ICL A.I CyberSecurity Scoring
19/01/2026
Access Monitoring Plan
Access Monitoring Plan
No incidents recorded for The Isopure Company, LLC in 2026.
No incidents recorded for The Isopure Company, LLC in 2026.
No incidents recorded for The Isopure Company, LLC in 2026.
At JSW, we believe innovation has the power to make the world #BetterEveryday. As a US$ 23 billion group, ranked among India’s leading business houses, we drive economic growth across sectors like Steel, Energy, Infrastructure, Cement, Paints, Green Mobility, Defence, Sports, and more. Our commitment to sustainable development includes becoming carbon neutral by 2050, building stronger infrastructure, and producing eco-friendly materials. Through our diverse workforce of 40,000 employees across India, the USA, Europe, and Africa, and initiatives led by the JSW Foundation, we are focused on improving lives, empowering communities, and bringing positive transformation to every life we touch. We combine excellence in execution, cutting-edge technologies, and a passion for sustainable growth to make a lasting difference and help make lives #BetterEveryday.
We exist to make food the world loves. But we do more than that. General Mills is a place that prioritizes being a force for good, a place to expand learning, explore new perspectives and reimagine new possibilities, every day. We look for people who want to bring their best—bold thinkers with big hearts who challenge one other and grow together. Because becoming the undisputed leader in food means surrounding ourselves with people who are hungry for what’s next.
Make More Smiles. We are Colgate-Palmolive, a caring, innovative growth company that is reimagining a healthier future for all people, their pets and our planet. For over 200 years, we've poured our care into creating a future where everyone has more reasons to smile. CP People develop, produce, distribute and sell essential health & hygiene products and pet nutrition offerings through brands such as Colgate, Palmolive, elmex, Tom’s of Maine, hello, Sorriso, Speed Stick, Softsoap, Irish Spring, Protex, Sanex, Filorga, eltaMD, PCA Skin, Ajax, Axion, Fabuloso, Soupline and Suavitel, as well as Hill’s Science Diet and Hill’s Prescription Diet. The Company is recognized for its leadership and innovation in promoting sustainability and community wellbeing, including its achievements in decreasing plastic waste and promoting recyclability, saving water, conserving natural resources and improving children’s oral health through the Colgate Bright Smiles, Bright Futures program, which has reached approximately 1.8 billion children and their families since 1991.
Tupy is a Brazilian company specialized in developing and manufacturing highly-engineered structural cast iron components applied to complex metallurgical and geometrical components extensively used in capital goods that serve freight transport, construction industry, agriculture and many others industrial applications. These solutions contribute to the improvement of life standards such as, sanitation, drinking water, health, housing and the production and distribution of food. The technological innovation involved in our production and development processes is the company’s specialty that dates back more than 80 years. Tupy’s manufacturing facilities are located in Brazil and Mexico.
FEMSA is a company that creates economic and social value through companies and institutions and strives to be the best employer and neighbor to the communities in which it operates. It participates in the retail industry through Proximity Americas Division operating OXXO, a small-format store chain, and other related retail formats, and Proximity Europe which includes Valora, our European retail unit which operates convenience and foodvenience formats. In the retail industry it also participates though a Health Division, which includes drugstores and related activities and Spin, which includes Spin by OXXO and Spin Premia, among other digital financial services initiatives. In the beverage industry, it participates through Coca-Cola FEMSA, the largest franchise bottler of Coca-Cola products in the world by volume. Across its business units, FEMSA has more than 392,000 employees in 18 countries. FEMSA is a member of the Dow Jones Bestin-Class World Index & Dow Jones Best-in-Class MILA Pacific Alliance Index, both from S&P Global; FTSE4Good Emerging Index; MSCI EM Latin America ESG Leaders Index; S&P/BMV Total México ESG, among other indexes.
We empower generations to explore the wonder of childhood and reach their full potential. We treat play as if the future depends on it — because it does. Play is our language, and we speak to our consumers authentically by representing the world as they see and imagine it. Mattel is a leading global toy and family entertainment company and owner of one of the most iconic brand portfolios in the world. We engage consumers and fans through our franchise brands, including Barbie, Hot Wheels, Fisher-Price, American Girl, Thomas & Friends, UNO, Masters of the Universe, Matchbox, Monster High, Polly Pocket, and Barney, as well as other popular properties that we own or license in partnership with global entertainment companies. Our offerings include toys, content, consumer products, digital and live experiences. Our products are sold in collaboration with the world’s leading retail and ecommerce companies. Mattel is recognized as a Great Place to Work™ and as one of Fast Company’s Best Workplaces for Innovators.
We are the LEGO Group, the company behind the world’s most loved LEGO® bricks. Our brand name derived from the two Danish words Leg Godt, which mean “Play Well”. We’ve been sparking imaginations and inspiring the builders of tomorrow since 1932. This is our mission and what motivates our colleagues around the world every day. Today, we remain proudly family-owned with headquarters in Billund, Denmark. We have regional hubs in Boston, USA; London, UK; Shanghai, China; and Singapore, as well as 7 manufacturing facilities around the world. These places are home to 31,000+ colleagues in everything from design and engineering to digital technology and marketing. Together we learn, imagine and build – creating play experiences that are sold in over 130 countries worldwide. A purposeful and responsible global brand where creativity helps to inspire builders all around the world. Just imagine being part of that!
Life at home has been at the heart of our business for 110+ years - it is why we exist and why we are passionate about what we do. Beginning with our founders to the everyday actions of our people, our values have always kept us grounded -- Integrity, Respect, Inclusion & Diversity, One Whirlpool, Spirit of Winning. What we do at Whirlpool Corporation matters because consumers trust our brands. We never take that for granted and we work every day to earn that trust as we are committed to being the best kitchen and laundry company, in constant pursuit of improving life at home. ABOUT WHIRLPOOL CORPORATION Whirlpool Corporation (NYSE: WHR) is a leading home appliance company, in constant pursuit of improving life at home. As the only major U.S.-based manufacturer of kitchen and laundry appliances, the company is driving meaningful innovation to meet the evolving needs of consumers through its iconic brand portfolio, including Whirlpool, KitchenAid, JennAir, Maytag, Amana, Brastemp, Consul, and InSinkErator. In 2024, the company reported approximately $17 billion in annual sales - close to 90% of which were in the Americas - 44,000 employees, and 40 manufacturing and technology research centers. Additional information about the company can be found at WhirlpoolCorp.com.
We are a global company, founded and based in Brazil for over 115 years. We are committed to delight the world with amazing brands, that convey lightness and joy to the everyday lives of our consumers. We own Havaianas brand, world leader in open shoes, known for the iconic flip-flops that represent Brazilianness, comfort and style. We have 49.2% of Rothy’s a north-american sustainable footwear Brand. The Havaianas brand is one of the largest open-toe footwear brands in the world, with a significant presence and operation in dozens of countries. Rothy’s is present in the United States. Our growth is based on sustainability and economy, always valuing the socio-environmental responsibility of our operations. Our supply chain is vertical, with four manufacturing units in Brazil, and we own ioasys, our digital transformation company. We are more than 10 thousand employees, passionate about make it happen, who want to inspire the world to walk a lighter path. #WeAreAlpaLovers – Inspired by consumers and we walk together to make it happen!
Latest updates, reports, and threat intel affecting the global network.
Craft CMS is a content management system (CMS). In versions 5.0.0-RC1 through 5.9.22 and 4.0.0-RC1 through 4.17.15, an attacker with only a GitHub account can plant a JavaScript payload in a craftcms/cms issue title. When a Craft admin uses the CraftSupport widget’s "Give feedback" screen and types a search term that returns the poisoned issue, the payload executes in the admin’s control panel session. No control panel account or elevated privileges are required on the attacker’s side. This issue has been fixed in versions 4.17.16 and 5.9.23.
Craft CMS is a content management system (CMS). In versions 5.0.0-RC1 through 5.9.21 and 4.0.0-RC1 through 4.17.14, theAssetsController::actionDeleteFolder() only requires the deleteAssets:<volume-uid> permission for the target folder. It never enforces deletePeerAssets:<volume-uid>, even though Assets::deleteFoldersByIds() cascades deletion to every descendant folder and every asset inside, regardless of the uploader's assigned privileges. A low-privilege user who has been granted folder-management rights on a shared volume can therefore destroy assets uploaded by other users (peer assets), bypassing the per-asset peer-permission check that the sibling actionDeleteAsset endpoint correctly applies. This issue has been fixed in versions 4.17.15 and 5.9.22.
Craft CMS is a content management system (CMS). Versions 5.0.0-RC1 through 5.9.20, and 4.0.0-RC1 through 4.17.13 contain an authorization issue in the AssetsController::actionReplaceFile that can delete a source asset without source delete permission by supplying both assetId and sourceAssetId. AssetsController::actionReplaceFile() supports replacing a target asset file using another existing asset as the source. The action loads: assetId -> $assetToReplace and sourceAssetId -> $sourceAsset, then enforces replace permissions using ($assetToReplace ?: $sourceAsset). When both IDs are provided, this expression resolves to the target asset so no permission check is performed against the source asset volume. When both assets are present, Craft copies the source file into the target and then deletes the source asset. There is no deletion check for for the source asset. An authenticated user who can replace files in one volume can delete assets in another volume where they do not have delete permission, as long as they can obtain a sourceAssetId, leading to broken content references and data loss. This issue has been fixed in versions 4.17.14 and 5.9.21.
Description: To issue and renew TLS certificates on behalf of customers, Cloudflare's Universal SSL feature automatically manages the CAA RRset for the customer's zone. This auto-managed RRset is permissive by design (e.g. 'issue "letsencrypt.org"' without parameters). On Universal SSL zones, Cloudflare's authoritative DNS serves this auto-managed RRset at query time, superseding any customer-configured CAA records on the zone. When a customer publishes a stricter CAA record using the RFC 8657 accounturi or validationmethods parameters, the Certificate Authority does not observe those parameters when evaluating the served RRset under RFC 8659. As a result, the RFC 8657 account-binding and validation-method-binding protections are not enforced end-to-end on Universal SSL zones. Successful exploitation could result in issuance of a browser-trusted TLS certificate to an attacker, enabling MITM against the affected domain. Exploitation is non-trivial in practice: an attacker would need to hold an ACME account at one of the Certificate Authorities in the served CAA RRset and to simultaneously satisfy domain control validation across the multiple geographically distinct Network Perspectives the CA relies on for Multi-Perspective Issuance Corroboration. Cloudflare prefixes are anycast-announced from hundreds of locations globally, raising the bar against single-vantage-point BGP hijacks. Any resulting misissuance of a browser-trusted certificate is subject to Certificate Transparency logging required by major browsers, and would be visible to CT monitoring. Mitigation: Customers requiring strict RFC 8657 enforcement need to disable Universal SSL on the affected zone. Universal SSL's automatic CAA management and customer-set RFC 8657 accounturi and validationmethods enforcement are mutually exclusive by the nature of the issue, so there is no in-product workaround that preserves both. Certificate Transparency monitoring is recommended for all customers as a general detection control. Credits: David Osipov (ORCID: https://orcid.org/0009-0005-2713-9242), independent researcher
Out of bounds read and write in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?
linkedin_id=axa' -H 'apikey: YOUR_API_KEY_HERE'
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.