Company Details
sourcc
6
125
337
sourcc.com
0
SOU_5138064
In-progress

SOURCC Company CyberSecurity Posture
sourcc.comSOURCC is the ultimate way for interior designers to source the world's best trade products. We've modernized the traditional 'bricks and mortar' showroom concept and combined it with an innovative web platform that features powerful business tools delivered in a simple and elegant package. It's a whole new experience for a quickly changing industry.
Company Details
sourcc
6
125
337
sourcc.com
0
SOU_5138064
In-progress
Between 750 and 799

SOURCC Global Score (TPRM)XXXX



No incidents recorded for SOURCC in 2025.
No incidents recorded for SOURCC in 2025.
No incidents recorded for SOURCC in 2025.
SOURCC cyber incidents detection timeline including parent company and subsidiaries

SOURCC is the ultimate way for interior designers to source the world's best trade products. We've modernized the traditional 'bricks and mortar' showroom concept and combined it with an innovative web platform that features powerful business tools delivered in a simple and elegant package. It's a whole new experience for a quickly changing industry.


Circus 25 is a luxurious homeware brand supplying stunning interior décor and accessories to retail and trade customers. Via a team of industry experts, Circus 25 also provides interior design and curtain services. When you visit Circus 25 you are entering a world of imagination. It is a place of lu

The mission statement of Palmer Retail Solutions is quite simple: to offer our clients the absolute best combination of innovation, quality, service and value for our diversified custom store fixtures and merchandising displays. Palmer has been designing and producing retail fixtures, cash wraps, k

Dutch Quality Group (DQG) which operates out of Waalwijk, Holland, created the Design on Stock brand. Their team of talented Dutch designers created a collection that pours out beauty and detail. In 2010, we at Kaas Tailored, partnered with DQG to bring the collection to North America. Together, we

DeKalb Office has come a long way since opening its doors for business in 1952 as an office furniture supplier in Decatur, GA. Today we are a creative, knowledgeable and collaborative partner providing innovative workplace solutions to a remarkably diverse client base. We serve some of the nation’s

Dallas-Fort Worth's number one source for commercial aquariums and service. The Reef Outlet specializes in delivering interior aquatic features that are elegant and functional with your office, while also providing industry-leading maintenance services. From healthcare and corporate to legal, profes

Joss & Main is the ultimate style edit for home. We drop the latest trends every season and new arrivals every month – then deliver them in days, not weeks.* Experience what we’re all about online or in-store. Based in Boston, Joss & Main is a Wayfair Specialty Retail Brand. Want to join the team?
.png)
This article features open-source cybersecurity tools that are gaining attention for strengthening security across various environments.
Hottest cybersecurity open-source tools of the month: October 2025 · Chekov: Open-source static code analysis tool · DefectDojo: Open-source...
A breach at U.S.-based cybersecurity company F5 has been blamed on state-backed hackers from China, two people briefed on the investigation...
Shai-Hulud is noteworthy for several reasons. According to Trend Micro, it began life as part of the S1ingularity attacks on Nx and others.
Cybersecurity AI (CAI): Open-source framework for AI security. Cybersecurity AI (CAI) is an open-source framework that helps security teams...
The package is listed inside Platform One's Iron Bank, a vetted Defense Department software repository, people familiar say.
Italy's Fincantieri ... FCT.MI ... is poised to appoint Eugenio Santagata, a former army official and top executive at Telecom Italia's ... TLIT.MI...
European Central Bank supervisors are focusing on issues ranging from tariffs to cyber attacks and a possible dollar shortage as they assess potential risks.
Hottest cybersecurity open-source tools of the month: May 2025 · Vuls: Open-source agentless vulnerability scanner · LlamaFirewall: Open-source...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of SOURCC is http://www.sourcc.com.
According to Rankiteo, SOURCC’s AI-generated cybersecurity score is 754, reflecting their Fair security posture.
According to Rankiteo, SOURCC currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, SOURCC is not certified under SOC 2 Type 1.
According to Rankiteo, SOURCC does not hold a SOC 2 Type 2 certification.
According to Rankiteo, SOURCC is not listed as GDPR compliant.
According to Rankiteo, SOURCC does not currently maintain PCI DSS compliance.
According to Rankiteo, SOURCC is not compliant with HIPAA regulations.
According to Rankiteo,SOURCC is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
SOURCC operates primarily in the Furniture and Home Furnishings Manufacturing industry.
SOURCC employs approximately 6 people worldwide.
SOURCC presently has no subsidiaries across any sectors.
SOURCC’s official LinkedIn profile has approximately 125 followers.
SOURCC is classified under the NAICS code 337, which corresponds to Furniture and Related Product Manufacturing.
No, SOURCC does not have a profile on Crunchbase.
Yes, SOURCC maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/sourcc.
As of November 28, 2025, Rankiteo reports that SOURCC has not experienced any cybersecurity incidents.
SOURCC has an estimated 2,617 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, SOURCC has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.
Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).
Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint
Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.
Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.