Among the affected organizations were AAA and indie game developers, universities, animation studios, crypto projects, and manufacturers, as well as high-profile entities such as: - A regional defense contractor - Medical technology providers - A North American law enforcement software vendor - An international industrial automation firm - A North American commercial EV startup - An Asian retail POS and ERP software vendor - A banking software maker Exposed data included client information, internal projects, personal data, credentials, source code, and product schematics. Robertson emphasized that the issue extends beyond public servers many Perforce instances on internal networks are deployed with the same insecure defaults, creating a privilege escalation risk for insider threats or attackers with network access. Perforce was notified of the findings a year prior and responded by disabling the remote user account by default and updating its documentation to improve security. In a May 2025 blog post, the company acknowledged that while P4 is trusted by security-conscious teams, proper configuration is essential to prevent exposure. Robertson also contacted over 60 affected organizations to warn them of the risks. The incident underscores the persistent threat of misconfigured enterprise software, even in systems handling highly sensitive intellectual property.
INCIDENT DETAILS -
TYPE
Misconfiguration
IMPACT
Data Compromised: Client information, internal projects, personal data, credentials, source code, product schematicsSystems Affected: 6,122 exposed Perforce P4 servers (2,826 still active at disclosure)Operational Impact: Potential unauthorized access to sensitive intellectual property and internal systemsBrand Reputation Impact: Potential damage to brand reputation due to exposure of sensitive dataIdentity Theft Risk: High (due to exposure of personal data and credentials)
DATA BREACH
Client informationInternal projectsPersonal dataCredentialsSource codeProduct schematicsSensitivity Of Data: High (intellectual property, personal data, credentials)Personally Identifiable Information: Yes

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Perforce Software ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Perforce Software's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Perforce Software's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Perforce Software ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Perforce Software's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?