Company Details
ullens-center-for-contemporary-art
193
3,556
712
ucca.org.cn
0
UCC_3901216
In-progress

UCCA Company CyberSecurity Posture
ucca.org.cnUCCA is China' s leading independent institution of contemporary art. Founded in 2007 out of a commitment to bring Chinese contemporary art into global dialogue, it has since become a cultural landmark for Beijing, a conduit for international exchange, and an incubator for new talent. Located at the heart of the 798 Art District, it welcomes more than one million visitors a year. Originally known as the Ullens Center for Contemporary Art, UCCA underwent a major restructuring in 2017 and now operates as the UCCA Group, comprising two distinct entities: UCCA Foundation, a registered non-profit that organizes exhibitions and research, stages public programs, and undertakes community outreach; and UCCA Enterprises, a family of art-driven retail and educational ventures. UCCA' s work grows from its core belief that new art can change lives, broaden perspectives, and enrich the conversation between China and the world. 作为中国领先的独立艺术机构,成立于2007年的UCCA致力于将中国前瞻性的艺术推向国际,现已成为北京的文化地标、国际交流的渠道和培养新人才的沃土。UCCA位于北京798艺术区核心地带,每年接待超过100万名观众。机构原名尤伦斯当代艺术中心,在2017年经历重大重组后,现以UCCA集团的形式运营,旗下包括两个独立运作的实体:UCCA基金会为注册非营利机构,美术馆在基金会支持下策划展览、开展研究、呈现公共项目并承担更广泛的社区服务职责;UCCA企业则基于艺术,在儿童艺术教育和零售业领域开展一系列商业尝试。UCCA始终践行机构的核心理念:艺术能够深入并改善生活,而中国能从全球对话中获益并为之做出贡献。
Company Details
ullens-center-for-contemporary-art
193
3,556
712
ucca.org.cn
0
UCC_3901216
In-progress
Between 750 and 799

UCCA Global Score (TPRM)XXXX



No incidents recorded for UCCA in 2025.
No incidents recorded for UCCA in 2025.
No incidents recorded for UCCA in 2025.
UCCA cyber incidents detection timeline including parent company and subsidiaries

UCCA is China' s leading independent institution of contemporary art. Founded in 2007 out of a commitment to bring Chinese contemporary art into global dialogue, it has since become a cultural landmark for Beijing, a conduit for international exchange, and an incubator for new talent. Located at the heart of the 798 Art District, it welcomes more than one million visitors a year. Originally known as the Ullens Center for Contemporary Art, UCCA underwent a major restructuring in 2017 and now operates as the UCCA Group, comprising two distinct entities: UCCA Foundation, a registered non-profit that organizes exhibitions and research, stages public programs, and undertakes community outreach; and UCCA Enterprises, a family of art-driven retail and educational ventures. UCCA' s work grows from its core belief that new art can change lives, broaden perspectives, and enrich the conversation between China and the world. 作为中国领先的独立艺术机构,成立于2007年的UCCA致力于将中国前瞻性的艺术推向国际,现已成为北京的文化地标、国际交流的渠道和培养新人才的沃土。UCCA位于北京798艺术区核心地带,每年接待超过100万名观众。机构原名尤伦斯当代艺术中心,在2017年经历重大重组后,现以UCCA集团的形式运营,旗下包括两个独立运作的实体:UCCA基金会为注册非营利机构,美术馆在基金会支持下策划展览、开展研究、呈现公共项目并承担更广泛的社区服务职责;UCCA企业则基于艺术,在儿童艺术教育和零售业领域开展一系列商业尝试。UCCA始终践行机构的核心理念:艺术能够深入并改善生活,而中国能从全球对话中获益并为之做出贡献。


Vulcan is the world's largest cast iron statue! Made of 100,000 pounds of iron and 56 feet tall, he stands at the top of Red Mountain overlooking the city of Birmingham. But, Vulcan is more than a statue. Vulcan Park and Museum features spectacular views of Birmingham, a history museum that examines

The mission of the Cedar Rapids Museum of Art is to excite, engage, and educate through the arts. The Cedar Rapids Museum of Art houses more than 8,000 works of art spanning many eras—from Roman antiquity to the present. The collection is particularly strong in American art, especially from the fir

The California Historical Society (CHS) is a membership-based, non-profit organization with a mission to inspire and empower people to make California's richly diverse past a meaningful part of their contemporary lives. CHS headquarters at 678 Mission Street in San Francisco accommodate the North B

The Museums Association of Montana (MAM), founded in 1967, serves our members and the entire Montana museum community by providing assistance and professional development opportunities through our annual conferences, invaluable newsletters, and increasingly popular website and podcasts. The Yegen A
CHM DECODES TECHNOLOGY FOR EVERYONE. From the heart of Silicon Valley, we share insights gleaned from our research, our events, and our incomparable collection of computing artifacts and oral histories to convene, inform, and inspire people to build a better world. WE BELIEVE: - Technological pr
The Westmoreland Museum of American Art is located just 35 miles east of Pittsburgh, Pennsylvania in the heart of historic Greensburg, tucked amidst the breathtaking Laurel Highlands. The Westmoreland is a regional museum with a national presence. But it’s more than a museum. It’s a destination
.png)
UCCS Cybersecurity center may lose funding after state budget cuts ... Despite the Colorado Senate and House of Representatives passing a bill...
Tuition hikes, cuts to UCCS cybersecurity programs on CU Board of Regents' proposed budget. Prev Next. The 2025-26 academic year's budget may...
In December 2024, UCCS was designated as a National Security Agency (NSA) National Center of Academic Excellence in Cyber Research (CAE-R)...
The UCCS Cybersecurity Programs Office (CPO) and the UCCS Pre-Collegiate Office sponsored a weeklong cybersecurity camp conducted completely in Spanish for...
Using funding from a $2 million grant from the VICEROY program, UCCS will be working alongside CU boulder and CU Denver to create a CU-wide...
The CAE Community of Practice for Cyber Defense (CoP-CD) has awarded Gretchen Bliss a Community Service Recognition Award, and it has awarded...
UCCS recently won an two-year grant to develop and improve cybersecurity in the space field as part of the Resilient Space Infrastructures, Systems, and...
“This double ribbon-cutting marks a milestone: Our expanded cybersecurity spaces, including the new Kevin W. O'Neil Cybersecurity Education and...
Cybersecurity education, research, and workforce development efforts reach across the entire UCCS campus.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of UCCA is http://www.ucca.org.cn.
According to Rankiteo, UCCA’s AI-generated cybersecurity score is 764, reflecting their Fair security posture.
According to Rankiteo, UCCA currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, UCCA is not certified under SOC 2 Type 1.
According to Rankiteo, UCCA does not hold a SOC 2 Type 2 certification.
According to Rankiteo, UCCA is not listed as GDPR compliant.
According to Rankiteo, UCCA does not currently maintain PCI DSS compliance.
According to Rankiteo, UCCA is not compliant with HIPAA regulations.
According to Rankiteo,UCCA is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
UCCA operates primarily in the Museums, Historical Sites, and Zoos industry.
UCCA employs approximately 193 people worldwide.
UCCA presently has no subsidiaries across any sectors.
UCCA’s official LinkedIn profile has approximately 3,556 followers.
No, UCCA does not have a profile on Crunchbase.
Yes, UCCA maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/ullens-center-for-contemporary-art.
As of December 03, 2025, Rankiteo reports that UCCA has not experienced any cybersecurity incidents.
UCCA has an estimated 2,131 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, UCCA has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.11.1, vllm has a critical remote code execution vector in a config class named Nemotron_Nano_VL_Config. When vllm loads a model config that contains an auto_map entry, the config class resolves that mapping with get_class_from_dynamic_module(...) and immediately instantiates the returned class. This fetches and executes Python from the remote repository referenced in the auto_map string. Crucially, this happens even when the caller explicitly sets trust_remote_code=False in vllm.transformers_utils.config.get_config. In practice, an attacker can publish a benign-looking frontend repo whose config.json points via auto_map to a separate malicious backend repo; loading the frontend will silently run the backend’s code on the victim host. This vulnerability is fixed in 0.11.1.
fastify-reply-from is a Fastify plugin to forward the current HTTP request to another server. Prior to 12.5.0, by crafting a malicious URL, an attacker could access routes that are not allowed, even though the reply.from is defined for specific routes in @fastify/reply-from. This vulnerability is fixed in 12.5.0.
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 21.0.2, 20.3.15, and 19.2.17, A Stored Cross-Site Scripting (XSS) vulnerability has been identified in the Angular Template Compiler. It occurs because the compiler's internal security schema is incomplete, allowing attackers to bypass Angular's built-in security sanitization. Specifically, the schema fails to classify certain URL-holding attributes (e.g., those that could contain javascript: URLs) as requiring strict URL security, enabling the injection of malicious scripts. This vulnerability is fixed in 21.0.2, 20.3.15, and 19.2.17.
Gin-vue-admin is a backstage management system based on vue and gin. In 2.8.6 and earlier, attackers can delete any file on the server at will, causing damage or unavailability of server resources. Attackers can control the 'FileMd5' parameter to delete any file and folder.
Portkey.ai Gateway is a blazing fast AI Gateway with integrated guardrails. Prior to 1.14.0, the gateway determined the destination baseURL by prioritizing the value in the x-portkey-custom-host request header. The proxy route then appends the client-specified path to perform an external fetch. This can be maliciously used by users for SSRF attacks. This vulnerability is fixed in 1.14.0.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.