Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

Sanne Trustees (Cayman) Limited (formerly Avalon Trust)Sanne Trustees (Cayman) Limited (formerly Avalon Trust)
VS
XP Inc.XP Inc.
Sanne Trustees (Cayman) Limited (formerly Avalon Trust)

Sanne Trustees (Cayman) Limited (formerly Avalon Trust)

3rd Floor, Citrus Grove, George Town, KY1-1106, KY

Last Update: 30/03/2026

View Profile
Between 700 and 749
http://sannegroup.com
714/1000Moderate

Sanne Trustees (Cayman) Limited (formerly Avalon Trust & Corporate Services Ltd) (“Sanne Trustees”) is an independent firm specialising in the provision of trust and corporate services to a wide range of international and local clientele. We recognize the fundamental im...

NAICS:52
NAICS Definition:Finance and Insurance
Employees:1
Subsidiaries:0
12-month incidents
0
Known data breaches
1
Attack type number
1
XP Inc.

XP Inc.

Avenida Chedid Jafet 75, Torre sul 30º andar, São Paulo, São Paulo, BR, 04551-065

Last Update: 19/05/2026

View Profile
792/1000Fair

A XP Inc. é uma das maiores instituições financeiras independente do Brasil, dona das marcas XP, Rico, Clear, XP Educação, InfoMoney, entre outras. Com mais de 4,6 milhões de clientes ativos e um valor superior a R$ 1,3 trilhão de ativos sob custódia, há 24 anos vem tra...

NAICS:52
NAICS Definition:Finance and Insurance
Employees:12,987
Subsidiaries:8
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Ranges Comparison

Based On Specific Ai Models Category
Sanne Trustees (Cayman) Limited (formerly Avalon Trust)

Sanne Trustees (Cayman) Limited (formerly Avalon Trust)

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
XP Inc.

XP Inc.

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Financial Services Industry Avg (This Year)

No incidents recorded for Sanne Trustees (Cayman) Limited (formerly Avalon Trust) in 2026.

Incidents

Incidents vs Financial Services Industry Avg (This Year)

No incidents recorded for XP Inc. in 2026.

Incidents

Incident History - Sanne Trustees (Cayman) Limited (formerly Avalon Trust) (X = Date, Y = Severity)

Sanne Trustees (Cayman) Limited (formerly Avalon Trust) cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - XP Inc. (X = Date, Y = Severity)

XP Inc. cyber incidents detection timeline including parent company and subsidiaries.

No timeline data available
R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
Sanne Trustees (Cayman) Limited (formerly Avalon Trust)

Sanne Trustees (Cayman) Limited (formerly Avalon Trust)

Incidents
🔒 Incident : Breach
SAN944072625
XP Inc.

XP Inc.

Incidents
No explicit notable incidents reported.

FAQ

Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has the best AI Cybersecurity Score ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has experienced more cyber incidents in the past ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has experienced more cyber incidents this year ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has experienced at least one ransomware attack ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has experienced at least one data breach ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has experienced at least one targeted cyberattack ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has experienced at least one vulnerability ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one holds the most compliance certifications ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one holds the fewest compliance certifications ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has the most subsidiaries ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) company and XP Inc. company, which one has the largest number of employees ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) and XP Inc., which company holds both SOC 2 Type 1 certifications ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) and XP Inc., which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - Sanne Trustees (Cayman) Limited (formerly Avalon Trust) or XP Inc. ?
Which company is PCI DSS compliant - Sanne Trustees (Cayman) Limited (formerly Avalon Trust) or XP Inc. ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) and XP Inc., which company complies with HIPAA regulations for healthcare data ?
Between Sanne Trustees (Cayman) Limited (formerly Avalon Trust) and XP Inc., which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-56414
SUMMARY

A vulnerability exists in H.View IP cameras certificate-related upload interfaces allow authenticated users to store arbitrary file content to fixed, persistent filesystem locations without validating file type, structure, or size. This design omission enables the placement of unexpected or malformed data in locations intended for trusted certificate material, which could affect system integrity or behavior even after reboot.

PUBLISHED
Date2026-06-26
UPDATED
Date2026-06-26
RISK INFORMATION (Score: 7.2)
CVSS3
Base Score: 7.2
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS4
Base Score: 8.6
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
5.9
EXPLOITABILITY
1.2
CVE-2026-55975
SUMMARY

A vulnerability exists in H.View IP cameras that could allow an authenticated user to supply unsanitized XML fields to the device's certificate generation interface, which are incorporated into a backend certificate creation command without proper input validation. This may allow for command execution with elevated privileges during certificate generation.

PUBLISHED
Date2026-06-26
UPDATED
Date2026-06-26
RISK INFORMATION (Score: 7.2)
CVSS3
Base Score: 7.2
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS4
Base Score: 8.6
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
5.9
EXPLOITABILITY
1.2
CVE-2026-33560
SUMMARY

The DMP-5000 file service exposes authenticated arbitrary file upload functionality. There are exposed endpoints which allows authenticated users to upload files of any type without validation. No file extension filtering or content inspection is enforced which allows executable binaries and scripts to be accepted and written directly to the server.

PUBLISHED
Date2026-06-26
UPDATED
Date2026-06-26
RISK INFORMATION (Score: 7.1)
CVSS3
Base Score: 7.1
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
CVSS4
Base Score: 8.4
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:H/VA:N/SC:L/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
4.2
EXPLOITABILITY
2.8
CVE-2026-31928
SUMMARY

The DMP-5000 devices are shipped with a default administrative web account with weak authentication controls, which are not required to be changed during initial configuration or operation. Using these accounts provides full system access.

PUBLISHED
Date2026-06-26
UPDATED
Date2026-06-26
RISK INFORMATION (Score: 8.1)
CVSS3
Base Score: 8.1
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
CVSS4
Base Score: 9.3
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
5.2
EXPLOITABILITY
2.8
CVE-2026-28701
SUMMARY

Various versions of Daktronics Controller Firmware could allow authenticated and unauthenticated remote users to escape the intended directory and enumerate arbitrary file system paths.

PUBLISHED
Date2026-06-26
UPDATED
Date2026-06-26
RISK INFORMATION (Score: 9.8)
CVSS3
Base Score: 9.8
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS4
Base Score: 9.3
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
5.9
EXPLOITABILITY
3.9