Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Sotheby's International Realty

Sotheby's International Realty Vendor Cyber Rating & Cyber Score

sothebysrealty.com

Only one network of agents represents the longest standing tastemaker in the world. In the spirit of innovation, an exceptional luxury real estate company bearing the Sotheby’s name was launched in 1976. Beyond the beautiful properties and the personal touch of our agents, only one brand can deliver a lifestyle that caters to you. With a network of homes for sale worldwide, our website lets you search property listings globally, and includes a large inventory of luxury homes for sale, including houses, condos, townhomes, villas, and more. Sotheby’s International Realty Affiliates LLC is a subsidiary of Anywhere Real Estate, a global leader in real estate franchising and provider of real estate brokerage, relocation and settlement


SIR A.I CyberSecurity Scoring

SIR
Company Information
Website:http://www.sothebysrealty.com
Employees number:7,640
Number of followers:163,057
NAICS:
Industry Type:Real Estate
Homepage:sothebysrealty.com
SIR Risk Score (AI oriented)
Between 600 and 649
logo
SIRReal Estate
Updated:
25/08/2026
619/1000
Poor
Caa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
SIR Global Score (TPRM)
xxxx
logo
SIRReal Estate
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

SIR
SIRPoor
Current Score
619Caa (POOR)
01000
2 incidents
-72 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
620Before Incident
AUGUST 2026
691Before Incident
Breach
25 Aug 2026SIR
Sotheby’s International: Luxury real estate firm hit by cyber security attack

Sotheby’s International Cybersecurity Incident Involving Client Data

619After Incident
CRITICAL-72
SOT1787632135
Sotheby’s International Investigates Cybersecurity Incident Involving Client Data Luxury real estate firm Sotheby’s International is probing a cybersecurity incident involving unauthorized access to a third-party marketing platform containing client contact information. The breach, discovered recently, targeted a system used to store names, addresses, email addresses, and phone numbers. In a statement, Sotheby’s confirmed that no financial transaction data, property documentation, or email exchanges were compromised. The company acted swiftly to contain the incident and engaged forensic investigators to assess the scope. While the attacker claimed to have accessed 1.6 million contacts, Sotheby’s refuted this, stating the figure included duplicate entries in its database. New Zealand managing director Mark Harris acknowledged the breach, emphasizing the firm’s commitment to transparency and client trust. He noted that while most exposed data was limited to basic contact details, some sensitive information stored in open-text notes fields may have been accessed. Affected individuals will be contacted directly. Sotheby’s continues to work with cybersecurity specialists to secure client data and will provide updates as the investigation progresses.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
Data Compromised: Client contact information (names, addresses, email addresses, phone numbers), some sensitive information in open-text notes fieldsSystems Affected: Third-party marketing platformIdentity Theft Risk: Potential
DATA BREACH
Type Of Data Compromised: Client contact information, open-text notes fieldsNumber Of Records Exposed: 1.6 million (claimed, includes duplicates)Sensitivity Of Data: Low to moderate (basic contact details, some sensitive notes)Personally Identifiable Information: Names, addresses, email addresses, phone numbers
JULY 2026
689Before Incident
JUNE 2026
687Before Incident
MAY 2026
684Before Incident
APRIL 2026
684Before Incident
MARCH 2026
682Before Incident
FEBRUARY 2026
680Before Incident
JANUARY 2026
679Before Incident
DECEMBER 2025
677Before Incident
NOVEMBER 2025
675Before Incident
OCTOBER 2025
673Before Incident
AUGUST 2025
775Before Incident
Ransomware
01 Aug 2025SIR
Anywhere Real Estate and Sotheby’s International Realty: Property records tech draws fresh VC interest; Anywhere data breach affects 17,000

Anywhere Real Estate Hit by Clop Ransomware Attack, Exposing 17,429 Customers

667After Incident
CRITICAL-108
ANYSOT1770810849
Anywhere Real Estate Hit by Clop Ransomware Attack, Exposing 17,429 Customers In August, Anywhere Real Estate disclosed a data breach affecting 17,429 customers, following an attack by the Clop ransomware gang. The cybercriminals infiltrated the company’s Oracle E-Business Suite environment, accessing and potentially exfiltrating sensitive customer data. A breach notification filed with the Maine Attorney General’s Office confirmed the incident, though details on the exact nature of the compromised information remain limited. Clop, a well-known ransomware and extortion group, has been linked to multiple high-profile attacks, often targeting vulnerabilities in enterprise software. The breach at Anywhere Real Estate parent company of brands like Coldwell Banker, Century 21, and Sotheby’s International Realty highlights the growing threat to real estate and mortgage sectors, where vast amounts of personal and financial data are stored. The company has since notified impacted individuals, but the full scope of the breach’s consequences including potential identity theft or fraud remains unclear. This incident follows a broader trend of cyberattacks on real estate firms, underscoring the industry’s vulnerability to sophisticated ransomware operations.
INCIDENT DETAILS -
TYPE
Ransomware
MOTIVATION
Extortion
IMPACT
Data Compromised: Sensitive customer dataSystems Affected: Oracle E-Business SuiteIdentity Theft Risk: Potential
DATA BREACH
Type Of Data Compromised: Sensitive customer dataNumber Of Records Exposed: 17,429Sensitivity Of Data: HighData Exfiltration: PotentialPersonally Identifiable Information: Potential

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for SIR ?
?
What was SIR's A.I Rankiteo Cyber Score in August 2026 ?
?
What was SIR's A.I Rankiteo Cyber Score in July 2026 ?
?
What was SIR's A.I Rankiteo Cyber Score in June 2026 ?
?
What was SIR's A.I Rankiteo Cyber Score in May 2026 ?
?
What was SIR's A.I Rankiteo Cyber Score in April 2026 ?
?
What was SIR's A.I Rankiteo Cyber Score in March 2026 ?
?
What was SIR's A.I Rankiteo Cyber Score in February 2026 ?
?
What was SIR's A.I Rankiteo Cyber Score in January 2026 ?
?
What was SIR's A.I Rankiteo Cyber Score in December 2025 ?
?
What was SIR's A.I Rankiteo Cyber Score in November 2025 ?
?
What was SIR's A.I Rankiteo Cyber Score in October 2025 ?
?
What is the average per-incident point impact on SIR's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with SIR ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view SIR's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?