Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Unilever

Unilever Vendor Cyber Rating & Cyber Score

unilever.com

Every day, 3.4 billion people around the world enjoy our products - from ground-breaking brands like Hellmann's, Domestos, Dove and Rexona (to name just a few). Our brands lead the way - innovating in their fields, delighting their consumers and powering our business forward. And it is our people who make everything happen. Our bright and curious people who imagine and create the future - diverse, passionate and ambitious people. A role with us means endless opportunities with global brands that make markets and people who play to win. We make markets and create cultures through some of the biggest brands and best-known products in the world. Talented teams in 190 countries redefine the way we do business and set new standards for


Unilever A.I CyberSecurity Scoring

Unilever
Company Information
Website:http://www.unilever.com
Employees number:130,813
Number of followers:20,648,817
NAICS:30
Industry Type:Manufacturing
Homepage:unilever.com
Unilever Risk Score (AI oriented)
Between 750 and 799
logo
UnileverManufacturing
Updated:
31/05/2026
786/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Unilever Global Score (TPRM)
xxxx
logo
UnileverManufacturing
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Unilever
UnileverFair
Current Score
786Baa (FAIR)
01000
1 incidents
-56 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
786Before Incident
MAY 2026
787Before Incident
APRIL 2026
787Before Incident
MARCH 2026
786Before Incident
FEBRUARY 2026
785Before Incident
JANUARY 2026
784Before Incident
DECEMBER 2025
783Before Incident
NOVEMBER 2025
782Before Incident
OCTOBER 2025
781Before Incident
SEPTEMBER 2025
780Before Incident
AUGUST 2025
779Before Incident
JULY 2025
834Before Incident
Ransomware
24 Jul 2025Unilever
Astronika, Rhode Island General Assembly, Unilever, Microsoft and Florida Department of Revenue: China-backed Storm-2603 deployed ransomware via SharePoint zero-days

China-Backed Storm-2603 Deploys Warlock Ransomware in Widespread SharePoint Attacks

778After Incident
CRITICAL-56
UNIMICASTFLORHO1772483656
China-Backed Storm-2603 Deploys Warlock Ransomware in Widespread SharePoint Attacks On July 23, Microsoft reported that the China-linked threat group Storm-2603 exploited on-premises SharePoint servers using Warlock ransomware, a ransomware-as-a-service (RaaS) operation that emerged in early 2024. The attacks, part of at least four confirmed waves between July 17 and July 21, compromised over 400 organizations, including critical U.S. government agencies such as the National Nuclear Security Administration (NNSA), U.S. Education Department, Florida Department of Revenue, and Rhode Island General Assembly. Warlock, also known as the Warlock Dark Army, has targeted multiple sectors, including government, finance, manufacturing, and education, with at least 11 confirmed victims and more expected. Among the affected entities are Astronika (a Polish space tech firm), Nippon Life India Asset Management (whose app and website were shut down in April 2025), Unilever (though the company has not confirmed the breach), and Carducci, a U.S.-based firm hit in June 2025. As of July 23, it remains unclear whether Storm-2603 has issued ransom demands or what financial impact the attacks may have. The campaign leverages two newly disclosed zero-day vulnerabilities CVE-2025-53770 (CVSS 9.8, remote code execution) and CVE-2025-53771 (CVSS 6.3, server spoofing) which are evolved variants of the original "ToolShell" attack chain (CVE-2025-49704 and CVE-2025-49706). These flaws bypass Microsoft’s July 2025 patches for the initial vulnerabilities, allowing unauthenticated attackers to execute arbitrary code, access SharePoint content, and compromise file systems. Microsoft’s Security Response Center (MSRC) addressed the new vulnerabilities on July 19, urging organizations to apply both updates. Security researchers, including Frankie Sclafani of Deepwatch, confirmed that the ToolShell attack chain remains active, with threat actors rapidly adapting to exploit the latest variants. When chained together, these vulnerabilities enable full network access and remote code execution, posing a severe risk to unpatched systems.
INCIDENT DETAILS -
TYPE
Ransomware Attack
IMPACT
Systems Affected: SharePoint servers, file systemsOperational Impact: Website and app shutdowns (e.g., Nippon Life India Asset Management)

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Unilever ?
?
What was Unilever's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Unilever's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Unilever's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Unilever's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Unilever's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Unilever's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Unilever's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Unilever's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Unilever's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Unilever's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Unilever's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Unilever's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Unilever ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Unilever's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?