Company Details
timbrasil
19,015
600,957
517
tim.com.br
0
TIM_2920391
In-progress

TIM Brasil Company CyberSecurity Posture
tim.com.brA TIM é a empresa de telefonia móvel que mais cresce no Brasil. Atualmente, possui mais de 13 mil colaboradores em todo o país que trabalham entregando serviços inovadores e de qualidade em telefonia móvel, fixa e internet banda larga. É uma companhia feita de pessoas criativas, com energia realizadora e foco no cliente. Transparência, qualidade e inovação para que os consumidores brasileiros possam fazer cada vez mais e ir mais longe. Conheça as oportunidades na aba de Carreiras!
Company Details
timbrasil
19,015
600,957
517
tim.com.br
0
TIM_2920391
In-progress
Between 750 and 799

TIM Brasil Global Score (TPRM)XXXX



No incidents recorded for TIM Brasil in 2025.
No incidents recorded for TIM Brasil in 2025.
No incidents recorded for TIM Brasil in 2025.
TIM Brasil cyber incidents detection timeline including parent company and subsidiaries

A TIM é a empresa de telefonia móvel que mais cresce no Brasil. Atualmente, possui mais de 13 mil colaboradores em todo o país que trabalham entregando serviços inovadores e de qualidade em telefonia móvel, fixa e internet banda larga. É uma companhia feita de pessoas criativas, com energia realizadora e foco no cliente. Transparência, qualidade e inovação para que os consumidores brasileiros possam fazer cada vez mais e ir mais longe. Conheça as oportunidades na aba de Carreiras!

Orange is one of the world’s leading telecommunications operators with revenues of 40.3 billion euros in 2024 and 127,000 employees worldwide at 31 December 2024, including 71,000 employees in France. The Group has a total customer base of 291 million customers worldwide at 31 December 2024, inclu

Connecting Nation. Accelerating Indonesia's Future. As Indonesia's leading digital telecommunications company, Telkomsel is committed to building a connected, competitive, and future-ready society. For over 29 years, we've empowered individuals, homes, and businesses with innovative connectivity an

Telefónica is today one of the largest telecommunications companies in the world in terms of market capitalisation and number of customers. We have the best infrastructure, as well as an innovative range of digital and data services; therefore, we are favorably positioned to meet the needs of our cu

Telcel (Radiomóvil Dipsa) es subsidiaria de América Móvil, uno de los mayores proveedores de comunicaciones celulares de Latinoamérica, grupo líder con inversiones en telecomunicaciones en varios países del continente americano. Telcel es la empresa de telefonía celular líder en México. Nuestra s

Rogers is Canada’s communications and entertainment company, driven to connect and entertain Canadians. For more information, please visit rogers.com or investors.rogers.com. Déterminée à connecter et à divertir les Canadiens et Canadiennes, Rogers est la référence canadienne en matière de commu

Telkom Business is the business unit dedicated to serving businesses of every type, industry and size in and outside South Africa. The businesses that we serve range from small and medium enterprises (SMEs) to large corporations, government organisations and global enterprises. A sub-brand of the

Indosat Ooredoo Hutchison (IDX: ISAT) ("IOH"), are here with our vision to become the most preferred digital telecommunications company of Indonesia. The IOH merger combines two highly complementary businesses between PT Indosat Tbk (“Indosat Ooredoo”) and PT Hutchison 3 Indonesia to create a new wo

We are Telecom Argentina, a connectivity solutions and entertainment company with over 23,000 collaborators throughout the country. We transform the digital experience of our over 28 million customers providing them a secure, flexible and dynamic service on all of their devices, with high speed mobi

Fundada em 1975, a Telemont Engenharia de Telecomunicações S/A é líder na prestação de serviços de implantação, manutenção e operação de redes de telecomunicações. São 7,7 milhões de acessos de voz, 3 milhões de ADSL e dados e 63 mil km de fibra óptica operados pela empresa. Através da Telemont I
.png)
At TIM, cybersecurity is a shared mission: every day, thanks to the skills and passion of our people, we protect the data, infrastructure,...
TIM is one of Brazil's leading companies in mobile communications and digital innovation. It offers a wide range of career opportunities for professionals...
Brazilian operator TIM and Brazilian tracking company BWS IoT have signed a strategic partnership to boost the Internet of Things (IoT) ecosystem in the...
The first report produced by TIM with the Cyber Security Foundation and the contribution of TIM Research Centre, which analyses the main risk trends in Italy.
The qualifying round of the SAS CTF 2025 competition has determined eight teams of cybersecurity experts from around the world that will test their skills in...
Explore AI's transformative role in cybersecurity, focusing on threat detection, incident response automation, and human-AI collaboration.
Ericsson revealed on Thursday it has signed a strategic partnership with TIM Brasil to consolidate and modernize its billing systems using Ericsson's cloud-...
TIM has claimed that it is the first operator in Brazil to carry out 5G network slicing on a public network for real-time video transmission...
Nokia announced it secured a contract from TIM Brasil to expand the operator's 5G network across 15 Brazilian states in January 2025,...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of TIM Brasil is http://www.tim.com.br.
According to Rankiteo, TIM Brasil’s AI-generated cybersecurity score is 791, reflecting their Fair security posture.
According to Rankiteo, TIM Brasil currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, TIM Brasil is not certified under SOC 2 Type 1.
According to Rankiteo, TIM Brasil does not hold a SOC 2 Type 2 certification.
According to Rankiteo, TIM Brasil is not listed as GDPR compliant.
According to Rankiteo, TIM Brasil does not currently maintain PCI DSS compliance.
According to Rankiteo, TIM Brasil is not compliant with HIPAA regulations.
According to Rankiteo,TIM Brasil is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
TIM Brasil operates primarily in the Telecommunications industry.
TIM Brasil employs approximately 19,015 people worldwide.
TIM Brasil presently has no subsidiaries across any sectors.
TIM Brasil’s official LinkedIn profile has approximately 600,957 followers.
No, TIM Brasil does not have a profile on Crunchbase.
Yes, TIM Brasil maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/timbrasil.
As of November 27, 2025, Rankiteo reports that TIM Brasil has not experienced any cybersecurity incidents.
TIM Brasil has an estimated 9,535 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, TIM Brasil has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.