Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

U.S. Energy Information AdministrationU.S. Energy Information Administration
VS
INSSINSS
U.S. Energy Information Administration

U.S. Energy Information Administration

1000 Independence Ave SW, Washington, 20585, US

Last Update: 03/09/2026

View Profile
Between 700 and 749
http://www.eia.gov
736/1000Moderate

The U.S. Energy Information Administration (EIA) is the statistical and analytical agency within the U.S. Department of Energy. EIA collects, analyzes, and disseminates independent and impartial energy information to promote sound policy making, efficient markets, and...

NAICS:92
NAICS Definition:Public Administration
Employees:222
Subsidiaries:0
12-month incidents
1
Known data breaches
0
Attack type number
1
INSS

INSS

SAS, Quadra 2, Bloco O, Brasília, 70070-907, BR

Last Update: 04/04/2026

View Profile
Between 750 and 799
http://www.inss.gov.br
757/1000Fair

O Instituto Nacional do Seguro Social (INSS) é uma autarquia do Governo Federal do Brasil que recebe as contribuições para a manutenção do Regime Geral da Previdência Social, sendo responsável pelo pagamento da aposentadoria, pensão por morte, auxílio-doença, auxílio-ac...

NAICS:92
NAICS Definition:Public Administration
Employees:17,778
Subsidiaries:0
12-month incidents
1
Known data breaches
0
Attack type number
1

Compliance Ranges Comparison

Based On Specific Ai Models Category
U.S. Energy Information Administration

U.S. Energy Information Administration

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
INSS

INSS

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Government Administration Industry Avg (This Year)

U.S. Energy Information Administration has 33.77% fewer incidents than the average of same-industry companies with at least one recorded incident.

Incidents

Incidents vs Government Administration Industry Avg (This Year)

INSS has 2.91% fewer incidents than the average of all companies with at least one recorded incident.

Incidents

Incident History - U.S. Energy Information Administration (X = Date, Y = Severity)

U.S. Energy Information Administration cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - INSS (X = Date, Y = Severity)

INSS cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
U.S. Energy Information Administration

U.S. Energy Information Administration

Incidents
🔒 Incident : Cyber Attack
U-S1788458274
INSS

INSS

Incidents
🔒 Incident : Cyber Attack
BININSGOO1773253647

FAQ

Between U.S. Energy Information Administration company and INSS company, which one has the best AI Cybersecurity Score ?
Between U.S. Energy Information Administration company and INSS company, which one has experienced more cyber incidents in the past ?
Between U.S. Energy Information Administration company and INSS company, which one has experienced more cyber incidents this year ?
Between U.S. Energy Information Administration company and INSS company, which one has experienced at least one ransomware attack ?
Between U.S. Energy Information Administration company and INSS company, which one has experienced at least one data breach ?
Between U.S. Energy Information Administration company and INSS company, which one has experienced at least one targeted cyberattack ?
Between U.S. Energy Information Administration company and INSS company, which one has experienced at least one vulnerability ?
Between U.S. Energy Information Administration company and INSS company, which one holds the most compliance certifications ?
Between U.S. Energy Information Administration company and INSS company, which one holds the fewest compliance certifications ?
Between U.S. Energy Information Administration company and INSS company, which one has the most subsidiaries ?
Between U.S. Energy Information Administration company and INSS company, which one has the largest number of employees ?
Between U.S. Energy Information Administration and INSS, which company holds both SOC 2 Type 1 certifications ?
Between U.S. Energy Information Administration and INSS, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - U.S. Energy Information Administration or INSS ?
Which company is PCI DSS compliant - U.S. Energy Information Administration or INSS ?
Between U.S. Energy Information Administration and INSS, which company complies with HIPAA regulations for healthcare data ?
Between U.S. Energy Information Administration and INSS, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-93436
SUMMARY

vLLM through 0.29.0 fails to properly clean up decode-side metadata for rejected inference requests in prefill/decode disaggregated deployments. Remote attackers can submit requests with max_tokens=0 to exhaust decode-worker memory without bound until the worker restarts.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 7.5)
CVSS3
Base Score: 7.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS4
Base Score: 8.7
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.6
EXPLOITABILITY
3.9
CVE-2026-93435
SUMMARY

redis-parser through 3.0.0 contains a denial of service vulnerability in the RESP protocol parser that allows malicious Redis endpoints to crash the client process through unbounded recursion on nested arrays. Attackers can send crafted RESP byte streams with repeated array headers that exhaust the V8 call stack, causing an uncaught RangeError that terminates the Node.js process without triggering error handling callbacks.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 7.5)
CVSS3
Base Score: 7.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS4
Base Score: 8.7
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.6
EXPLOITABILITY
3.9
CVE-2026-87701
SUMMARY

Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 9.6)
CVSS3
Base Score: 9.6
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
IMPACT SCORE
5.8
EXPLOITABILITY
3.1
CVE-2026-85917
SUMMARY

Server-side request forgery (ssrf) in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 7.5)
CVSS3
Base Score: 7.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
IMPACT SCORE
3.6
EXPLOITABILITY
3.9
CVE-2026-85889
SUMMARY

Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 10)
CVSS3
Base Score: 10.0
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
IMPACT SCORE
6
EXPLOITABILITY
3.9