Comparison Overview

Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC)

VS

RSK Group

Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC)

3481 Plano Pkwy, 100, The Colony, Texas, US, 75056
Last Update: 2025-09-16 (UTC)
Between 800 and 900

Strong

Quest Resource Management Group, a subsidiary of Quest Resource Holding Corporation (Nasdaq: QRHC), is a full-service environmental consulting and management company headquartered in The Colony, Texas. Quest supports the efforts of companies to maximize profits and mitigate risks while minimizing their ecological footprints. Questโ€™s clients span numerous industry segments, including food services, hospitality, retail, manufacturing, construction, automotive aftermarket, and fleet industries. Quest provides clients with comprehensive sustainability programs, innovative recycling solutions, and environmental protection. In addition, Quest prides itself in delivering targeted solutions exclusively tailored to the needs of each respective client.

NAICS: 54162
NAICS Definition: Environmental Consulting Services
Employees: 156
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

RSK Group

Spring Lodge, Helsby, Cheshire, WA6 0AR, GB
Last Update: 2025-05-06 (UTC)

Strong

Between 800 and 900

RSK is a global leader in the delivery of sustainable solutions. Working in engineering and technical services, we work in sectors crucially linked to future global sustainability such as water, energy, food and drink, infrastructure, urban development, mining and waste. Our RSK family consists of over 200 environmental, engineering and technical services businesses that work together to provide practical solutions to some of the greatest challenges societies have ever faced. These challenges, and the responses to them, are perhaps best captured by the United Nations Sustainable Development Goals: โ€œa shared blueprint for peace and prosperity for people and the planet, now and into the futureโ€. We must achieve a truly sustainable future, and to get there, all nations, businesses, organisations and individuals must play a role. RSK is enabling clients around the world to do their bit with our integrated offering across research and development, consultancy and on-the-ground application, together we can deliver a complete solution that is unrivalled in the market. With operations in Europe, Africa, South America, Asia, Australasia and the Middle East, our comprehensive, solutions-led consultancy services help organisations around the world conduct business in a compliant, and environmentally-responsible manner. Check out our website to find out more!

NAICS: 54162
NAICS Definition: Environmental Consulting Services
Employees: 10,108
Subsidiaries: 124
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/quest-resource-management-group.jpeg
Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC)
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/rsk-group.jpeg
RSK Group
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC)
100%
Compliance Rate
0/4 Standards Verified
RSK Group
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Environmental Services Industry Average (This Year)

No incidents recorded for Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) in 2025.

Incidents vs Environmental Services Industry Average (This Year)

No incidents recorded for RSK Group in 2025.

Incident History โ€” Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) (X = Date, Y = Severity)

Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” RSK Group (X = Date, Y = Severity)

RSK Group cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/quest-resource-management-group.jpeg
Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC)
Incidents

No Incident

https://images.rankiteo.com/companyimages/rsk-group.jpeg
RSK Group
Incidents

No Incident

FAQ

Both Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company and RSK Group company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

Historically, RSK Group company has disclosed a higher number of cyber incidents compared to Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company.

In the current year, RSK Group company and Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company have not reported any cyber incidents.

Neither RSK Group company nor Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company has reported experiencing a ransomware attack publicly.

Neither RSK Group company nor Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company has reported experiencing a data breach publicly.

Neither RSK Group company nor Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company has reported experiencing targeted cyberattacks publicly.

Neither Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company nor RSK Group company has reported experiencing or disclosing vulnerabilities publicly.

RSK Group company has more subsidiaries worldwide compared to Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company.

RSK Group company employs more people globally than Quest Resource Management Group, a QRHC Company (NASDAQ:QRHC) company, reflecting its scale as a Environmental Services.

Latest Global CVEs (Not Company-Specific)

Description

A weakness has been identified in bftpd up to 6.2. Impacted is the function expand_groups of the file options.c of the component Configuration File Handler. Executing manipulation can lead to heap-based buffer overflow. It is possible to launch the attack on the local host. Attacks of this nature are highly complex. The exploitability is considered difficult. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 3.5
Severity: HIGH
AV:L/AC:H/Au:S/C:P/I:P/A:P
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 2.0
Severity: HIGH
CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in LogicalDOC Community Edition up to 9.2.1. This issue affects some unknown processing of the file /frontend.jsp of the component Add Contact Page. Performing manipulation of the argument First Name/Last Name/Company/Address/Phone/Mobile results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:N/I:P/A:N
cvss3
Base: 3.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was identified in toeverything AFFiNE up to 0.24.1. This vulnerability affects unknown code of the component Avatar Upload Image Endpoint. Such manipulation leads to cross site scripting. The attack may be launched remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:N/I:P/A:N
cvss3
Base: 3.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was determined in givanz Vvveb up to 1.0.7.3. This affects the function Import of the file admin/controller/tools/import.php of the component Raw SQL Handler. This manipulation causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. Patch name: 52204b4a106b2fb02d16eee06a88a1f2697f9b35. It is recommended to apply a patch to fix this issue.

Risk Information
cvss2
Base: 5.8
Severity: LOW
AV:N/AC:L/Au:M/C:P/I:P/A:P
cvss3
Base: 4.7
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability has been found in 70mai X200 up to 20251010. Affected by this vulnerability is an unknown functionality of the component HTTP Web Server. The manipulation leads to use of default credentials. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X