Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Thales

Thales Vendor Cyber Rating & Cyber Score

thalesgroup.com

Thales (Euronext Paris: HO) is a global leader in advanced technologies for the Defence, Aerospace, and Cyber & Digital sectors. Its portfolio of innovative products and services addresses several major challenges: sovereignty, security, sustainability and inclusion. The Group invests more than €4 billion per year in Research & Development in key areas, particularly for critical environments, such as Artificial Intelligence, cybersecurity, quantum and cloud technologies. Thales has more than 83,000 employees in 68 countries. In 2024, the Group generated sales of €20.6 billion.


Thales A.I CyberSecurity Scoring

Thales
Company Information
Website:http://www.thalesgroup.com/
Employees number:62,949
Number of followers:1,889,152
NAICS:336414
Industry Type:Defense and Space Manufacturing
Homepage:thalesgroup.com
Thales Risk Score (AI oriented)
Between 750 and 799
logo
ThalesDefense and Space Manufacturing
Updated:
07/04/2026
762/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Thales Global Score (TPRM)
xxxx
logo
ThalesDefense and Space Manufacturing
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Thales
ThalesFair
Current Score
762Baa (FAIR)
01000
4 incidents
-7 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
760Before Incident
MAY 2026
759Before Incident
APRIL 2026
765Before Incident
Vulnerability
07 Apr 2026Thales
Thales, STMicroelectronics and NXP: Critical Android “Zero-Interaction” Vulnerability Enables DoS Attacks

Google Patches Critical Zero-Interaction Android Vulnerability in April 2026 Security Update

758After Incident
LOW-7
NXPTHASTM1775572928
Google Patches Critical Zero-Interaction Android Vulnerability in April 2026 Security Update Google’s April 2026 Android Security Bulletin addresses multiple high-risk vulnerabilities, including a critical zero-interaction flaw in the Android Framework. The most severe issue, CVE-2026-0049, allows attackers to execute a local denial-of-service (DoS) attack without user interaction or elevated privileges, potentially rendering affected devices unresponsive. The vulnerability impacts Android versions 14, 15, 16, and 16-qpr2, with patches released via the 2026-04-01 security patch level. Additionally, the update resolves CVE-2025-48651, a high-severity flaw in the StrongBox hardware-backed key storage system, affecting implementations from Google, NXP, STMicroelectronics, and Thales. This vulnerability compromises the security of cryptographic keys, necessitating the 2026-04-05 patch level for full protection. Google has provided device manufacturers with advance notice to facilitate timely updates. Users can verify protection by checking their device’s security patch level, with 2026-04-05 or later ensuring full mitigation. The Android Open Source Project (AOSP) will receive source code patches within 48 hours of the bulletin’s release.
INCIDENT DETAILS -
TYPE
Vulnerability
IMPACT
Systems Affected: Android devices (versions 14, 15, 16, 16-qpr2)Downtime: Potential device unresponsivenessOperational Impact: Denial-of-service (DoS) attack risk, compromised cryptographic key security
DATA BREACH
Sensitivity Of Data: Cryptographic keys (StrongBox vulnerability)
MARCH 2026
761Before Incident
FEBRUARY 2026
760Before Incident
JANUARY 2026
762Before Incident
DECEMBER 2025
761Before Incident
NOVEMBER 2025
760Before Incident
OCTOBER 2025
758Before Incident
SEPTEMBER 2025
757Before Incident
AUGUST 2025
756Before Incident
JULY 2025
755Before Incident
APRIL 2023
719Before Incident
Cyber Attack
01 Apr 2023Thales
Thales Group

Cyber Attack on Thales Group's Satellite Communication Systems

706After Incident
CRITICAL-13
THA430051424
In a significant cybersecurity incident, Thales Group, a prominent player in the aerospace, defense, and security sectors, faced a direct attack on its satellite communication systems. This compromise led to a breach of sensitive communication channels between ground operations and several commercial satellites. The attackers managed to inject malicious code to disrupt the integrity of critical data being relayed for navigation and observation purposes. The profound implications of this event put essential space-based services used by governments and corporations at risk, threatening national security interests and economic stability across multiple regions.
INCIDENT DETAILS -
TYPE
Cyber Attack
MOTIVATION
National Security DisruptionEconomic Instability
IMPACT
Data Compromised: Sensitive Communication ChannelsSystems Affected: Satellite Communication SystemsOperational Impact: Disruption of Critical Data Integrity
DATA BREACH
Type Of Data Compromised: Sensitive Communication DataSensitivity Of Data: High
NOVEMBER 2022
751Before Incident
Breach
01 Nov 2022Thales
Thales

Data Theft Incident at Thales

710After Incident
CRITICAL-41
THA123821122
Hackers claim to have stolen data from France's Thales and was threatening to publish it. The extortion and ransomware group had plans on the dark web to release the data on Nov. 7. It had not received any direct ransom notification. The hackers have not provided proof they have obtained any Thales data.
INCIDENT DETAILS -
TYPE
Data BreachRansomware
MOTIVATION
Extortion
JUNE 2022
810Before Incident
Ransomware
16 Jun 2022Thales
Thales Group

Ransomware Attack on Thales Group by LockBit 3.0

745After Incident
CRITICAL-65
THA858092125
In 2022, the French defense and technology firm Thales Group fell victim to a ransomware attack executed by the LockBit 3.0 group. The assault specifically targeted the company’s advanced technology and defense services, exposing critical vulnerabilities in systems supporting external services for the maritime sector. While the full extent of data compromise or operational disruption remains undisclosed, the attack underscored the severe risks ransomware poses to organizations operating in high-stakes industries like defense and aerospace.The breach raised concerns about potential intellectual property theft, disruption of defense-related operations, and compromise of sensitive client data, including government and military entities. Given Thales’ role in providing mission-critical infrastructure—such as satellite communications, naval systems, and cybersecurity solutions for global defense partners—the attack carried implications beyond financial loss, threatening national security and geopolitical stability. The incident also highlighted the growing trend of cybercriminal groups targeting strategic industries to maximize leverage, whether through data exfiltration, operational sabotage, or ransom demands.Though Thales confirmed containment measures, the attack reinforced the urgency for enhanced cyber resilience in sectors where digital breaches can have cascading effects on supply chains, allied nations, and civilian safety. The involvement of LockBit 3.0, a prolific ransomware-as-a-service (RaaS) operator known for high-profile extortion, further amplified the threat’s severity.
INCIDENT DETAILS -
TYPE
ransomware

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Thales ?
?
What was Thales's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Thales's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Thales's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Thales's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Thales's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Thales's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Thales's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Thales's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Thales's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Thales's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Thales's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Thales's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Thales ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Thales's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?