Tangerine A.I CyberSecurity Scoring
30/03/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for Tangerine in 2026.
No incidents recorded for Tangerine in 2026.
No incidents recorded for Tangerine in 2026.
Banque Misr (BM) was established in 1920 by the pioneer economist and financial expert Mohamed Talaat Harb Pasha, who spearheaded the concept of investing in national savings and directing them toward economic and social development. Thus, Banque Misr was established as the first wholly Egyptian-owned bank. Banque Misr has funded many businesses spanning across multiple domestic sectors, such as: textiles, insurance, transportation, aviation, entertainment, and filmmaking. Currently, BM owns shares in 157 companies across different fields, ranging from finance, tourism, housing, agriculture and food, and communication and information technology. A true pioneer in the region, Banque Misr became the first bank in Egypt and North Africa to comply with PCI data security standards, upon obtaining the latest version of the global Payment Card Industry Data Security Standard (PCI DSS 3.2.1) certification. Utilizing the latest technology in the banking sector, Banque Misr is constantly looking to expand customer access to banking services. Today, Banque Misr is proud to offer one of Egypt’s largest ATM networks, located across all areas of Egypt. Banque Misr’s role is visible in all economic fields due to its geographic outreach. The bank has more than 20,000 employees, serving a large base of more than 13 million clients in Egypt, with a total paid-up capital amounting to EGP 15 billion. The bank has more than 800 electronically integrated local branches located nationwide to provide the best and most accessible services to customers. Banque Misr also values its regional and international presence, which includes its five branches in the United Arab Emirates and one in France. In addition, the bank’s international presence includes subsidiaries in Lebanon and Germany, as well as representative offices in China, Russia, South Korea, and Italy and a global network of correspondents.
Sebagai bagian dari CT Corp, Bank Mega terus menghadirkan layanan perbankan yang modern, inklusif, dan berorientasi pada kebutuhan masyarakat Indonesia. Mengusung visi “Menjadi Kebanggaan Bangsa”, kami berkomitmen menciptakan nilai tambah bagi nasabah dan karyawan melalui sinergi ekosistem terintegrasi, sekaligus menjadi tempat terbaik bagi talenta untuk tumbuh dan berkontribusi bagi kemajuan bangsa. Bank Mega juga konsisten mengembangkan layanan perbankan digital dengan menyediakan solusi yang mudah, aman, dan efisien bagi nasabah. Sebagai salah satu pelopor implementasi QRIS Cross Border untuk transaksi lintas negara dan QRIS TAP untuk layanan transportasi, Bank Mega memperkuat komitmennya melalui aplikasi M-Smile untuk menciptakan pengalaman transaksi yang nyaman. Langkah ini menegaskan tekad Bank Mega untuk memberikan pengalaman perbankan yang modern, relevan, dan turut mendukung pertumbuhan ekonomi digital Indonesia. Didukung oleh sumber daya manusia yang profesional, budaya kerja Dynamics, Entrepreneurship, Trust, Ethics, Commitment, dan Synergy (DETECS) menjadi fondasi kami dalam menciptakan lingkungan kerja yang kolaboratif dan berdaya saing tinggi. Melalui berbagai inisiatif, penghargaan, dan program berkelanjutan, Bank Mega terus memperkuat perannya sebagai lembaga keuangan yang mendorong pertumbuhan ekonomi nasional sekaligus memberikan dampak positif bagi masyarakat. Pencapaian terbaru Bank Mega di tahun 2025: * Investortrust – The Best Bank 2025 untuk kategori KBMI 3 * Stellar Workplace Recognition in Employee Commitment 2025 * Stellar Workplace Recognition in Employee Satisfaction 2025 * 100 Indonesia's Biggest Companies 2025 versi Fortune Indonesia * Katadata ESG Index Awards sebagai Green Economy Winner untuk sektor (Finance - Bank Sector) Dan masih banyak pencapaian lainnya. Jika Anda mencari tempat untuk berkembang, berkontribusi, dan menjadi bagian dari transformasi industri perbankan Indonesia, inilah saatnya #SuksesBarengMega
Axis Bank is the third largest private sector bank in India. The Bank offers the entire spectrum of financial services to customer segments covering Large and Mid-Corporates, MSME, Agriculture and Retail Businesses. The Bank has a large footprint of 5000 domestic branches (including extension counters) with 15,751 ATMs & cash recyclers spread across the country. The Bank has 6 Axis Virtual Centres with over 1,500 Virtual Relationship Managers as on 31st March 2023. The Overseas operations of the Bank are spread over eight international offices with branches in Singapore, Dubai (at DIFC), and Gift City-IBU; representative offices in Dhaka, Dubai, Abu Dhabi, Sharjah and an overseas subsidiary in London, UK. The international offices focus on Corporate Lending, Coverage Business, Trade Finance, Syndication, Investment Banking, Liability Businesses, and Private Banking/Wealth Management offerings. Axis Bank is one of the first new generation private sector banks to have begun operations in 1994. The Bank was promoted in 1993, jointly by Specified Undertaking of Unit Trust of India (SUUTI) (then known as Unit Trust of India), Life Insurance Corporation of India (LIC), General Insurance Corporation of India (GIC), National Insurance Company Ltd. (NIC), The New India Assurance Company Ltd. (NIA), The Oriental Insurance Company Ltd. (OIC), and United India Insurance Company Ltd. (UIIC). The shareholding of Unit Trust of India was subsequently transferred to SUUTI, an entity established in 2003. GIC, NIC, NIA, OIC, UIIC have been reclassified from promoter category to public category. As on March 31, 2023, SUUTI and LIC are the promoters of the Bank. With a balance sheet size of Rs. 13,17,326 crores as on 31st March 2023, Axis Bank has achieved consistent growth and with a 5-year CAGR (2017-18 to 2022-23) of 14% each in Total Assets & Advances and 16% in Deposits.
With a renewed vision for growth and innovation, we rebranded as PT Bank SMBC Indonesia Tbk (SMBC Indonesia) in 2024, formerly known as PT Bank BTPN Tbk. This rebranding reflects our response to the dynamic changes, allowing us to consolidate our strengths and deliver even more seamless, integrated solutions for millions of customers from diverse segments across Indonesia. This transformation signals our commitment to advancing and streamlining our business strategies, enabling us to better serve our customers and help them lead more meaningful and fulfilling lives. At the heart of this rebrand is our dedication to supporting Indonesia's long-term development goals, in alignment with the vision of Indonesia Emas 2045. In addition to these goals, we are excited to invite talented individuals and younger generations to join us, expand their careers and make a lasting impact. Together, we can drive positive change and build a brighter future for Indonesia.
Somos una Corporación líder y comprometida con el país que brinda servicios financieros de excelencia a cada segmento de clientes. Buscamos permanentemente ser el mejor Banco para ellos, ser el mejor lugar para trabajar y ser la mejor inversión para nuestros accionistas. Lo hacemos de forma colaborativa y comprometida con las personas que conforman nuestra organización y con el desarrollo de la comunidad.
At Citizens, we recognize that the journey to accomplishment is no longer linear and that individuals are made of all they have done and all they are going to do. As one of the oldest and largest financial services firms in the United States with a history dating back to 1828, we’re committed to providing solutions and expertise that support our customers, clients, colleagues, and communities in what’s next on their own unique journey. Whether you’re considering banking with us or looking to work with us, you’ll find a customer-centric culture and a supportive, collaborative workforce at Citizens. You’re made ready and so are we. #MadeReady
En Banamex una palabra nos ha definido durante nuestra historia: Estar. Estar es acompañar. Estar es avanzar juntos. Acompañar para forjar relaciones auténticas, duraderas, significativas, que nos den confianza y nos impulsen a alcanzar aquello que es importante para ti, para nosotros, para todos. Queremos renovar nuestro compromiso de confianza mutua, no solo trabajando para responder a la confianza que depositas cada día en nosotros, sino comprometiéndonos a hacerla crecer, creando una relación que perdure más allá de lo financiero, más allá de ti y de nosotros, más allá del tiempo. Porque creemos que la confianza es la base de todo. Un proceso en ambas direcciones, en el que nosotros queremos estar y que estés. Un camino que se construye por nuestra parte de una forma sencilla: proporcionándote soluciones y experiencias financieras de una forma sostenida, cercana y honesta. Soluciones que te acompañan, que cambian y se adaptan como cambias tú, que están ahí cuando las necesitas. Para que tú puedas ser tú y nosotros podamos estar aquí, para ti, siempre. Porque nadie es mejor solo, nosotros somos mejores gracias a ti y queremos que tú seas mejor gracias a nosotros.
We are a universal bank with a 200-year history of supporting and growing the Nordic economies – enabling dreams and aspirations for a greater good. Every day, we work to support our customers’ financial development, delivering best-in-class omnichannel customer experiences and driving sustainable change. We are a full-service universal bank and the third largest corporation in the Nordic region and one of the top 10 financial services companies in Europe based on market capitalisation. We are present in 17 countries, including our four Nordic home markets which together constitute the 10th largest economy in the world. As demand for digital services increases, we're continuously working to become your future digital bank by improving the products and services we offer, such as new online banking platforms, mobile payments and analytics tools, to name a few. The Nordea share is listed on the Nasdaq Helsinki, Nasdaq Copenhagen and Nasdaq Stockholm exchanges. Read more about us at nordea.com. We value your opinions and welcome your comments and questions on our posts here on LinkedIn. Please note that we reply mainly during business hours, Monday-Friday. Please keep a polite, professional and constructive tone. We remove comments containing crude language and derogatory views of our staff and other people who comment on our posts. We do not allow content that is unrelated to the subject, and we remove discriminatory and racist comments as well as spam and advertising.
Finansbank A.Ş. 26 Ekim 1987 tarihinde iş insanı Hüsnü Özyeğin liderliğinde 100 ortakla Bankalar Kanunu ve Türk Ticaret Kanunu hükümleri uyarınca kuruldu. Sektörde hızlı büyeme ile ilk 5 büyük özel banka arasına giren QNB Finansbank, 2006 yılında Yunanistan'ın en büyük bankası National Bank of Greece (NBG) tarafından satın alındı. Bu birleşme sonucunda NBG'nin Güneydoğu Avrupa'da sahip olduğu lider konumu ile bankanın Türkiye'deki yüksek büyüme potansiyeli bir araya geldi. 2006 yılından itibaren bireysel bankacılıkta da hızla büyüyen Finansbank; kredi kartı, dijitalleşme, teknoloji alanındaki yatırımları ve yarattığı çözümleri ile sektörde ilklere imza atan banka konumuna geldi. Ekim 2012'de tüm hizmetlerini sadece dijital kanallar üzerinden sunan ve Türkiye'nin ilk şubesiz dijital bankası olan Enpara.com'u kuran Finansbank, bu alanda Türkiye'de sektörde yeni bir dönemin kapılarını açtı. 2016 yılının haziran ayında Orta Doğu ve Afrika bölgesinin lider finansal kuruluşu olan Katar'ın en büyük bankası Qatar National Bank S.A.Q (QNB Group) tarafından satın alınan QNB Finansbank, uluslararası bir yapının parçası haline geldi. Böylelikle bankanın yeni ismi Ekim 2016 itibarıyla QNB Finansbank oldu. QNB Group'un, global bir marka olma vizyonu doğrultusunda ismini 2024 yılının Ekim ayı itibarıyla QNB Türkiye olarak yeniledi. QNB Türkiye, kurum kültürünü geleceğe taşıyan dinamik ve yenilikçi bir yapıya sahip. "Önce İnsan'' anlayışıyla çalışanların gelişimine öncelik veren banka, "Güven'' ile güçlü bir iş birliği ortamı kuruyor. Bankanın değerleri arasında yer alan "Adaptasyon'' ile değişimlere hızla uyum sağlarken, "Öncü Olmak'' vizyonuyla sektörde fark yaratıyor, "Birlikte Gelişim'' ilkesiyle de başarıya hep birlikte ulaşıyor. QNB Türkiye, çatısı altındaki iştirakleri QNB Leasing, QNB Invest, QNB Portföy, QNB Faktoring, QNB Sağlık, IBTech ve QNB eSolutions ile müşterilerinin tüm finansal ihtiyaçlarına yaratıcı, hızlı ve kolay çözümler sunmaya devam ediyor.
Latest updates, reports, and threat intel affecting the global network.
SentinelOne and CrowdStrike are both strong cybersecurity plays, but SentinelOne offers higher potential upside due to its lower current...
Cyber attacks are nothing new to businesses. These crimes have woefully become a key part of contingency and risk planning, and as a result,...
Discover the latest on When Life Gives You Tangerines, the anticipated K-Drama featuring IU and Park Bo-gum.
The Tangerine Turkey VBScript worm spreads via USB drives, linking to a larger cryptomining campaign. Learn about its risks and detection.
Tangerine Turkey is a visual basic script (VBS) worm that spreads via USB drives and deploys crypto mining malware to generate...
Credential stuffing in Australia is increasingly fueled by major data breaches, but passkeys can offer protection against these...
Inactive accounts are a hotbed of opportunity for attackers, even more so if accounts remain dormant for long periods of time.
This past month has been an interesting one for cyber security enthusiasts (like us!) – a mixture of cyber activity, policy setting and mini breakthroughs.
Melbourne-based Tangerine Telecom, an NBN and mobile service provider, suffered a data breach that exposed the PII of over 232000 Australian...
A flaw was found in DPDK lib/vhost. Missing length validation before reading command_data in the virtio-net control-queue handler can cause an out-of-bounds read and a host process crash.
Maravel, a PHP framework oriented towards dependency injection, prior to version 10.74.0 has a high-severity Token Replay Vulnerability arising from a structural lifecycle mismatch between stateless token validation engines and high-performance relational caching layers. Any application with low cache memory that causes premature eviction to free up memory and applications running macropay-solutions/maravel-framework that utilize tymon/jwt-auth for API token authentication and blacklist management or any other package that does the same may be affected. This architectural risk might also impact native Laravel applications utilizing cache tags under specific volatile or eviction-capped environments. tymon/jwt-auth automatically probes for cache tag support. If found, it forcefully wraps 14-day token blacklist entries (jti) inside a relational tymon.jwt tag. In environments where the O(1) Atomic Lazy Eviction model is active — either natively inside Maravel-Framework v20.x or manually backported into v10.x via the explicit DI container singletons provided in PR #104 (App\Cache\TaggedCache and App\Cache\TagSet) — a strict global tracking ceiling (Container::TAGGED_CACHE_TTL_CAP_SECONDS) of 7,200 seconds (2 hours) is enforced to secure the system against memory index bloat. This ceiling forcefully truncates the 14-day blacklist lifespan down to a maximum of 2 hours, after which individual tracking keys naturally expire and disappear from the active cache window. Furthermore, because the optimized engine implements a generational version matrix to achieve O(1) flush speeds, any programmatic or manual invocation of a tag flush or reset (e.g., Cache::tags([...])->flush()) instantly bumps the internal atomic master version pointer. This shifts the computed cryptographic composite hash (sha1($this->tags->getNamespace())) for all overlapping components, rendering the entire existing index immediately unreachable. Consequently, through either natural 2-hour expiration or an intervening tag flush execution (like the cache naturally cleaning old values to free up memory), the invalidation state records are entirely wiped out. Because the tokens' physical cryptographic signatures remain structurally valid for up to 14 days, stolen, hijacked, or legitimately logged-out tokens are instantly and silently resurrected across the entire API gateway, leaving the application critically vulnerable to widespread Token Replay Attacks. Because this issue is caused by an upstream architectural assumption within the tymon/jwt-auth package rather than a core defect inside the framework, there is no direct framework version upgrade that can safely bypass this lifecycle collision without breaking business cache recycling bounds. Maravel version 10.74.0 introduced a way to backport the new fixed tagged cache from 20.x into 10.x by resolving TagSet and TaggedCache from DI, which is how this latent architectural lifecycle vulnerability was discovered. Users must apply the decoupled configuration workaround outlined below. As a workaround, make sure that cache memory size does not generate early natural evictions from cache to free up space, deleting blacklisted jwt ids before they expire. Applications must decouple flat authentication vectors from the relational tagging subsystem. This forces token identifiers to write directly to the primary cache keyspace as flat, un-tagged key-value pairs where they securely retain their unclipped 14-day lifecycle.
Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2.2.6, the `GET /api/v2/shop/payment-requests/{hash}` and `PUT /api/v2/shop/payment-requests/{hash}` endpoints look up the payment request solely by the hash from the URL. No ownership check is performed against the authenticated customer or the underlying order. An attacker who obtains a payment request hash can read the payment request and, through the `payment` IRI in the response, recover the underlying order's `tokenValue` (which itself grants access to the full order, items, addresses, customer email, totals); and/or update the payment request payload (e.g. `target_path`, `after_path`). These fields are used by the front-end controller to redirect the user after the payment, so an attacker can flip them to an attacker-controlled URL and intercept the buyer. The hash is a UUID, so it has to be obtained out-of-band (logs, shared links, referrer headers, a co-located client), but once it is known no other credential is required, neither authentication nor knowledge of the order token. The creation endpoint `POST /api/v2/shop/orders/{tokenValue}/payment-requests` shares the same flaw: it resolves the target order solely from the `tokenValue` in the URL without verifying that the caller owns the order. The issue is fixed in versions 2.0.18, 2.1.15, and 2.2.6. As a workaround, add a query extension that filters the `GET` operation; decorate the `PUT` state provider, guard the `POST` creation endpoint with a command-bus middleware, and wire the services.
Sylius is an Open Source eCommerce Framework on Symfony. Starting in version 2.0.0 and prior to version 2.0.18, 2.1.15, and 2.2.6, an authorization bypass vulnerability exists in the shop account API. The `PATCH /api/v2/shop/account/orders/{tokenValue}/payments/{paymentId}` endpoint, used by an authenticated shop customer to change the payment method of an order that has been placed but not yet paid (state `STATE_NEW`), does not validate that the chosen payment method is enabled for the order's channel. The equivalent checkout endpoint (`PATCH /api/v2/shop/orders/{tokenValue}/payments/{paymentId}`) correctly rejects out-of-channel payment methods with `HTTP 422`; the account endpoint silently accepts them and returns `HTTP 200`. An authenticated customer can therefore assign any globally enabled payment method to their own placed order, including methods that the store operator has explicitly excluded from that channel. The issue is fixed in versions: 2.0.18, 2.1.15, 2.2.6 and above. As a workaround, decorate the `Sylius\Bundle\ApiBundle\Changer\PaymentMethodChangerInterface` service in the application.
Sylius is an Open Source eCommerce Framework on Symfony. Versions 2.0.0 through 2.0.17, 2.1.0 through 2.1.14, and 2.2.0 through 2.2.5 contain an improper workflow enforcement vulnerability in the cart `FormComponent`. When an order is completed while its cart page remains open, the stale LiveComponent does not detect the order’s changed state and continues to permit cart actions, allowing an authenticated customer to modify or permanently delete an already completed order. Versions 2.0.18, 2.1.15, and 2.2.6 contain a patch. As a workaround, deployments can copy the patched `FormComponent` into the application's `src/` directory and override the `sylius_shop.twig.component.cart.form` service definition to use that class.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.