Unilever A.I CyberSecurity Scoring
Unilever
Company Information
Website:http://www.unilever.com
Employees number:130,813
Number of followers:20,648,817
NAICS:30
Industry Type:Manufacturing
Homepage:unilever.com
Unilever Risk Score (AI oriented)
Between 750 and 799
UnileverManufacturing
Updated:
31/05/2026
31/05/2026
786/1000
Fair
Baa
Unilever Global Score (TPRM)
xxxx
UnileverManufacturing
Score locked

UnileverFair
Current Score
786Baa (FAIR)
01000
1 incidents
-56 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
786
MAY 2026
787
APRIL 2026
787
MARCH 2026
786
FEBRUARY 2026
785
JANUARY 2026
784
DECEMBER 2025
783
NOVEMBER 2025
782
OCTOBER 2025
781
SEPTEMBER 2025
780
AUGUST 2025
779
JULY 2025
834
Ransomware
24 Jul 2025 • Unilever
Astronika, Rhode Island General Assembly, Unilever, Microsoft and Florida Department of Revenue: China-backed Storm-2603 deployed ransomware via SharePoint zero-days
China-Backed Storm-2603 Deploys Warlock Ransomware in Widespread SharePoint Attacks
778
CRITICAL-56
UNIMICASTFLORHO1772483656
China-Backed Storm-2603 Deploys Warlock Ransomware in Widespread SharePoint Attacks
On July 23, Microsoft reported that the China-linked threat group Storm-2603 exploited on-premises SharePoint servers using Warlock ransomware, a ransomware-as-a-service (RaaS) operation that emerged in early 2024. The attacks, part of at least four confirmed waves between July 17 and July 21, compromised over 400 organizations, including critical U.S. government agencies such as the National Nuclear Security Administration (NNSA), U.S. Education Department, Florida Department of Revenue, and Rhode Island General Assembly.
Warlock, also known as the Warlock Dark Army, has targeted multiple sectors, including government, finance, manufacturing, and education, with at least 11 confirmed victims and more expected. Among the affected entities are Astronika (a Polish space tech firm), Nippon Life India Asset Management (whose app and website were shut down in April 2025), Unilever (though the company has not confirmed the breach), and Carducci, a U.S.-based firm hit in June 2025. As of July 23, it remains unclear whether Storm-2603 has issued ransom demands or what financial impact the attacks may have.
The campaign leverages two newly disclosed zero-day vulnerabilities CVE-2025-53770 (CVSS 9.8, remote code execution) and CVE-2025-53771 (CVSS 6.3, server spoofing) which are evolved variants of the original "ToolShell" attack chain (CVE-2025-49704 and CVE-2025-49706). These flaws bypass Microsoft’s July 2025 patches for the initial vulnerabilities, allowing unauthenticated attackers to execute arbitrary code, access SharePoint content, and compromise file systems.
Microsoft’s Security Response Center (MSRC) addressed the new vulnerabilities on July 19, urging organizations to apply both updates. Security researchers, including Frankie Sclafani of Deepwatch, confirmed that the ToolShell attack chain remains active, with threat actors rapidly adapting to exploit the latest variants. When chained together, these vulnerabilities enable full network access and remote code execution, posing a severe risk to unpatched systems.
INCIDENT DETAILS -
TYPE
IMPACT
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Unilever ??
What was Unilever's A.I Rankiteo Cyber Score in May 2026 ??
What was Unilever's A.I Rankiteo Cyber Score in April 2026 ??
What was Unilever's A.I Rankiteo Cyber Score in March 2026 ??
What was Unilever's A.I Rankiteo Cyber Score in February 2026 ??
What was Unilever's A.I Rankiteo Cyber Score in January 2026 ??
What was Unilever's A.I Rankiteo Cyber Score in December 2025 ??
What was Unilever's A.I Rankiteo Cyber Score in November 2025 ??
What was Unilever's A.I Rankiteo Cyber Score in October 2025 ??
What was Unilever's A.I Rankiteo Cyber Score in September 2025 ??
What was Unilever's A.I Rankiteo Cyber Score in August 2025 ??
What was Unilever's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on Unilever's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Unilever ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Unilever's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?