Comparison Overview
TPG Telecom

TPG Telecom
Tower Two, International Towers Sydney, 200 Barangaroo Avenue, Barangaroo, New South Wales, AU, 2000
Last Update: 03/10/2026
TPG Telecom is one of Australia’s largest telecommunication companies and operates a number of leading mobile and internet brands including Vodafone, TPG, iiNet, Internode, Lebara, AAPT and felix. As a full-service telecommunications provider, TPG Telecom provides mo...

Ooredoo Group
100 West Bay, Doha, Doha, QA, Po Box 217
Last Update: 05/09/2026
We are an award-winning international communications company operating across the Middle East, North Africa and Southeast Asia. Serving consumers and businesses in 10 countries, we deliver a leading data experience through a broad range of content and services via ...
Compliance Ranges Comparison

TPG Telecom







Ooredoo Group






Benchmark & Cyber Underwriting Signals
Incidents vs Telecommunications Industry Avg (This Year)
TPG Telecom has 45.05% fewer incidents than the average of same-industry companies with at least one recorded incident.
Incidents vs Telecommunications Industry Avg (This Year)
No incidents recorded for Ooredoo Group in 2026.
Incident History - TPG Telecom (X = Date, Y = Severity)
TPG Telecom cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Ooredoo Group (X = Date, Y = Severity)
Ooredoo Group cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

TPG Telecom

Ooredoo Group
FAQ
Latest Global CVEs
The web management service in affected RouterOS versions contains an integer underflow in its HTTP request body handling that is reachable before authentication. This can be leveraged by an unauthenticated network attacker to achieve arbitrary code execution as root, or to cause a denial of service, using a single crafted request.
Denuvo Anti-Tamper through 2026-03-04 allows bypass of a hypervisor presence check via CPUID interception (SimpleSvm.sys on AMD; hyperkd.sys and hyperhv.dll on Intel).
PeaZip before 11.3.0, in a non-default configuration, is vulnerable to OS command injection via a filename in an archive because "quotation character already used in the string" is mishandled.
Zilliz Attu before 3.0.0 has a Playground feature that does not require authentication for proxying arbitrary HTTP and HTTPS requests to URLs on the public internet.
The Playground feature of Zilliz Attu before 3.0.0 allows SSRF (proxying of requests to private IP addresses).