Company Details
sumner-communications
20
565
511
sumnercom.com
0
SUM_3005599
In-progress

Sumner Communications, Inc. Company CyberSecurity Posture
sumnercom.comSumner Communications has been serving the wholesale merchandise industry since 1988. We are the leading publisher of magazines, directories and websites for the general merchandise trade. Independent Retailer, www.IndependentRetailer.com, Leaf Retailer, www.LeafRetailer.com, and www.FleaMarketZone.com are the leading sources for industry news and information for independent retailers across the United States. WholesaleCentral.com and its sister site, CloseoutCentral.com, are the internet’s original and most trusted B2B websites for buyers and sellers of wholesale and closeout merchandise to meet and conduct E-commerce in virtually every product category. At Sumner Communications, service and response have made us the most influential source in wholesale. Our brands include: Wholesale Central https://www.WholesaleCentral.com Closeout Central https://www.CloseoutCentral.com Independent Retailer www.IndependentRetailer.com Leaf Retailer www.LeafRetailer.com www.FleaMarketZone.com
Company Details
sumner-communications
20
565
511
sumnercom.com
0
SUM_3005599
In-progress
Between 700 and 749

SCI Global Score (TPRM)XXXX

Description: The Maine Office of the Attorney General reported a data breach by Sumner Communications, Inc. on July 11, 2022. The breach occurred between May 9, 2019, and April 13, 2022, and was discovered on June 22, 2022. The incident involved an external system breach (hacking) that potentially affected 200 individuals' payment card information.


No incidents recorded for Sumner Communications, Inc. in 2025.
No incidents recorded for Sumner Communications, Inc. in 2025.
No incidents recorded for Sumner Communications, Inc. in 2025.
SCI cyber incidents detection timeline including parent company and subsidiaries

Sumner Communications has been serving the wholesale merchandise industry since 1988. We are the leading publisher of magazines, directories and websites for the general merchandise trade. Independent Retailer, www.IndependentRetailer.com, Leaf Retailer, www.LeafRetailer.com, and www.FleaMarketZone.com are the leading sources for industry news and information for independent retailers across the United States. WholesaleCentral.com and its sister site, CloseoutCentral.com, are the internet’s original and most trusted B2B websites for buyers and sellers of wholesale and closeout merchandise to meet and conduct E-commerce in virtually every product category. At Sumner Communications, service and response have made us the most influential source in wholesale. Our brands include: Wholesale Central https://www.WholesaleCentral.com Closeout Central https://www.CloseoutCentral.com Independent Retailer www.IndependentRetailer.com Leaf Retailer www.LeafRetailer.com www.FleaMarketZone.com


At Mapping Specialists, Ltd., we strive to be your first choice for quality, cost-effective cartographic services and products. Our customer-oriented approach to providing cartographic solutions continues to meet and exceed our clients' expectations. Established in 1984, Mapping Specialists, Ltd.

EPH is the biggest newspaper and magazine publisher in Croatia and one of the biggest publishing companies in the greater region, with an average annual circulation of 177 million copies. Europapress Holding (EPH) is the leading publishing and media company in Croatia and one of the biggest compa

Boydell & Brewer Ltd was formed in 1978. It merged two companies, Boydell Press & D.S. Brewer, whose founders, Richard Barber & Derek Brewer, were themselves scholars - Brewer a Chaucer specialist & subsequently Professor of English and Master of Emmanuel College, Barber a medieval historian & Arthu

Risk Management is the premier publication of analysis, insight and news for the risk management community. Since 1954, Risk Management has explored the emerging concepts and strategies used by those tasked with protecting the physical, financial, human and intellectual assets of their organizations

Since 1984, Common Ground Research Networks (Not-for-Profit) has been committed to the principles of access, participation, and equality through conference curation and journal publication. Common Ground Research Networks takes some of the most pivotal challenges of our time, and curates networks th

North Jersey Media Group, part of the USA Today Network, is the leading provider of news and marketing services in northern New Jersey. The Record is an award-winning daily newspaper reaching more than half a million readers a day with local, investigative and enterprise reporting. Forty-nine commun
.png)
The announcement marks a significant milestone in BlackBerry's commitment to enhancing cybersecurity capabilities across the Asia-Pacific region,...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Sumner Communications, Inc. is http://www.sumnercom.com/.
According to Rankiteo, Sumner Communications, Inc.’s AI-generated cybersecurity score is 748, reflecting their Moderate security posture.
According to Rankiteo, Sumner Communications, Inc. currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Sumner Communications, Inc. is not certified under SOC 2 Type 1.
According to Rankiteo, Sumner Communications, Inc. does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Sumner Communications, Inc. is not listed as GDPR compliant.
According to Rankiteo, Sumner Communications, Inc. does not currently maintain PCI DSS compliance.
According to Rankiteo, Sumner Communications, Inc. is not compliant with HIPAA regulations.
According to Rankiteo,Sumner Communications, Inc. is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Sumner Communications, Inc. operates primarily in the Book and Periodical Publishing industry.
Sumner Communications, Inc. employs approximately 20 people worldwide.
Sumner Communications, Inc. presently has no subsidiaries across any sectors.
Sumner Communications, Inc.’s official LinkedIn profile has approximately 565 followers.
Sumner Communications, Inc. is classified under the NAICS code 511, which corresponds to Publishing Industries (except Internet).
No, Sumner Communications, Inc. does not have a profile on Crunchbase.
Yes, Sumner Communications, Inc. maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/sumner-communications.
As of November 28, 2025, Rankiteo reports that Sumner Communications, Inc. has experienced 1 cybersecurity incidents.
Sumner Communications, Inc. has an estimated 4,881 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Cyber Attack.
Title: Sumner Communications, Inc. Data Breach
Description: The Maine Office of the Attorney General reported a data breach by Sumner Communications, Inc. on July 11, 2022. The breach occurred between May 9, 2019, and April 13, 2022, and was discovered on June 22, 2022, involving an external system breach (hacking) that potentially affected 200 individuals' payment card information.
Date Detected: June 22, 2022
Date Publicly Disclosed: July 11, 2022
Type: Data Breach
Attack Vector: External System Breach (Hacking)
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.

Data Compromised: Payment Card Information
Payment Information Risk: High
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Payment Card Information.

Entity Name: Sumner Communications, Inc.
Entity Type: Company
Customers Affected: 200

Type of Data Compromised: Payment Card Information
Number of Records Exposed: 200
Sensitivity of Data: High

Source: Maine Office of the Attorney General
Date Accessed: July 11, 2022
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Maine Office of the Attorney GeneralDate Accessed: July 11, 2022.
Most Recent Incident Detected: The most recent incident detected was on June 22, 2022.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on July 11, 2022.
Most Significant Data Compromised: The most significant data compromised in an incident was Payment Card Information.
Most Sensitive Data Compromised: The most sensitive data compromised in a breach was Payment Card Information.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 200.0.
Most Recent Source: The most recent source of information about an incident is Maine Office of the Attorney General.
.png)
ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.
Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).
Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint
Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.
Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.