TMIS A.I CyberSecurity Scoring
16/03/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for Thales Microwave & Imaging Sub-Systems in 2026.
No incidents recorded for Thales Microwave & Imaging Sub-Systems in 2026.
No incidents recorded for Thales Microwave & Imaging Sub-Systems in 2026.
Since 1897, Godrej Enterprises Group (which includes Godrej & Boyce and its affiliates) has contributed significantly to India’s economic growth and self-reliance by providing complex engineering, design led innovation, and sustainable manufacturing solutions. From the world’s first patented springless lock, and safes to pioneering Indian made typewriters and refrigerators, the conglomerate has also paved the way for the growth of key sectors like aerospace, energy, and security. Today, Godrej Enterprises Group, has presence across 5 continents with a market-leading presence across diverse consumer and industrial businesses spanning Aerospace, Aviation, Defence, Energy, Locks & Security Solutions, Green Building Consulting, Construction and EPC Services, Intralogistics, Tooling, Healthcare Equipment, Consumer Durables, Furniture, Architectural Fittings, IT Solutions and Vending Machines. At Godrej Enterprises, we enable you to do work that’s good for you, your customers, your community and good for the people around you - essentially, work that you can be proud of.
Tata Electronics is a prominent global player in the electronics manufacturing industry, with fast-emerging capabilities in Electronics Manufacturing Services, Semiconductor Assembly and Test, Semiconductor Foundry, and Design Services. Established in 2020 as a greenfield venture of the Tata Group, the company aims to serve global customers through integrated offerings across a trusted electronics and semiconductor value chain.
We are the LEGO Group, the company behind the world’s most loved LEGO® bricks. Our brand name derived from the two Danish words Leg Godt, which mean “Play Well”. We’ve been sparking imaginations and inspiring the builders of tomorrow since 1932. This is our mission and what motivates our colleagues around the world every day. Today, we remain proudly family-owned with headquarters in Billund, Denmark. We have regional hubs in Boston, USA; London, UK; Shanghai, China; and Singapore, as well as 7 manufacturing facilities around the world. These places are home to 31,000+ colleagues in everything from design and engineering to digital technology and marketing. Together we learn, imagine and build – creating play experiences that are sold in over 130 countries worldwide. A purposeful and responsible global brand where creativity helps to inspire builders all around the world. Just imagine being part of that!
We operate on the belief that our people are our core assets and we consistently endeavour towards developing their potential to be our future leaders and key employees. We currently operate in India, South Africa, Liberia and Namibia, through our various subsidiaries. We seek to attract talent especially in mining, metallurgy, geology, smelting and sustainability for our worldwide operations. Empowerment of the community requires a synergic satisfaction of human needs and our view is that a shared destiny approach will benefit the community and boost economic prosperity. With a business model of growth, constant value creation and improved operations, the company's vision is focused towards sustainably satisfying the needs of all our stakeholders by engaging the community we operate in. We have adopted a positive attitude to make our Sustainable Development initiatives successful for all.
We empower generations to explore the wonder of childhood and reach their full potential. We treat play as if the future depends on it — because it does. Play is our language, and we speak to our consumers authentically by representing the world as they see and imagine it. Mattel is a leading global toy and family entertainment company and owner of one of the most iconic brand portfolios in the world. We engage consumers and fans through our franchise brands, including Barbie, Hot Wheels, Fisher-Price, American Girl, Thomas & Friends, UNO, Masters of the Universe, Matchbox, Monster High, Polly Pocket, and Barney, as well as other popular properties that we own or license in partnership with global entertainment companies. Our offerings include toys, content, consumer products, digital and live experiences. Our products are sold in collaboration with the world’s leading retail and ecommerce companies. Mattel is recognized as a Great Place to Work™ and as one of Fast Company’s Best Workplaces for Innovators.
We are a global company, founded and based in Brazil for over 115 years. We are committed to delight the world with amazing brands, that convey lightness and joy to the everyday lives of our consumers. We own Havaianas brand, world leader in open shoes, known for the iconic flip-flops that represent Brazilianness, comfort and style. We have 49.2% of Rothy’s a north-american sustainable footwear Brand. The Havaianas brand is one of the largest open-toe footwear brands in the world, with a significant presence and operation in dozens of countries. Rothy’s is present in the United States. Our growth is based on sustainability and economy, always valuing the socio-environmental responsibility of our operations. Our supply chain is vertical, with four manufacturing units in Brazil, and we own ioasys, our digital transformation company. We are more than 10 thousand employees, passionate about make it happen, who want to inspire the world to walk a lighter path. #WeAreAlpaLovers – Inspired by consumers and we walk together to make it happen!
Steel Authority of India Limited (SAIL) traces its origin to the formative years of an emerging nation - India. After independence, the steel sector was to propel the economic growth and rapid industrialization of the country, and since 1973, SAIL steel has played a pivotal role in transforming the nation. SAIL is the largest steel-making company in India and one of the seven Maharatna’s of the country’s Central Public Sector Enterprises. We produce top quality steel and iron at five integrated plants and three special steel plants, located principally in the eastern and central regions of India and situated close to domestic sources of raw materials. We manufacture and sell a broad range of steel products which are high in demand in the domestic as well as international market. Visit this page regularly to stay connected and get updates about our products, new initiatives, accomplishments, and more.. Follow us at X: www.x.com/SAILSteel and www.instgram.com/steelauthority
Every day, in everything we do, our purpose is to protect, heal and nurture in the relentless pursuit of a cleaner, healthier world. And we have a fight on our hands. A fight to make access to the highest quality hygiene, wellness and nourishment a right and not a privilege. Each of our products is designed to do exactly this. Our well-loved brands have been making a difference to people’s daily lives around the world for more than 200 years. Brands including: Durex, Dettol, Enfamil, Nurofen, Strepsils, Gaviscon, Mucinex, Nutramigen, Lysol, Harpic, Cillit Bang, Finish and Vanish. By 2030, our ambition is to reach half of the world, every year. We’re a growing global community of over 43,000 people on a journey of transformation and sustainable growth. Together, our success will continue to positively impact communities everywhere, for a healthier planet and a fairer society. Want to learn more about us? Visit reckitt.com
We are Rodan + Fields, founded by Stanford-trained dermatologists with a mission to revolutionize skincare for women everywhere. Our products are dermatologist-developed and inspired by Women-Backed Science™, delivering real, visible results. We understand what works for women’s skin, from acne to the signs of aging, and are dedicated to providing safe, effective solutions that truly work. As the #1 Female Dermatologist-Founded Skincare Brand in the US*, we continue to innovate and grow. With over 12 million customers and more than 15 years of proven results, Rodan + Fields is committed to delivering the best for your skin. We value diversity and inclusivity and are always looking for passionate individuals who want to make a meaningful impact. If you’re driven by science and skincare, and want to help women achieve healthy, glowing skin, we’d love to have you with us. *For more details visit our website
Latest updates, reports, and threat intel affecting the global network.
Thales Belgium plans to produce roughly 3,500 anti-drone 70 mm FZ275 LGR rockets by the end of this year—and Kyiv is already using the...
Tampa Microwave, a subsidiary of Thales Defense & Security, Inc. and leading provider of tactical satellite communications (SATCOM) systems,...
Drone fans, hold onto your controllers! France just unleashed a weapon that's blasting drones out of the sky: The Rapidfire Land,...
First lasers, then drones and now electronic warfare systems — for Marie Antier, an engineer at the Élancourt site, Thales gives her the...
British soldiers have successfully tracked, targeted and defeated swarms of drones in the latest trial of a new directed energy weapon...
UK successfully tests truck-mounted RapidDestroyer microwave weapon system against drone swarms, neutralizing over 100 drones.
The UK has tested a new type of electromagnetic weapon designed to combat drones. The development could significantly impact the course of...
UK's RapidDestroyer microwave weapon neutralizes drone swarms for pennies in a breakthrough test, countering threats seen in Ukraine with...
As the foundation of a new generation of highly flexible and innovative telecommunications satellites that can quickly adapt to the changing...
tls_opt_dtls_peer_connection_id_value_get() in subsys/net/lib/sockets/sockets_tls.c, which handles getsockopt(SOL_TLS, TLS_DTLS_PEER_CID_VALUE), passed the caller-supplied optval directly to mbedtls_ssl_get_peer_cid() without verifying the buffer was at least MBEDTLS_SSL_CID_OUT_LEN_MAX (default 32) bytes. mbedtls_ssl_get_peer_cid() copies the peer-negotiated DTLS Connection ID (length 1..MBEDTLS_SSL_CID_OUT_LEN_MAX) into that buffer without a destination-size parameter, so a caller-supplied optlen smaller than the CID causes a write of up to 31 bytes past the buffer end. In CONFIG_USERSPACE builds the getsockopt syscall verifier (z_vrfy_zsock_getsockopt) bounce-buffers the user's optval into a kernel allocation of exactly optlen bytes (k_usermode_alloc_from_copy -> z_thread_malloc), so an unprivileged user thread that passes a small optlen on a connected DTLS socket with Connection ID enabled induces a kernel-heap buffer overflow, with the overflowing content being the remote peer's CID. The defect requires CONFIG_MBEDTLS_SSL_DTLS_CONNECTION_ID, an established DTLS session with a negotiated peer CID, and (for the kernel-crossing case) CONFIG_USERSPACE. Introduced when the TLS_DTLS_CID option was added (v3.5.0). The fix rejects callers whose optlen is below MBEDTLS_SSL_CID_OUT_LEN_MAX with -EINVAL.
react18-use is a React 19 use hook shim. Between 2026-05-19 01:07:01 and 2026-05-19 15:20:43, the default branch contained malicious commits 7b79148d1495a2505f9277da295a98cf176f4496 through 7b79148d1495a2505f9277da295a98cf176f4496 that executed remote attacker-controlled code on developer machines during `npm install`. The commits were removed by force-push, but local clones, forks, and direct-SHA URLs may still contain them, and `npm install` against an affected checkout will still execute the code today. The package was not published to npm. `src/install.js` was added and wired into the `postinstall` script. It fetched a JavaScript payload from an attacker-controlled HTTPS endpoint (configurable via an environment variable), disabled TLS verification, and evaluated the response as code with `require` available. Execution was deliberately skipped on CI and cloud/serverless environments, targeting developer workstations. The second-stage payload was attacker-hosted and cannot be reconstructed. Assume full compromise of anything reachable from a Node process with the user's permissions. Those who ran `npm install` against an affected checkout on a developer machine on or after 2026-05-19 01:07:01 should treat the machine as compromised, rotate every credential the machine could reach, audit account activity since 2026-05-19 01:07:01, and clean local clones.
The UpdateHub management subsystem (subsys/mgmt/updatehub/updatehub.c) drives every update operation through a single file-scope ctx structure that holds the CoAP block context, payload buffer, status code, socket, and a one-element poll-fd array fds[1]. Access to ctx was not serialized, and prepare_fds() wrote ctx.fds[ctx.nfds] and incremented ctx.nfds with no bounds check. Two independent paths mutate ctx concurrently: the background autohandler running on the system workqueue, and user-triggered operations reached through the updatehub run shell command, direct API calls, or — since the operations are exposed as syscalls — userspace threads. When a second flow enters prepare_fds() while ctx.nfds is already 1, the write lands one element past the array; by struct layout it overlaps the adjacent ctx.sock/ctx.nfds members. More broadly, the unsynchronized sharing lets two flows interleave connection setup and teardown, double-closing a socket descriptor or scribbling the shared buffers. The result is corruption of the update subsystem's internal state and denial of service of the firmware-update path; the out-of-bounds write is contained within the ctx structure and there is no demonstrated path to memory outside it or to code execution. Triggering requires a local actor able to invoke update operations (or, with CONFIG_USERSPACE, an unprivileged userspace thread) and to win a timing race against the background handler; remote peers cannot control the race timing. The fix serializes the entry points with a mutex and adds a bounds check to prepare_fds().
The UpdateHub over-the-air update client's start_coap_client() in subsys/mgmt/updatehub/updatehub.c leaks the CoAP/DTLS socket descriptor on its connection-setup failure paths. The shared error: cleanup gated socket closing on a ret > 0 flag, but ret was set to -1 immediately after the socket was created, so when zsock_setsockopt() (DTLS) or zsock_connect() subsequently failed the gate was false and cleanup_connection() was never called. The open descriptor in the global ctx.sock was then overwritten by the next attempt, permanently leaking it from the socket / net_context pool until reboot. The failing setup path is reached every time the OTA client tries to contact the UpdateHub server and the connection cannot be established — driven automatically by the periodic autohandler() poll (and on demand via the updatehub_probe()/updatehub_update() API or the updatehub run shell command). The DTLS handshake/connect outcome is influenceable by a network or on-path attacker who drops, resets, or otherwise disrupts traffic to the server, and also fails naturally whenever the server is unreachable. Each failed attempt permanently leaks one descriptor; once the shared socket pool is exhausted, networking degrades device-wide until the device is rebooted, a denial-of-service condition. Severity is low because the leak rate is bounded by the configured OTA poll interval (default once per 24 hours), the effect is gradual and recovered by reboot, and only builds with the UpdateHub client enabled are affected. There is no memory-corruption, information-disclosure, or authentication impact.
Certain web interface components in affected TP-Link Aginet devices do not validate and sanitize user-supplied input properly before passing it to system-level command execution functions. An authenticated adjacent attacker may inject specially crafted input to execute arbitrary operation system commands with elevated privileges. Successful exploitation may allow execution of arbitrary system commands, potentially leading to full device compromise.
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.