PNB A.I CyberSecurity Scoring
02/04/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for Philippine National Bank in 2026.
No incidents recorded for Philippine National Bank in 2026.
No incidents recorded for Philippine National Bank in 2026.
Banking
BNP Paribas is a leading bank in Europe with an international reach. It has a presence in 64 countries, with more than 178,000 employees, including more than 144,000 in Europe. BNP Paribas holds leading positions in its three major operating divisions: ⚆ Commercial, Personal Banking & Services for all the Group’s retail banking networks and several specialised businesses, including BNP Paribas Personal Finance and Arval; ⚆ Investment & Protection Services for savings, investment and protection solutions; ⚆ Corporate & Institutional Banking, which is focused on corporate and institutional clients. The Group helps all its clients (individuals, community associations, entrepreneurs, SMEs, corporates and institutional clients) to realise their projects through solutions spanning financing, investment, savings and protection insurance. In Europe, the Group has four domestic markets (Belgium, France, Italy and Luxembourg) and BNP Paribas Personal Finance is the European leader in consumer lending. BNP Paribas is rolling out its integrated retail-banking model in Mediterranean countries, in Turkey, in Eastern Europe and a large network in the western part of the United States. In its Corporate & Institutional Banking and Investment & Protection Services activities, BNP Paribas also enjoys top positions in Europe, a strong presence in the Americas as well as a solid and fast-growing business in Asia-Pacific. To learn more about our social media terms and Data Protection Notice: https://group.bnpparibas/en/data-protection
Banque Misr (BM) was established in 1920 by the pioneer economist and financial expert Mohamed Talaat Harb Pasha, who spearheaded the concept of investing in national savings and directing them toward economic and social development. Thus, Banque Misr was established as the first wholly Egyptian-owned bank. Banque Misr has funded many businesses spanning across multiple domestic sectors, such as: textiles, insurance, transportation, aviation, entertainment, and filmmaking. Currently, BM owns shares in 157 companies across different fields, ranging from finance, tourism, housing, agriculture and food, and communication and information technology. A true pioneer in the region, Banque Misr became the first bank in Egypt and North Africa to comply with PCI data security standards, upon obtaining the latest version of the global Payment Card Industry Data Security Standard (PCI DSS 3.2.1) certification. Utilizing the latest technology in the banking sector, Banque Misr is constantly looking to expand customer access to banking services. Today, Banque Misr is proud to offer one of Egypt’s largest ATM networks, located across all areas of Egypt. Banque Misr’s role is visible in all economic fields due to its geographic outreach. The bank has more than 20,000 employees, serving a large base of more than 13 million clients in Egypt, with a total paid-up capital amounting to EGP 15 billion. The bank has more than 800 electronically integrated local branches located nationwide to provide the best and most accessible services to customers. Banque Misr also values its regional and international presence, which includes its five branches in the United Arab Emirates and one in France. In addition, the bank’s international presence includes subsidiaries in Lebanon and Germany, as well as representative offices in China, Russia, South Korea, and Italy and a global network of correspondents.
Yapı Kredi has been sustainably strengthening its market positioning in the sector since its establishment in 1944 through a customer-centric approach and focus on innovation. Yapı Kredi is the 3rd largest private bank in Turkey with total assets worth TL 411 billion as of the end of 2019. Constantly seeking to increase its contribution to the financing of the Turkish economy with its customer-centric approach, Yapı Kredi enlarged the volume of its total cash and non-cash loans by 4% in 2019 to TL 319 billion. Thus, Yapı Kredi maintained its position in 2nd place among private banks in this respect. The Bank serves its customers with its 846 branches covering all regions of Turkey and 16,631 employees. Yapı Kredi delivers its products and services via its advanced Alternative Delivery Channels (ADCs) that comprise 4,330 ATMs, innovative internet banking, leading mobile banking, 3 call centers and approximately 709 thousand POS terminals. 94% of the Bank’s transactions went through non-branch channels as at year-end 2019. Yapı Kredi is a fully integrated financial services group supported by its domestic and international subsidiaries. Yapı Kredi serves its customers through retail banking (comprising of individual banking, Small and Medium Size Enterprises (SME) banking and card payment systems, private banking and wealth management), as well as corporate and commercial banking. The Bank’s operations are supported by domestic subsidiaries in asset management, brokerage, leasing and factoring as well as international banking subsidiaries in the Netherlands, Malta and Azerbaijan. Yapı Kredi has a strong shareholding structure which ensures sustainable and profitable growth. 40.95% of the Bank’s shares are owned by Koç Financial Services, 9.02% of the shares are owned by Koç Holding A.Ş. The total direct and indirect shares of Koç Group amount to 49.99%. 20.00% of Bank’s shares are owned by UniCredit S.P.A. The remaining 30.03% is publicly traded on Borsa Istanbul
ANZ has a proud heritage of more than 180 years. Our purpose is to shape a world where people and communities thrive. That is why we strive to create a balanced, sustainable economy in which everyone can take part and build a better life. We employ more than 50,000 people and have our global headquarters in Melbourne. ANZ is among the top 4 banks in Australia, the largest banking group in New Zealand and Pacific, and among the top 50 banks in the world. Follow us elsewhere for our latest news: facebook.com/ANZAustralia facebook.com/ANZNewZealand twitter.com/ANZ_AU twitter.com/ANZ_NZ twitter.com/ANZ_Media twitter.com/ANZ_BlueNotes twitter.com/ANZ_Research instagram.com/anz_au bluenotes.anz.com
CIBC is here to help all our clients reach their goals. We know the importance of reliable financial products and services, and we’re dedicated to providing them in a way that lets you bank however you want, whenever you want. With innovative tools designed around your priorities and a team fully focused on your success, you’ll get the insights you need to get even closer to achieving your goals. This culture of innovation and shared values of trust, teamwork and accountability are why we’ve been named a top employer in Canada. They’re also why a career at CIBC is more than a job—it’s an opportunity to grow and work alongside some of the brightest in Canada. La Banque CIBC est là pour aider tous nos clients à atteindre leurs objectifs. Nous connaissons l'importance de produits et services financiers fiables, et nous nous engageons à les fournir d'une manière qui vous permette d'effectuer vos opérations bancaires comme vous le souhaitez, quand vous le souhaitez. Avec des outils innovants conçus autour de vos priorités et une équipe entièrement centrée sur votre réussite, vous obtiendrez les informations dont vous avez besoin pour vous rapprocher encore plus de vos objectifs. Cette culture de l'innovation et les valeurs partagées de confiance, de travail d'équipe et de responsabilité sont la raison pour laquelle nous avons été nommés l'un des meilleurs employeurs au Canada. C'est aussi pourquoi une carrière à la Banque CIBC est plus qu'un emploi : c'est une occasion de grandir et de travailler aux côtés de certaines des personnes plus brillantes au Canada.
Since its establishment in 1946, BNI has been part of the dynamic of national development in Indonesia. Now BNI has grown and developed into a solid national bank with a sustainable financial performance. ‘Serving the Country, the Pride of the Nation”, BNI continues to increase its contribution for the progress of the nation and country, today and in the future. As of the end of 2025, BNI operated 1 (one) Head Office, 17 Regional Offices, 10 overseas Office Networks, and 1,834 Domestic Office Networks, comprising Branch Offices, Sub-Branch Offices, and Business Centers. Of the 10 Overseas Office Networks, 6 are licensed Overseas Branch Offices, 2 are Representative Offices, 1 is an Overseas Sub-Branch, and 1 is a remittance Branch Office, strategically located across 8 key countries (USA, UK, Japan, Singapore, South Korea, Hongkong, Netherlands, and Australia). BNI always strives to be the bank of choice by providing excellent service and value added solutions to all of its customers. BNI offers integrated financial services to its customers, supported by its subsidiaries: BNI Multi Finance, BNI Securities, BNI Life Insurance, BNI Remittance, BNI Asset Management, hiBank, and BNI Ventures
Bank Rakyat Indonesia (BRI) adalah salah satu bank milik pemerintah yang terbesar di Indonesia. BRI didirikan di Purwokerto, Jawa Tengah oleh Raden Bei Aria Wirjaatmadja pada 16 Desember 1895. BRI telah hadir lebih dari 129 tahun memberi pelayanan terbaik bagi seluruh lapisan masyarakat, BRI turut andil dalam upaya membangun negeri dan Memberi Makna Indonesia. Didukung oleh 8.200 lebih jaringan kantor, 686,128 jaringan e-channel, 1.064.219 Agen BRILink serta jaringan satelit BRIsat, membuat BRI terus berusaha menjadi yang pertama dalam mendukung perekonomian masyarakat. Melalui visi "The Most Trusted Lifetime Financial Partner for Sustainable Growth” menjadikan BRI fokus pada pengembangan SDM unggul, berkarakter kuat, dan ber-AKHLAK. Sebagai bentuk komitmen BRI dalam memberikan economic value bagi Negara, tahun 2024 BRI telah memberikan setoran Dividen terbesar diantara BUMN lainnya sebesar Rp. 25.1 Triliun. Kinerja BRI terus tumbuh dan berkelanjutan. Terbukti pada tahun 2024 BRI berhasil membukukan laba sebesar Rp60,64 Triliun dan menjadi Bank dengan laba terbesar di Indonesia. BRI tidak hanya tempat bekerja, tapi tempat kamu Belajar, Bertumbuh, dan Berkontribusi mengoptimalkan semua potensi terbaikmu untuk semua nasabah BRI. BRI dan Seluruh Insan BRILiaN, Siap Memberi Makna Indonesia.
O Bradesco é um dos líderes do setor financeiro privado e um dos maiores empregadores na categoria. Além disso, apresenta o melhor índice de eficiência entre os bancos de varejo. Nossa missão é fornecer soluções, produtos e serviços financeiros e de seguros com agilidade e competência, principalmente por meio da inclusão bancária e da promoção da mobilidade social, contribuindo para o desenvolvimento sustentável e a construção de relacionamentos duradouros. Nós acreditamos nas pessoas. Desde o início de nossas atividades, reconhecemos no valor do desempenho e no potencial realizador das pessoas a base de sustentação dos negócios da Organização Bradesco. Nossa atuação está inserida e se expande continuamente, por todo o território nacional, ampliando o universo de clientes e parceiros, contemplando uma gama de diversidade que é a própria expressão da estrutura social brasileira. Acreditamos em nossa capacidade de promover crescimento sustentado, para as pessoas e por meio delas. Siga com a gente também aqui, no LinkedIn!
Somos una Corporación líder y comprometida con el país que brinda servicios financieros de excelencia a cada segmento de clientes. Buscamos permanentemente ser el mejor Banco para ellos, ser el mejor lugar para trabajar y ser la mejor inversión para nuestros accionistas. Lo hacemos de forma colaborativa y comprometida con las personas que conforman nuestra organización y con el desarrollo de la comunidad.
Latest updates, reports, and threat intel affecting the global network.
Panel Discussion 2 (from left): Head of Strategy and Cyber Resilience Joel Geronimo, Bangko Sentral ng Pilipinas Deputy Director and Head of...
Cyber threats are rising, and national cyber resilience is now essential for economic growth and digital development. Learn why strategic...
As cybercrime continues to threaten the country's digital and financial ecosystems, tBank of the Philippine Islands (BPI) has partnered with the Department...
Personnel of the Armed Forces of the Philippines are undergoing a five-day specialized training course, which aims to boost their skills and...
The listing traces back to Philippine National Bank's 2021 property‑for‑share swap, after which the bank committed to distribute 59% of PNB...
Two DICT–UPDEPPO initiatives aim to boost online safety and expand the country's cybersecurity workforce as part of its broader national...
"Ligtas ang may alam." Cases of online fraud in the Philippines have dropped this year as more people have become knowledgeable about...
On Oct. 29, 2025, the British Chamber of Commerce Philippines (BCCP) successfully concluded its Trade & Connect event titled...
MANILA – The National Privacy Commission (NPC) is investigating the alleged data breach involving G-Xchange, Inc., the operator of GCash.
Authentication bypass using an alternate path or channel vulnerability in N-able N-central allows Authentication Bypass. This issue affects N-central: through 2026.1.
Improper Verification of Cryptographic Signature in ueberauth guardian allows an unauthenticated attacker to revoke a victim's session with a forged token. Guardian.revoke/3 in lib/guardian.ex decodes the supplied token with peek/1, which performs no signature verification (it only base64-decodes the JWT header and payload). The resulting unverified claims are forwarded directly to the configured token module's revoke callback and the implementation's on_revoke callback, a state-mutating sink. The sibling operations refresh/2 and exchange/4 both call decode_and_verify first, so the signature is checked before anything acts on the claims; revoke/3 is the only state-mutating path that acts on claims without verifying the signature. An attacker who knows or guesses a victim's identifying claim values (jti, sub) can forge a JWT carrying those claims, sign it with an arbitrary key, and submit it to any endpoint that funnels a caller-supplied token into Guardian.revoke/3 (the standard logout / session-revocation pattern). When the token module mutates state keyed by the claims (whitelist deletion or blacklist insertion, for example a GuardianDb-style store), the victim's legitimate session is evicted. This is an unauthenticated session-revocation denial of service; the attacker never needs the signing secret. This issue affects guardian: from 1.0.0 before 2.4.1.
Allocation of Resources Without Limits or Throttling vulnerability in ueberauth guardian (Guardian.Permissions module) allows a denial of service via BEAM atom-table exhaustion. This vulnerability is associated with program file lib/guardian/permissions.ex and program routines 'Elixir.Guardian.Permissions':encode_permissions!/1, 'Elixir.Guardian.Permissions':encode_permissions_into_claims!/2, 'Elixir.Guardian.Permissions':do_encode_permissions!/2. The Guardian.Permissions mixin installs a public encode_permissions!/1 function on every module that does use Guardian.Permissions. For each key of the supplied map, encode_permissions!/1 calls String.to_atom(to_string(k)) before any validation runs. The integer-value clause of do_encode_permissions!/2 then short-circuits straight to encoding without validating the key against the configured permission set, so a key with an integer value is interned as a fresh atom with no exception raised. Atoms are never garbage collected and the BEAM atom table is a fixed-size resource (default roughly 1,048,576 entries), so each unique attacker-chosen key permanently consumes one slot. An attacker who can influence a permission map that reaches encode_permissions!/1 (for example a permissions map read from a request body and passed into token issuance via encode_permissions_into_claims!/2) can mint an unbounded number of atoms and exhaust the atom table, crashing the entire BEAM node and every service running on it. The sibling decode_permissions/1 is not affected because it skips keys absent from the configured permission set. This issue affects guardian: from 2.0.0 before 2.4.1.
Allocation of Resources Without Limits or Throttling in ueberauth guardian allows denial of service via unbounded atom creation from attacker-controlled binary input. Guardian.Permissions.AtomEncoding encodes permission scopes by passing arbitrary binaries to String.to_atom/1. When encode/3 in lib/guardian/permissions/atom_encoding.ex is called with a list, each binary entry is handled by the encode_value/3 binary clause, which calls String.to_atom(value) with no allow-list check. The perm_set argument (the application's small, finite set of legitimate permission names) is discarded, so any external string flows straight into atom creation. This encoder is selected with use Guardian.Permissions, encoding: Guardian.Permissions.AtomEncoding and reached through the imported encode/3 entry point. String.to_atom/1 creates a brand-new atom for every previously unseen binary, atoms are never garbage collected, and the BEAM atom table is fixed at roughly 1,048,576 entries by default. An application that funnels attacker-influenced permission scopes (from a request body, a JWT claim, or other external input) into encode/3 therefore mints one permanent atom per distinct value. A modest stream of varied, unauthenticated input permanently consumes the atom table and crashes the BEAM node with system_limit, taking down every application running on it. The default encoder is Guardian.Permissions.BitwiseEncoding, which is not affected. This issue affects guardian: from 2.0.0 before 2.4.1.
Allocation of Resources Without Limits or Throttling in ueberauth guardian allows denial of service via unbounded atom creation from attacker-influenced binary input. Guardian.Plug.Keys derives connection and session namespace keys by passing arbitrary binaries to String.to_atom/1. base_key/1 in lib/guardian/plug/keys.ex converts any binary into the atom :"guardian_<input>", and the derived helpers claims_key/1, resource_key/1, and token_key/1 create a second atom on top of that. key_from_other/1 likewise converts a regex-captured binary through String.to_atom/1. The public specs advertise String.t() as a valid argument, so passing a string is documented usage, and higher-level entry points such as Guardian.Plug.current_token(conn, key: key) thread the caller-supplied key straight into these functions. String.to_atom/1 creates a brand-new atom for every previously unseen binary, atoms are never garbage collected, and the BEAM atom table is fixed at roughly 1,048,576 entries by default. An application that routes attacker-influenced data (a tenant identifier, header, or other request input) into a Guardian key therefore mints one permanent atom per distinct value. A modest stream of varied, unauthenticated input permanently consumes the atom table and crashes the BEAM node, taking down every application running on it. This issue affects guardian: from 0.1.0 before 2.4.1.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.