Badge
11,371 badges added since 01 January 2025
ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

With more than 5,500 locally owned locations across North America, The UPS Store is the nation’s largest retail network of shipping, postal, printing and business service centers. The UPS Store, Inc., franchisor for The UPS Store locations in the U.S., is a wholly owned subsidiary of UPS. The UPS Store franchise locations offer consumers and small businesses a wide range of products and services to meet all their needs in one convenient location, including printing, packaging, shipping, mailbox services, moving supplies and other in-center services. The UPS Store has been recognized as the No. 1 Postal & Business Services franchise for 31 years straight by Entrepreneur Magazine “Franchise 500.” USA Today, G.I. Jobs recognized The UPS Store franchise as one of the 50 Top Franchises for Military Veterans. Additionally, The UPS Store franchise was named American Brand Excellence Award Winner in the Retail category by City Business Journals. The UPS Store retail ownership opportunities are available to “qualifying entrepreneurs.” The UPS Store has opportunities throughout the U.S. and Canada. Through an association with Franchise America Finance and The Bancorp Bank, The UPS Store also offers the option of national funding for qualified franchisee candidates. Be your own boss by opening a The UPS Store retail location. Learn more at https://www.theupsstorefranchise.com/

The UPS Store A.I CyberSecurity Scoring

US

Company Details

Linkedin ID:

the-ups-store

Employees number:

11,930

Number of followers:

33,884

NAICS:

43

Industry Type:

Retail

Homepage:

theupsstore.com

IP Addresses:

0

Company ID:

THE_5822149

Scan Status:

In-progress

AI scoreUS Risk Score (AI oriented)

Between 700 and 749

https://images.rankiteo.com/companyimages/the-ups-store.jpeg
US Retail
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreUS Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/the-ups-store.jpeg
US Retail
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

US Company CyberSecurity News & History

Past Incidents
3
Attack Types
1
EntityTypeSeverityImpactSeenBlog DetailsSupply Chain SourceIncident DetailsView
The UPS StoreBreach60310/2019NA
Rankiteo Explanation :
Attack with significant impact with internal employee data leaks

Description: The Washington State Office of the Attorney General reported a data breach involving The UPS Store, Inc. on November 26, 2019. The breach occurred between October 11 and 22, 2019, as a result of a phishing incident affecting 506 Washington residents, potentially compromising names, Social Security numbers, driver's license or ID card numbers, and financial information.

The UPS StoreBreach8549/2019NA
Rankiteo Explanation :
Attack with significant impact with customers data leaks

Description: The Washington State Office of the Attorney General reported a data breach involving The UPS Store, Inc. on January 20, 2020. The breach, which occurred between September 29, 2019, and January 13, 2020, was caused by a phishing attack, affecting 963 residents and compromising various types of personal information including names and Social Security numbers.

The UPS StoreBreach8541/2014NA
Rankiteo Explanation :
Attack with significant impact with customers data leaks

Description: On August 20, 2014, The UPS Store, Inc. experienced a malware intrusion affecting 51 franchised center locations in 24 states. The breach potentially exposed customer names, postal addresses, email addresses, payment card information, Social Security numbers, and driver’s license numbers for those who made purchases between January 20, 2014, and August 11, 2014.

The UPS Store, Inc.
Breach
Severity: 60
Impact: 3
Seen: 10/2019
Blog:
Supply Chain Source: NA
Rankiteo Explanation
Attack with significant impact with internal employee data leaks

Description: The Washington State Office of the Attorney General reported a data breach involving The UPS Store, Inc. on November 26, 2019. The breach occurred between October 11 and 22, 2019, as a result of a phishing incident affecting 506 Washington residents, potentially compromising names, Social Security numbers, driver's license or ID card numbers, and financial information.

The UPS Store, Inc.
Breach
Severity: 85
Impact: 4
Seen: 9/2019
Blog:
Supply Chain Source: NA
Rankiteo Explanation
Attack with significant impact with customers data leaks

Description: The Washington State Office of the Attorney General reported a data breach involving The UPS Store, Inc. on January 20, 2020. The breach, which occurred between September 29, 2019, and January 13, 2020, was caused by a phishing attack, affecting 963 residents and compromising various types of personal information including names and Social Security numbers.

The UPS Store, Inc.
Breach
Severity: 85
Impact: 4
Seen: 1/2014
Blog:
Supply Chain Source: NA
Rankiteo Explanation
Attack with significant impact with customers data leaks

Description: On August 20, 2014, The UPS Store, Inc. experienced a malware intrusion affecting 51 franchised center locations in 24 states. The breach potentially exposed customer names, postal addresses, email addresses, payment card information, Social Security numbers, and driver’s license numbers for those who made purchases between January 20, 2014, and August 11, 2014.

Ailogo

US Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for US

Incidents vs Retail Industry Average (This Year)

No incidents recorded for The UPS Store in 2026.

Incidents vs All-Companies Average (This Year)

No incidents recorded for The UPS Store in 2026.

Incident Types US vs Retail Industry Avg (This Year)

No incidents recorded for The UPS Store in 2026.

Incident History — US (X = Date, Y = Severity)

US cyber incidents detection timeline including parent company and subsidiaries

US Company Subsidiaries

SubsidiaryImage

With more than 5,500 locally owned locations across North America, The UPS Store is the nation’s largest retail network of shipping, postal, printing and business service centers. The UPS Store, Inc., franchisor for The UPS Store locations in the U.S., is a wholly owned subsidiary of UPS. The UPS Store franchise locations offer consumers and small businesses a wide range of products and services to meet all their needs in one convenient location, including printing, packaging, shipping, mailbox services, moving supplies and other in-center services. The UPS Store has been recognized as the No. 1 Postal & Business Services franchise for 31 years straight by Entrepreneur Magazine “Franchise 500.” USA Today, G.I. Jobs recognized The UPS Store franchise as one of the 50 Top Franchises for Military Veterans. Additionally, The UPS Store franchise was named American Brand Excellence Award Winner in the Retail category by City Business Journals. The UPS Store retail ownership opportunities are available to “qualifying entrepreneurs.” The UPS Store has opportunities throughout the U.S. and Canada. Through an association with Franchise America Finance and The Bancorp Bank, The UPS Store also offers the option of national funding for qualified franchisee candidates. Be your own boss by opening a The UPS Store retail location. Learn more at https://www.theupsstorefranchise.com/

Loading...
similarCompanies

US Similar Companies

no one

Компания NO ONE более 20 лет занимает лидирующие позиции в розничном сегменте. NO ONE – один из крупнейших дистрибьюторов обуви и аксессуаров ведущих европейских брендов на российском рынке. В портфеле компании NO ONE около 50 европейских марок: Casadei, Fabi, Vicini, Baldinini, Braccialini, Gi

PT Lion Super Indo

Sejak tahun 1997, Super Indo telah bertumbuh dan berkembang di Indonesia melalui kemitraan bersama Ahold Delhaize yang berasal dari Belanda dan Salim Group dari Indonesia. Didukung lebih dari 10,000 karyawan* yang terlatih, Super Indo berhasil menyediakan berbagai macam barang kebutuhan sehari-hari

Chico's FAS, Inc.

Our passion for fashion and desire to inspire confidence and joy have been guiding the creation of our women’s clothing, intimates, and accessories for more than 40 years. Our portfolio consists of three brands: Chico’s, WHBM, and Soma found in over 1,000 stores throughout the United States and onli

Fnac Darty

Le groupe Fnac Darty est un leader européen de la distribution omnicanale, spécialisé dans les biens culturels, les loisirs, les produits techniques, l’électroménager et les services. Avec un réseau de 1 500 magasins dans le monde et 30 000 collaborateurs passionnés, il s’engage à offrir une expérie

Arbonne

Arbonne, creates personal skincare and wellness products that are crafted with premium botanical ingredients and innovative scientific discovery. Delivering on the Company’s commitment to pure, safe and beneficial products, Arbonne’s personal care and nutrition formulas are vegan certified and adher

Dillard's Inc.

Dillard's, Inc. ranks among the nation's largest fashion apparel and home furnishings retailers with annual revenues exceeding $6.1 billion. The Company focuses on delivering maximum fashion and value to its shoppers by offering compelling apparel and home selections complemented by exceptional cust

Toys"R"Us

Toys“R”Us is a beloved brand known all around the world—and we know how to have fun! For over 70 years we've been the toy authority and ambassadors of all things play. Our new vision looks beyond traditional retail for a re-imagined, immersive experience for kids of all ages. We've got a whole new w

SPAR International

The worldwide SPAR organisation operates over 13,800 SPAR stores in 48 countries on four continents, meeting the needs of over 14,7 million consumers every day. The SPAR concept was established on the basis of wholesalers and retailers working in partnership to the benefit of all, including custom

Albertsons Companies

Albertsons Companies is one of the largest food and drug retailers in the United States, with over 2,200 stores in 34 states and the District of Columbia. Our well-known banners include Albertsons, Safeway, Vons, Jewel-Osco, Shaw's, Acme, Tom Thumb, Randalls, United Supermarkets, Pavilions, Star Mar

newsone

US CyberSecurity News

January 09, 2026 08:00 AM
ISF warns geopolitics will be the defining cybersecurity risk of 2026

LONDON, UNITED KINGDOM, January 9, 2026 /EINPresswire.com/ — Geopolitics is set to become the dominant cybersecurity risk of 2026, the Information Security...

December 09, 2025 08:00 AM
Irish cybersecurity start-ups defy European decline

Ireland's cybersecurity companies closed 40% more venture capital deals in 2024 than the previous year, according to a new report published...

December 09, 2025 07:53 AM
Holiday Cybersecurity Tips: Stay Safe Online This Christmas

The holidays are supposed to be relaxing, fun, and full of good moments. Unfortunately, they are also one of the busiest seasons for cybercriminals.

December 01, 2025 08:00 AM
Hackers Registered 2,000+ Fake Holiday-Themed Online Stores to Steal User Payments

With the holiday shopping season kicking into high gear, a massive cybersecurity threat has emerged, putting online shoppers at significant...

November 12, 2025 08:00 AM
UK's Cyber Security and Resilience Bill enters Parliament

UK government introduced the Cyber Security and Resilience (CSR) Bill to Parliament today, marking a significant overhaul of local...

October 20, 2025 07:00 AM
Cybersecurity Awareness Month Week 3: Update your software – ITS Blog

Cybersecurity can feel complicated, but one of the simplest ways to protect yourself is by keeping your software and apps up to date.

October 07, 2025 07:00 AM
Mindgard Ups the Ante for Security of AI – Appoints Proven Cybersecurity Leader James Brear to Capture Expanding Market Opportunity

Mindgard, the leading provider of Artificial Intelligence security solutions, today announced the appointment of James Brear as Chief...

July 25, 2025 07:00 AM
Irish cybersecurity start-ups to watch in 2026

Discover Ireland's top cybersecurity start-ups to watch in 2026, from AI-driven threat defense to medical device security and encryption...

June 16, 2025 07:00 AM
SKT resumes eSIM sign-ups after 40-day suspension

Korea's largest mobile carrier SK Telecom resumed new subscriber sign-ups using eSIM technology on Monday, marking the end of a 40-day suspension.

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

US CyberSecurity History Information

Official Website of The UPS Store

The official website of The UPS Store is https://www.theupsstore.com.

The UPS Store’s AI-Generated Cybersecurity Score

According to Rankiteo, The UPS Store’s AI-generated cybersecurity score is 739, reflecting their Moderate security posture.

How many security badges does The UPS Store’ have ?

According to Rankiteo, The UPS Store currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Has The UPS Store been affected by any supply chain cyber incidents ?

According to Rankiteo, The UPS Store has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.

Does The UPS Store have SOC 2 Type 1 certification ?

According to Rankiteo, The UPS Store is not certified under SOC 2 Type 1.

Does The UPS Store have SOC 2 Type 2 certification ?

According to Rankiteo, The UPS Store does not hold a SOC 2 Type 2 certification.

Does The UPS Store comply with GDPR ?

According to Rankiteo, The UPS Store is not listed as GDPR compliant.

Does The UPS Store have PCI DSS certification ?

According to Rankiteo, The UPS Store does not currently maintain PCI DSS compliance.

Does The UPS Store comply with HIPAA ?

According to Rankiteo, The UPS Store is not compliant with HIPAA regulations.

Does The UPS Store have ISO 27001 certification ?

According to Rankiteo,The UPS Store is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of The UPS Store

The UPS Store operates primarily in the Retail industry.

Number of Employees at The UPS Store

The UPS Store employs approximately 11,930 people worldwide.

Subsidiaries Owned by The UPS Store

The UPS Store presently has no subsidiaries across any sectors.

The UPS Store’s LinkedIn Followers

The UPS Store’s official LinkedIn profile has approximately 33,884 followers.

NAICS Classification of The UPS Store

The UPS Store is classified under the NAICS code 43, which corresponds to Retail Trade.

The UPS Store’s Presence on Crunchbase

No, The UPS Store does not have a profile on Crunchbase.

The UPS Store’s Presence on LinkedIn

Yes, The UPS Store maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/the-ups-store.

Cybersecurity Incidents Involving The UPS Store

As of January 24, 2026, Rankiteo reports that The UPS Store has experienced 3 cybersecurity incidents.

Number of Peer and Competitor Companies

The UPS Store has an estimated 15,596 peer or competitor companies worldwide.

What types of cybersecurity incidents have occurred at The UPS Store ?

Incident Types: The types of cybersecurity incidents that have occurred include Breach.

Incident Details

Can you provide details on each incident ?

Incident : Data Breach

Title: The UPS Store Data Breach

Description: The UPS Store, Inc. experienced a malware intrusion affecting 51 franchised center locations in 24 states, potentially exposing customer names, postal addresses, email addresses, payment card information, Social Security numbers, and driver’s license numbers for those who made purchases between January 20, 2014, and August 11, 2014.

Date Detected: 2014-08-20

Date Publicly Disclosed: 2014-08-20

Type: Data Breach

Attack Vector: Malware

Incident : Data Breach

Title: Data Breach at The UPS Store, Inc.

Description: The Washington State Office of the Attorney General reported a data breach involving The UPS Store, Inc. on November 26, 2019. The breach occurred between October 11 and 22, 2019, as a result of a phishing incident affecting 506 Washington residents, potentially compromising names, Social Security numbers, driver's license or ID card numbers, and financial information.

Date Detected: 2019-11-26

Date Publicly Disclosed: 2019-11-26

Type: Data Breach

Attack Vector: Phishing

Incident : Data Breach

Title: Data Breach at The UPS Store, Inc.

Description: The Washington State Office of the Attorney General reported a data breach involving The UPS Store, Inc. on January 20, 2020. The breach, which occurred between September 29, 2019, and January 13, 2020, was caused by a phishing attack, affecting 963 residents and compromising various types of personal information including names and Social Security numbers.

Date Detected: 2020-01-20

Date Publicly Disclosed: 2020-01-20

Type: Data Breach

Attack Vector: Phishing

What are the most common types of attacks the company has faced ?

Common Attack Types: The most common types of attacks the company has faced is Breach.

Impact of the Incidents

What was the impact of each incident ?

Incident : Data Breach THE1043072625

Data Compromised: Customer names, Postal addresses, Email addresses, Payment card information, Social security numbers, Driver’s license numbers

Incident : Data Breach THE1034072725

Data Compromised: Names, Social security numbers, Driver's license or id card numbers, Financial information

Incident : Data Breach THE232072825

Data Compromised: Names, Social security numbers

What types of data are most commonly compromised in incidents ?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Customer Names, Postal Addresses, Email Addresses, Payment Card Information, Social Security Numbers, Driver’S License Numbers, , Names, Social Security Numbers, Driver'S License Or Id Card Numbers, Financial Information, , Names, Social Security Numbers and .

Which entities were affected by each incident ?

Incident : Data Breach THE1043072625

Entity Name: The UPS Store, Inc.

Entity Type: Retail

Industry: Shipping and Logistics

Location: 24 states in the USA

Incident : Data Breach THE1034072725

Entity Name: The UPS Store, Inc.

Entity Type: Company

Industry: Retail

Location: Washington

Customers Affected: 506

Incident : Data Breach THE232072825

Entity Name: The UPS Store, Inc.

Entity Type: Business

Industry: Retail

Customers Affected: 963

Data Breach Information

What type of data was compromised in each breach ?

Incident : Data Breach THE1043072625

Type of Data Compromised: Customer names, Postal addresses, Email addresses, Payment card information, Social security numbers, Driver’s license numbers

Sensitivity of Data: High

Incident : Data Breach THE1034072725

Type of Data Compromised: Names, Social security numbers, Driver's license or id card numbers, Financial information

Number of Records Exposed: 506

Sensitivity of Data: High

Incident : Data Breach THE232072825

Type of Data Compromised: Names, Social security numbers

Number of Records Exposed: 963

Sensitivity of Data: High

References

Where can I find more information about each incident ?

Incident : Data Breach THE1043072625

Source: California Office of the Attorney General

Date Accessed: 2014-08-20

Incident : Data Breach THE1034072725

Source: Washington State Office of the Attorney General

Date Accessed: 2019-11-26

Incident : Data Breach THE232072825

Source: Washington State Office of the Attorney General

Date Accessed: 2020-01-20

Where can stakeholders find additional resources on cybersecurity best practices ?

Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: California Office of the Attorney GeneralDate Accessed: 2014-08-20, and Source: Washington State Office of the Attorney GeneralDate Accessed: 2019-11-26, and Source: Washington State Office of the Attorney GeneralDate Accessed: 2020-01-20.

Additional Questions

Incident Details

What was the most recent incident detected ?

Most Recent Incident Detected: The most recent incident detected was on 2014-08-20.

What was the most recent incident publicly disclosed ?

Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2020-01-20.

Impact of the Incidents

What was the most significant data compromised in an incident ?

Most Significant Data Compromised: The most significant data compromised in an incident were customer names, postal addresses, email addresses, payment card information, Social Security numbers, driver’s license numbers, , names, Social Security numbers, driver's license or ID card numbers, financial information, , Names, Social Security numbers and .

Data Breach Information

What was the most sensitive data compromised in a breach ?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were email addresses, customer names, driver’s license numbers, Names, names, Social Security numbers, postal addresses, financial information, driver's license or ID card numbers and payment card information.

What was the number of records exposed in the most significant breach ?

Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 1.5K.

References

What is the most recent source of information about an incident ?

Most Recent Source: The most recent source of information about an incident are Washington State Office of the Attorney General and California Office of the Attorney General.

cve

Latest Global CVEs (Not Company-Specific)

Description

Typemill is a flat-file, Markdown-based CMS designed for informational documentation websites. A reflected Cross-Site Scripting (XSS) exists in the login error view template `login.twig` of versions 2.19.1 and below. The `username` value can be echoed back without proper contextual encoding when authentication fails. An attacker can execute script in the login page context. This issue has been fixed in version 2.19.2.

Risk Information
cvss3
Base: 5.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Description

A DOM-based Cross-Site Scripting (XSS) vulnerability exists in the DomainCheckerApp class within domain/script.js of Sourcecodester Domain Availability Checker v1.0. The vulnerability occurs because the application improperly handles user-supplied data in the createResultElement method by using the unsafe innerHTML property to render domain search results.

Description

A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Modern Image Gallery App v1.0 within the gallery/upload.php component. The application fails to properly validate uploaded file contents. Additionally, the application preserves the user-supplied file extension during the save process. This allows an unauthenticated attacker to upload arbitrary PHP code by spoofing the MIME type as an image, leading to full system compromise.

Description

A UNIX symbolic link following issue in the jailer component in Firecracker version v1.13.1 and earlier and 1.14.0 on Linux may allow a local host user with write access to the pre-created jailer directories to overwrite arbitrary host files via a symlink attack during the initialization copy at jailer startup, if the jailer is executed with root privileges. To mitigate this issue, users should upgrade to version v1.13.2 or 1.14.1 or above.

Risk Information
cvss3
Base: 6.0
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
cvss4
Base: 6.0
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:N/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

An information disclosure vulnerability exists in the /srvs/membersrv/getCashiers endpoint of the Aptsys gemscms backend platform thru 2025-05-28. This unauthenticated endpoint returns a list of cashier accounts, including names, email addresses, usernames, and passwords hashed using MD5. As MD5 is a broken cryptographic function, the hashes can be easily reversed using public tools, exposing user credentials in plaintext. This allows remote attackers to perform unauthorized logins and potentially gain access to sensitive POS operations or backend functions.

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=the-ups-store' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge