Comparison Overview

Thomas Trading Inc.

VS

Fastenal

Thomas Trading Inc.

79 Elmwood Avenue, Landisville, PA, 17538, US
Last Update: 2025-03-07 (UTC)

Excellent

Thomas Trading Inc. is an established, trusted wholesaler of quality short-dated and overstock food products to the secondary market. We offer cereals, juices, nuts and seeds, frozen packaged products, frozen meats and seafood products. Our recently established durable goods division is experiencing rapid growth. Weโ€™re able to offer many quality productsโ€”in quantityโ€”at prices well below wholesale. Some are shelf pulls, some are overstocks, some are new. Our durable goods products include smaller consumer electronics products (Bluetooth earbuds and headphones, charge cables and plugs, power banks, etc.), truck and vehicle accessories, CB radios and accessories, clothing, hand tools, flashlights, and several hundred other related products.

NAICS: 424
NAICS Definition:
Employees: 6
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Fastenal

2001 Theurer Blvd, Winona, MN, 55987, US
Last Update: 2025-03-04 (UTC)

Excellent

Between 900 and 1000

By providing three things โ€“ truly local service, the worldโ€™s largest vending program, and unmatched inventory management โ€“ Fastenal saves your business time and money. Who are Fastenal's customers? โ€ข Organizations wanting to strengthen their supply chains. โ€ข Businesses looking to streamline their operations. โ€ข Campuses planning for tomorrow. In a world of disruptions, Fastenal is a supply chain partner you can count on.

NAICS: 42
NAICS Definition: Wholesale Trade
Employees: 17,368
Subsidiaries: 2
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/thomas-trading-inc..jpeg
Thomas Trading Inc.
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/fastenal.jpeg
Fastenal
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
Thomas Trading Inc.
100%
Compliance Rate
0/4 Standards Verified
Fastenal
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Wholesale Industry Average (This Year)

No incidents recorded for Thomas Trading Inc. in 2025.

Incidents vs Wholesale Industry Average (This Year)

No incidents recorded for Fastenal in 2025.

Incident History โ€” Thomas Trading Inc. (X = Date, Y = Severity)

Thomas Trading Inc. cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” Fastenal (X = Date, Y = Severity)

Fastenal cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/thomas-trading-inc..jpeg
Thomas Trading Inc.
Incidents

No Incident

https://images.rankiteo.com/companyimages/fastenal.jpeg
Fastenal
Incidents

No Incident

FAQ

Both Thomas Trading Inc. company and Fastenal company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

Historically, Fastenal company has disclosed a higher number of cyber incidents compared to Thomas Trading Inc. company.

In the current year, Fastenal company and Thomas Trading Inc. company have not reported any cyber incidents.

Neither Fastenal company nor Thomas Trading Inc. company has reported experiencing a ransomware attack publicly.

Neither Fastenal company nor Thomas Trading Inc. company has reported experiencing a data breach publicly.

Neither Fastenal company nor Thomas Trading Inc. company has reported experiencing targeted cyberattacks publicly.

Neither Thomas Trading Inc. company nor Fastenal company has reported experiencing or disclosing vulnerabilities publicly.

Fastenal company has more subsidiaries worldwide compared to Thomas Trading Inc. company.

Fastenal company employs more people globally than Thomas Trading Inc. company, reflecting its scale as a Wholesale.

Latest Global CVEs (Not Company-Specific)

Description

A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 9ca499644a21ceb3f946d1c179c38a83be084490. To fix this issue, it is recommended to deploy a patch. The code maintainer replied with "[f]ixed for 2.46".

Risk Information
cvss2
Base: 4.3
Severity: LOW
AV:L/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 5.3
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 4.8
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the file bfd/elf-eh-frame.c of the component Linker. Executing manipulation can lead to heap-based buffer overflow. The attack is restricted to local execution. The exploit has been published and may be used. This patch is called ea1a0737c7692737a644af0486b71e4a392cbca8. A patch should be applied to remediate this issue. The code maintainer replied with "[f]ixed for 2.46".

Risk Information
cvss2
Base: 4.3
Severity: LOW
AV:L/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 5.3
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 4.8
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_section of the file binutils/objdump.c. Performing manipulation results in out-of-bounds read. The attack is only possible with local access. The exploit is now public and may be used. The patch is named f87a66db645caf8cc0e6fc87b0c28c78a38af59b. It is suggested to install a patch to address this issue.

Risk Information
cvss2
Base: 1.7
Severity: LOW
AV:L/AC:L/Au:S/C:N/I:N/A:P
cvss3
Base: 3.3
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
cvss4
Base: 4.8
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security vulnerability has been detected in zhuimengshaonian wisdom-education up to 1.0.4. This vulnerability affects the function selectStudentExamInfoList of the file src/main/java/com/education/api/controller/student/ExamInfoController.java. Such manipulation of the argument subjectId leads to improper authorization. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in Campcodes Farm Management System 1.0. Affected by this issue is some unknown functionality. The manipulation results in file and directory information exposure. The attack may be performed from remote. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
cvss3
Base: 5.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 5.5
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X