Company Details
universiti-teknologi-mara
12,632
394,217
None
uitm.edu.my
0
UNI_1762967
In-progress

Universiti Teknologi MARA Company CyberSecurity Posture
uitm.edu.myUniversiti Teknologi MARA (UiTM) is the largest comprehensive university in Malaysia providing innovative education with state-of-the-art infrastructure and technology within reach at its 34 campuses (1 main campus, 12 state campuses and 21 satellite campuses), 4 College of Studies, 13 faculties, 9 academic centres across the country. UiTM offers over 500 academic programmes at Foundation, Pre-Diploma, Diploma, Bachelor’s, Master’s, and PhD level, as well as Professional Programmes. It continues to expand access to higher education, playing its role in nation building by unleashing potentials, shaping the future. Currently, UiTM is among the Top 46% performing universities in the QS World University Rankings 2023. Amongst its long lines of accolades, in 2022 UiTM was honoured with the Reader’s Digest Trusted Brand Gold Award in the Public University category for the 12th time. UiTM is also ranked 105th in the QS Asia University Rankings 2022 and placed 651–701 in the QS World University Rankings 2022. The Hospitality and Leisure Management subject is placed at 42nd best in the world, and overall 14 UiTM subjects are ranked in the QS World University Rankings by Subject. In 2021, UiTM was in the 101-200th position in THE Impact Rankings 2021 and ranked 150th in the UI GreenMetric (UIGM) World University Rankings 2021. In 2020, UiTM won gold for the Best International Print-ads at the QS APPLE Creative Awards. With over 900,000 alumni in science, technology, humanities and entrepreneurship, UiTM offers opportunities to shape leaders at national, industry and global levels and is well poised to become a globally renowned university by 2025.
Company Details
universiti-teknologi-mara
12,632
394,217
None
uitm.edu.my
0
UNI_1762967
In-progress
Between 750 and 799

UTM Global Score (TPRM)XXXX

Description: Universiti Teknologi Mara (UiTM) suffered a data breach incident that compromised a total of 1,164,540 records, belonging to students who enrolled for various courses between 2000 and 2018. The leaked data includes detailed records of students from the UiTM main campus in Shah Alam, as well as it’s 13 autonomous state campuses around the country. The breached details contained personal details including Student ID, Student Name, MyKAD Number, Address, Email Address, Campus Codes, Campus Names, Program Codes, Course Levels as well as Handphone numbers.


No incidents recorded for Universiti Teknologi MARA in 2025.
No incidents recorded for Universiti Teknologi MARA in 2025.
No incidents recorded for Universiti Teknologi MARA in 2025.
UTM cyber incidents detection timeline including parent company and subsidiaries

Universiti Teknologi MARA (UiTM) is the largest comprehensive university in Malaysia providing innovative education with state-of-the-art infrastructure and technology within reach at its 34 campuses (1 main campus, 12 state campuses and 21 satellite campuses), 4 College of Studies, 13 faculties, 9 academic centres across the country. UiTM offers over 500 academic programmes at Foundation, Pre-Diploma, Diploma, Bachelor’s, Master’s, and PhD level, as well as Professional Programmes. It continues to expand access to higher education, playing its role in nation building by unleashing potentials, shaping the future. Currently, UiTM is among the Top 46% performing universities in the QS World University Rankings 2023. Amongst its long lines of accolades, in 2022 UiTM was honoured with the Reader’s Digest Trusted Brand Gold Award in the Public University category for the 12th time. UiTM is also ranked 105th in the QS Asia University Rankings 2022 and placed 651–701 in the QS World University Rankings 2022. The Hospitality and Leisure Management subject is placed at 42nd best in the world, and overall 14 UiTM subjects are ranked in the QS World University Rankings by Subject. In 2021, UiTM was in the 101-200th position in THE Impact Rankings 2021 and ranked 150th in the UI GreenMetric (UIGM) World University Rankings 2021. In 2020, UiTM won gold for the Best International Print-ads at the QS APPLE Creative Awards. With over 900,000 alumni in science, technology, humanities and entrepreneurship, UiTM offers opportunities to shape leaders at national, industry and global levels and is well poised to become a globally renowned university by 2025.


Universiti Teknologi MARA (UiTM) is the largest comprehensive university in Malaysia providing innovative education with state-of-the-art infrastructure and technology within reach at its 34 campuses (1 main campus, 12 state campuses and 21 satellite campuses), 4 College of Studies, 13 faculties, 9
.png)
ISLAMABAD, Nov 25 (APP):A high-profile three-day international workshop on Artificial Intelligence, Cyber Security and Disruptive...
SOVEREIGNTY in cybersecurity demands a redefinition. Previously, our focus was on building capacity — developing Malaysian talent with...
During conference the Malaysian government launched the Malaysia Cyber Security Strategy (MCSS) 2025-2030 and reaffirmed its commitment to...
CYDES 2025, Cybersecurity, Malaysia, ASEAN, MCSS 2025-2030, Megat Zuhairy Megat Tajuddin.
cyber security, MAHB, experts, AI, hackers, threats.
KUALA LUMPUR: Following the recent cyberattack on Malaysia Airports Holdings Bhd (MAHB) which targeted systems at Kuala Lumpur International...
The recent ransomware attack on Malaysia Airports Holdings Bhd (MAHB) has raised significant concerns among cybersecurity experts.
NACSA, cyber threats, NCCMP, NCII, Cyber Security Act 2024, Megat Zuhairy Megat Tajuddin.
A total of RM82.1 billion has been allocated for the education and higher education ministries under the 2025 National Budget, to upgrade schools, improve...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Universiti Teknologi MARA is http://www.uitm.edu.my.
According to Rankiteo, Universiti Teknologi MARA’s AI-generated cybersecurity score is 785, reflecting their Fair security posture.
According to Rankiteo, Universiti Teknologi MARA currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Universiti Teknologi MARA is not certified under SOC 2 Type 1.
According to Rankiteo, Universiti Teknologi MARA does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Universiti Teknologi MARA is not listed as GDPR compliant.
According to Rankiteo, Universiti Teknologi MARA does not currently maintain PCI DSS compliance.
According to Rankiteo, Universiti Teknologi MARA is not compliant with HIPAA regulations.
According to Rankiteo,Universiti Teknologi MARA is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Universiti Teknologi MARA operates primarily in the Pendidikan Tinggi industry.
Universiti Teknologi MARA employs approximately 12,632 people worldwide.
Universiti Teknologi MARA presently has no subsidiaries across any sectors.
Universiti Teknologi MARA’s official LinkedIn profile has approximately 394,217 followers.
Universiti Teknologi MARA is classified under the NAICS code None, which corresponds to Others.
No, Universiti Teknologi MARA does not have a profile on Crunchbase.
Yes, Universiti Teknologi MARA maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/universiti-teknologi-mara.
As of December 05, 2025, Rankiteo reports that Universiti Teknologi MARA has experienced 1 cybersecurity incidents.
Universiti Teknologi MARA has an estimated 21 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Data Leak.
Title: Data Breach at Universiti Teknologi Mara (UiTM)
Description: Universiti Teknologi Mara (UiTM) suffered a data breach incident that compromised a total of 1,164,540 records, belonging to students who enrolled for various courses between 2000 and 2018. The leaked data includes detailed records of students from the UiTM main campus in Shah Alam, as well as its 13 autonomous state campuses around the country. The breached details contained personal details including Student ID, Student Name, MyKAD Number, Address, Email Address, Campus Codes, Campus Names, Program Codes, Course Levels as well as Handphone numbers.
Type: Data Breach
Common Attack Types: The most common types of attacks the company has faced is Data Leak.

Data Compromised: Student id, Student name, Mykad number, Address, Email address, Campus codes, Campus names, Program codes, Course levels, Handphone numbers
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Student Id, Student Name, Mykad Number, Address, Email Address, Campus Codes, Campus Names, Program Codes, Course Levels, Handphone Numbers and .

Entity Name: Universiti Teknologi Mara (UiTM)
Entity Type: Educational Institution
Industry: Education
Location: Malaysia
Customers Affected: 1164540

Type of Data Compromised: Student id, Student name, Mykad number, Address, Email address, Campus codes, Campus names, Program codes, Course levels, Handphone numbers
Number of Records Exposed: 1164540
Most Significant Data Compromised: The most significant data compromised in an incident were Student ID, Student Name, MyKAD Number, Address, Email Address, Campus Codes, Campus Names, Program Codes, Course Levels, Handphone numbers and .
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Email Address, Student Name, Handphone numbers, Course Levels, Address, Campus Codes, Campus Names, Student ID, MyKAD Number and Program Codes.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 570.0.
.png)
Sigstore Timestamp Authority is a service for issuing RFC 3161 timestamps. Prior to 2.0.3, Function api.ParseJSONRequest currently splits (via a call to strings.Split) an optionally-provided OID (which is untrusted data) on periods. Similarly, function api.getContentType splits the Content-Type header (which is also untrusted data) on an application string. As a result, in the face of a malicious request with either an excessively long OID in the payload containing many period characters or a malformed Content-Type header, a call to api.ParseJSONRequest or api.getContentType incurs allocations of O(n) bytes (where n stands for the length of the function's argument). This vulnerability is fixed in 2.0.3.
Monkeytype is a minimalistic and customizable typing test. In 25.49.0 and earlier, there is improper handling of user input which allows an attacker to execute malicious javascript on anyone viewing a malicious quote submission. quote.text and quote.source are user input, and they're inserted straight into the DOM. If they contain HTML tags, they will be rendered (after some escaping using quotes and textarea tags).
SysReptor is a fully customizable pentest reporting platform. Prior to 2025.102, there is a Stored Cross-Site Scripting (XSS) vulnerability allows authenticated users to execute malicious JavaScript in the context of other logged-in users by uploading malicious JavaScript files in the web UI. This vulnerability is fixed in 2025.102.
Taiko Alethia is an Ethereum-equivalent, permissionless, based rollup designed to scale Ethereum without compromising its fundamental properties. In 2.3.1 and earlier, TaikoInbox._verifyBatches (packages/protocol/contracts/layer1/based/TaikoInbox.sol:627-678) advanced the local tid to whatever transition matched the current blockHash before knowing whether that batch would actually be verified. When the loop later broke (e.g., cooldown window not yet passed or transition invalidated), the function still wrote that newer tid into batches[lastVerifiedBatchId].verifiedTransitionId after decrementing batchId. Result: the last verified batch could end up pointing at a transition index from the next batch (often zeroed), corrupting the verified chain pointer.
A flaw has been found in youlaitech youlai-mall 1.0.0/2.0.0. Affected is the function getById/updateAddress/deleteAddress of the file /mall-ums/app-api/v1/addresses/. Executing manipulation can lead to improper control of dynamically-identified variables. The attack can be executed remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.