Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Turkish Aerospace

Turkish Aerospace Vendor Cyber Rating & Cyber Score

tusas.com

Türk Uçak Sanayii Anonim Ortaklığı (TUSAŞ), 28 Haziran 1973 tarihinde Türkiye'nin savunma sanayiinde dışa bağımlılığını azaltmak amacıyla Sanayi ve Teknoloji Bakanlığı bünyesinde kurulmuştur. Türk Hava Kuvvetleri'nin savaş uçağı ihtiyacının karşılanmasına yönelik olarak F-16 uçaklarının kullanılması kararı ile birlikte; F-16 uçağının üretimi, uçak üzerindeki sistemlerin entegrasyonu ve uçuş testlerini yaparak Hava Kuvvetlerimize teslim etmek üzere TUSAŞ tarafından 1984 yılında TUSAŞ Havacılık ve Uzay Sanayii A.Ş. (TAI), Türk-ABD ortak yatırım şirketi olarak 25 yıllığına kurulmuştur. 25 yıllık süreç tamamlanmadan, 2005 yılında TAI'nin yabancı hisseleri Türk hissedarlar tarafından satın alınarak şirket yeniden yapılandırılmıştır. Bu


Turkish Aerospace A.I CyberSecurity Scoring

Turkish Aerospace
Company Information
Website:https://www.tusas.com/
Employees number:12,563
Number of followers:750,376
NAICS:3364
Industry Type:Aviation and Aerospace Component Manufacturing
Homepage:tusas.com
Turkish Aerospace Risk Score (AI oriented)
Between 750 and 799
logo
Turkish AerospaceAviation and Aerospace Component Manufacturing
Updated:
07/08/2026
776/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Turkish Aerospace Global Score (TPRM)
xxxx
logo
Turkish AerospaceAviation and Aerospace Component Manufacturing
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Turkish Aerospace
Turkish AerospaceFair
Current Score
776Baa (FAIR)
01000
1 incidents
-9 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
776Before Incident
JULY 2026
776Before Incident
JUNE 2026
784Before Incident
Cyber Attack
01 Jun 2026Turkish Aerospace
Turkish defense contractors: Patchwork APT Uses Fake PDF Shortcuts and Android Spyware to Steal Files, Calls and Keystrokes

Patchwork APT Expands Espionage Operations with Stealthy Malware Tactics

775After Incident
CRITICAL-9
TUR1786092730
Patchwork APT Expands Espionage Operations with Stealthy Malware Tactics The Patchwork APT (also known as Dropping Elephant), a cyber espionage group active since at least December 2015, continues to refine its tactics against high-value targets. The group has historically compromised government, defense, energy, aviation, research, finance, technology, pharmaceutical, NGO, and think tank organizations across Asia, Europe, Türkiye, and the U.S. Recent campaigns demonstrate evolving techniques, including targeted phishing, deceptive document lures, memory-resident malware, and trojanized Android apps. Attackers deploy fake PDF shortcuts to deliver remote access trojans (RATs), while mobile implants steal messages, files, call records, keystrokes, audio, and images. The group frequently adapts its tools to exploit regional and political themes, such as: - July 2023: Phishing attacks on Chinese research organizations using the EyeShell backdoor. - July 2024: Malicious shortcuts and Brute Ratel C4 against Bhutan-linked targets. - 2025: Conference-themed lures targeting Turkish defense contractors, leveraging VLC DLL side-loading and encrypted payloads. - June 2026: A China-themed shortcut chain deploying a reworked memory-resident RAT. ### Infection Chain & Evasion Tactics Patchwork’s Windows attacks begin with a malicious .lnk shortcut (e.g., GRES3001.lnk), disguised as a PDF with a browser-like icon. Upon execution, the shortcut triggers PowerShell via conhost.exe, downloading a decoy PDF while fetching additional malware. To evade detection, the group splits command names (e.g., iw''r instead of iwr) and stores files in common writable directories (C:\Users\Public, C:\Windows\Tasks). Persistence is established via scheduled tasks (GoogleErrorReport, NewErrorReport), which restart the infection every minute. The original shortcut is then deleted to erase initial attack traces. The group also abuses DLL side-loading, using legitimate executables (Fondue.exe, VLC) to load malicious components (APPWIZ.cpl, libvlc.dll). These loaders decrypt hidden payloads (e.g., editor.dat, vlc.log) and execute them in memory using the Donut loader, avoiding disk-based detection. Once active, the RAT disables security features including AMSI, Windows Lockdown Policy, and Event Tracing for Windows to evade scanning and logging. It collects system details, public IP, running processes, and network data, then enables command execution, file exfiltration, screenshots, and process injection via QueueUserAPC. Patchwork’s adaptive infrastructure and malware updates underscore its persistent espionage focus, blending social engineering, evasion techniques, and multi-stage payloads to maintain access in targeted environments.
INCIDENT DETAILS -
TYPE
cyber espionageAPT campaign
MOTIVATION
espionage
IMPACT
system detailspublic IPrunning processesnetwork datamessagesfilescall recordskeystrokesaudioimagesWindowsAndroidcommand executionfile exfiltrationscreenshotsprocess injection
DATA BREACH
system detailspublic IPrunning processesnetwork datamessagesfilescall recordskeystrokesaudioimagesSensitivity Of Data: high
MAY 2026
784Before Incident
APRIL 2026
784Before Incident
MARCH 2026
784Before Incident
FEBRUARY 2026
784Before Incident
JANUARY 2026
784Before Incident
DECEMBER 2025
784Before Incident
NOVEMBER 2025
784Before Incident
OCTOBER 2025
784Before Incident
SEPTEMBER 2025
784Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Turkish Aerospace ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in July 2026 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in June 2026 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Turkish Aerospace's A.I Rankiteo Cyber Score in September 2025 ?
?
What is the average per-incident point impact on Turkish Aerospace's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Turkish Aerospace ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Turkish Aerospace's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?
Turkish Aerospace Cyber Scoring History | Rankiteo