Comparison Overview
South African Revenue Service (SARS)

South African Revenue Service (SARS)
Lehae La Sars, Pretoria, 0001, ZA
Last Update: 29/03/2026
Its main functions are to: collect and administer all national taxes, duties and levies; collect revenue that may be imposed under any other legislation, as agreed on between SARS and an organ of state or institution entitled to the revenue; provide protection a...

State of Minnesota
75 Martin Luther King Jr Blvd, Saint Paul, 55155, US
Last Update: 02/04/2026
Minnesota State Government is the third largest employer in the state of Minnesota, employing over 50,000 diverse and talented employees in more than 100 state agencies, boards, commissions, colleges, and universities. Our workplaces can be found across the state in 86 ...
Compliance Ranges Comparison

South African Revenue Service (SARS)







State of Minnesota






Benchmark & Cyber Underwriting Signals
Incidents vs Government Administration Industry Avg (This Year)
No incidents recorded for South African Revenue Service (SARS) in 2026.
Incidents vs Government Administration Industry Avg (This Year)
No incidents recorded for State of Minnesota in 2026.
Incident History - South African Revenue Service (SARS) (X = Date, Y = Severity)
South African Revenue Service (SARS) cyber incidents detection timeline including parent company and subsidiaries.
Incident History - State of Minnesota (X = Date, Y = Severity)
State of Minnesota cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

South African Revenue Service (SARS)

State of Minnesota
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).