QBE Insurance A.I CyberSecurity Scoring
05/09/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for QBE Insurance in 2026.
No incidents recorded for QBE Insurance in 2026.
No incidents recorded for QBE Insurance in 2026.
We are a leading provider of insurance and reinsurance offering innovative risk management solutions for businesses worldwide. We partner with those who move the world forward, navigating complex risks and working across diverse industries to support and empower our clients. Note: We are currently experiencing some technical issues with our recruitment platform which we hope to resolve shortly, please be patient with us, thank you for your interest in jobs at AXA XL.
HDFC Life, one of India’s leading private life insurance companies, offers a range of individual and group insurance solutions. It is a joint venture between Housing Development Finance Corporation Limited (HDFC), India’s leading housing finance institution and abrdn plc, the leading provider of financial services in the United Kingdom. HDFC Life’s product portfolio comprises solutions, which meet various customer needs such as Protection, Pension, Savings, Investment and Health. Customers have the added advantage of customizing the plans, by adding optional benefits called riders, at a nominal price. The company currently has 37 retail and 8 group products in its portfolio, along with 9 optional riders catering to the savings, investment, protection and retirement needs of customers. HDFC Life continues to have one of the widest reaches among new insurance companies with about 500 branches in India touching customers in over 900 cities and towns. The company has also established a liaison office in Dubai. HDFC Life has a strong presence in its existing markets with a strong base of Financial Consultants. For more information, please visit our website, www.hdfclife.com
At Liberty Mutual, we believe progress happens when people feel secure. For more than 110 years we have helped people and businesses embrace today and confidently pursue tomorrow by providing protection for the unexpected and delivering it with care. A Fortune 100 company with more than 40,000 employees in 28 countries and economies, we are the ninth largest global property and casualty insurer and generate more than $50 billion in annual consolidated revenue. We operate through three strategic business units: US Retail Markets, providing auto, home, renters and other personal and small commercial lines property and casualty insurance to individuals and small businesses countrywide; Global Risk Solutions, delivering a full range of comprehensive commercial and specialty insurance, reinsurance and surety solutions to mid-size and large businesses worldwide; and Liberty Mutual Investments, deploying more than $100 billion of long-term capital globally across its integrated platform to drive economic growth, power innovation and secure Liberty Mutual’s promises. For more information, visit www.libertymutualinsurance.com.
Established in 2000, Aditya Birla Sun Life Insurance Company Limited (formerly Birla Sun Life Insurance Company Limited) is a joint venture between the Aditya Birla Group, a well known and trusted name globally amongst Indian conglomerates and Sun Life Financial Inc, leading international financial services organization from Canada. The local knowledge of the Aditya Birla Group combined with the domain expertise of Sun Life Financial Inc., offers a formidable protection for its customers' future. With an experience of over 10 years, ABSLI has contributed significantly to the growth and development of the life insurance industry in India and currently ranks amongst the top 7 private life insurance companies in the country. Known for its innovation and creating industry benchmarks, ABSLI has several firsts to its credit.It was the first Indian Insurance Company to introduce "Free Look Period" and the same was made mandatory by IRDA for all other life insurance companies. Additionally, ABSLI pioneered the launch of Unit Linked Life Insurance plans amongst the private players in India. To establish credibility and further transparency, ABSLI also enjoys the prestige to be the originator of practice to disclose portfolio on monthly basis. These category development initiatives have helped ABSLI be closer to its policy holders expectations, which gets further accentuated by the complete bouquet of insurance products (viz. pure term plan, life stage products, health plan and retirement plan) that the company offers.
We help our clients and colleagues grow — and our communities thrive — by protecting and promoting possibility. We seek better ways to manage risk and define more effective paths to the right outcome. We go beyond risk to rewards for our clients, our company, our colleagues, and the communities in which we serve. Marsh Risk is a part of Marsh. Together with Mercer, Guy Carpenter, and Oliver Wyman, we help organizations build resilience and competitive advantages from every angle. With annual revenue over $24 billion and more than 90,000 colleagues in 130 countries, Marsh helps build the confidence to thrive through the power of perspective.
Vienna Insurance Group (VIG) is the leading insurance group in the entire Central and Eastern European (CEE) region. More than 50 insurance companies and pension funds in 30 countries form a Group with a long-standing tradition, strong brands and close customer relations. Around 30,000 employees in the VIG take care of the day-to-day needs of around 33 million customers. VIG shares have been listed on the Vienna Stock Exchange since 1994, on the Prague Stock Exchange since 2008 and on the Budapest Stock Exchange since 2022. The VIG Group has an A+ rating with a positive outlook by the internationally recognised rating agency Standard & Poor’s. VIG cooperates closely with the Erste Group, the largest retail bank in Central and Eastern Europe. VIG Social Media Netiquette: https://group.vig/en/social-media-netiquette/
Helvetia Baloise is the largest multi-line insurer in Switzerland and one of the leading insurance groups in Europe. Every day, more than 22,000 employees are committed to supporting around 13 million customers with insurance, pension and financial solutions – from private individuals and SMEs to international customer groups such as speciality and reinsurance. Headquartered in Basel, Switzerland, Helvetia Baloise is active in a total of eight European markets and in the global speciality markets, combining strong Swiss roots with a clear international orientation. Helvetia Baloise creates security and opens up opportunities, both now and in the future. Through profitable growth and business activities geared towards long-term stability, we facilitate individual solutions for customers, secure an attractive and reliable investment for our shareholders, promote strong partnerships and offer our employees attractive prospects. The Helvetia Baloise Holding Ltd share (HBAN) is traded on SIX Swiss Exchange.
SURA es una compañía que integra en diferentes empresas soluciones en seguros y seguridad social. Su marca se presenta a los clientes como Seguros SURA, ARL SURA y EPS SURA. Existen otras marcas y empresas, especialmente de prestación de servicios, que hacen parte de la Compañía. Nuestra experiencia y solidez está soportada en 80 años de trayectoria en el mercado de los seguros. Tiempo en el que hemos acompañado a los latinoamericanos en todas las etapas de la vida con productos que se ajustan a sus necesidades de protección. Para responder a nuestras promesas de aseguramiento contamos con una estructura sólida de negocios, permitiéndonos construir relaciones de largo plazo con nuestros clientes basadas en la tranquilidad de estar bien protegidos. La vida y el patrimonio económico son una prioridad para SURA, por ello ofrecemos un amplio portafolio de soluciones.
Founded in October 1949, The People’s Insurance Company (Group) of China is the first nation-wide insurance company in the People’s Republic of China and has developed into a leading large-scale integrated insurance financial group in the PRC, ranking 208th on the Global 500 (2014) published by the Fortune magazine. The Company is an investment holding company. The Company operates its property and casualty insurance business through PICC Property and Casualty Company.The Company operates its life and health insurance businesses through PICC Life Insurance Company and PICC Health Insurance Company , The Company centrally and professionally manages most of its insurance assets through PICC Asset Management Company and PICC Investment Holding which is a professional investment company specializing in real estate investments. The Company also carries out non-transactional businesses such as equity and debt investments in insurance and non-insurance capital within and outside the Group through PICC Capital Investment Management Company.The Company has also made strategic investments in non-insurance financial businesses such as banking and trust.
Latest updates, reports, and threat intel affecting the global network.
As cyber attacks reach unprecedented levels of volume and sophistication, organizations across all sectors must evolve their defense...
Singapore's marine insurers face higher costs as GPS spoofing and jamming incidents climb across key shipping lanes, forcing shipowners to...
Commercial insurer QBE has announced the appointment of Insaf Idelhaj to the newly created role of Senior Manager – Cyber Services and Risk...
Ransomware attacks are projected to surge sharply, with the number of victims publicly named on leak sites expected to exceed 7,000 by 2026,...
ASX-listed insurer QBE Insurance Group has shifted its cyber security leadership to the United States as part of an effort to embed a more...
As cyberattacks grow in frequency and complexity, private equity (PE) firms are elevating cybersecurity from a back-office IT concern to a...
We predicted this climate” says QBE as Chinese hacker groups blamed.
One in seven businesses have experienced at least one day of disruption due to a cyber event in the past year, according to global research...
Another key factor is that ransomware has turned into a business model, Check Point researchers report.
A remote attacker who controls a container registry may be able to direct a client's token request to a host of the attacker's choice, and disclose the victim's registry credentials to that host. This vulnerability is addressed in containerization version 0.41.0.
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the djust live transport resolves the LiveView to mount from a client-supplied dotted path by calling `__import__(module_path, ...)`. The module is imported — running its top-level code (import side effects) — before the framework checks that the resolved object is a `LiveView` subclass and before any per-view authentication. The `LIVEVIEW_ALLOWED_MODULES` allowlist that should contain this is fail-open (`if allowed_modules:` — skipped when the setting is unset, the framework default) and uses loose `startswith` matching. An unauthenticated WebSocket client (the WS handshake does not require auth; per-view auth runs only after import + instantiate) can therefore send a `mount` / `live_redirect_mount` / `url_change` frame (or an SSE mount) with `view = "<any.importable.module>.AnyName"` and cause the server to import — and execute the top-level code of — any importable Python module by name. Version 1.0.7 fixes the issue with a fail-closed resolution gate (`djust._view_resolution.is_view_import_allowed`): a client view path resolves only if (a) its module is already loaded (`sys.modules` — so resolving runs no new code; URL-routed views loaded by URLconf at startup keep working with zero config) or (b) it matches `LIVEVIEW_ALLOWED_MODULES` on a module-segment boundary (explicit opt-in for lazily-imported views). The gate runs before `__import__` at all three sinks (+ defense-in-depth inside `_instantiate_view`). As a workaround, set `LIVEVIEW_ALLOWED_MODULES` to the narrow list of modules that contain your mountable LiveView classes. (Note: pre-patch the allowlist is `startswith`-matched and the import still precedes the subclass check, so this is mitigation, not a complete fix.)
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, djust's per-object authorization (`get_object` + `has_object_permission`, ADR-017) was enforced on the WebSocket mount and event paths but not on three other render entry points: (a) the initial HTTP GET render, (b) SPA `url_change` navigation, and (c) `{% live_render %}` embedded child views. An authenticated user could therefore view (and on some paths act on) an object they are not authorized for by loading the page directly, navigating to it via SPA url-change, or composing it as an embedded child — a classic IDOR / broken object-level access control on object-scoped views. This is fixed in djust 1.0.7. All render entry points now route through a shared `enforce_object_permission` chokepoint: HTTP GET returns 403, `url_change` emits a `permission_denied` frame and skips the render, and `{% live_render %}` (eager + lazy) refuses the embed. Views without a custom `get_object` are unaffected (no-op). No reliable workaround short of upgrading. Do not expose object-scoped views through the HTTP-GET / url_change / live_render paths until patched.
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the WebSocket `handle_mount` and `ViewRuntime._build_request` rebuild an `HttpRequest` via `RequestFactory().get(...)` with no `HTTP_HOST`, so `request.get_host()` defaulted to `"testserver"` on the live path. Host/subdomain/domain `TenantResolver`s then misresolved the tenant — `None` on the live path while the HTTP path resolved correctly. With `STRICT_MODE=False` the tenant-scoped managers returned unscoped rows (cross-tenant disclosure); with the default they returned an empty queryset (broken tenancy). This is fixed in djust 1.0.7. The handshake Host is extracted from the ASGI scope, validated against `ALLOWED_HOSTS` (the same logic as the CSWSH Origin gate, parsed with Django's `split_domain_port` so malformed Hosts are rejected at the boundary), and propagated — with the TLS scheme — into the reconstructed request, so live-path tenant resolution matches HTTP exactly. There is no known workaround on the live path short of upgrading. Users are most exposed when combined with `STRICT_MODE=False`.
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, when a Django `Model` instance is assigned to a public view attribute, djust serialized it to the client with no sensitive-field denylist — sending fields such as `password` (the hash), privilege flags (e.g. `is_staff` / `is_superuser`), tokens, and other PII to the browser. Because exposing model objects to templates is a normal djust pattern, this could leak credentials/PII without the developer realizing the full object crossed the wire. This is fixed in djust 1.0.7. Model serialization applies a secure-by-default sensitive-field denylist (password/hash/token/secret-style fields and known privilege flags are withheld) with an identity-subset fallback. As a workaround, keep `Model` instances on `_private` attributes and expose only the specific fields needed, until patched.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.