Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

UpworkUpwork
VS
MicrosoftMicrosoft
Upwork

Upwork

475 Brannan St, San Francisco, 94107, US

Last Update: 12/09/2026

View Profile
Between 800 and 849
https://www.upwork.com/
828/1000Good

Upwork is the world’s work marketplace that connects businesses with independent talent from across the globe. We serve everyone from one-person startups to large, Fortune 100 enterprises with a powerful, trust-driven platform that enables companies and talent to work t...

NAICS:5112
NAICS Definition:Software Publishers
Employees:178,918
Subsidiaries:3
12-month incidents
0
Known data breaches
0
Attack type number
0
Microsoft

Microsoft

1 Microsoft Way, Redmond, 98052, US

Last Update: 06/09/2026

View Profile
Between 600 and 649
https://news.microsoft.com/
618/1000Poor

Every company has a mission. What's ours? To empower every person and every organization to achieve more. We believe technology can and should be a force for good and that meaningful innovation contributes to a brighter world in the future and today. Our culture doesn’t...

NAICS:5112
NAICS Definition:Software Publishers
Employees:233,556
Subsidiaries:52
12-month incidents
23
Known data breaches
11
Attack type number
5

Compliance Ranges Comparison

Based On Specific Ai Models Category
Upwork

Upwork

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
Microsoft

Microsoft

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Software Development Industry Avg (This Year)

No incidents recorded for Upwork in 2026.

Incidents

Incidents vs Software Development Industry Avg (This Year)

Microsoft has 2133.01% more incidents than the average of all companies with at least one recorded incident.

Incidents

Incident History - Upwork (X = Date, Y = Severity)

Upwork cyber incidents detection timeline including parent company and subsidiaries.

No timeline data available
R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - Microsoft (X = Date, Y = Severity)

Microsoft cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
Upwork

Upwork

Incidents
No explicit notable incidents reported.
Microsoft

Microsoft

Incidents
🔒 Incident : Vulnerability
MIC1787826520
🔒 Incident : Vulnerability
MIC1787156632
🔒 Incident : Vulnerability
MLF1787063064

FAQ

Between Upwork company and Microsoft company, which one has the best AI Cybersecurity Score ?
Between Upwork company and Microsoft company, which one has experienced more cyber incidents in the past ?
Between Upwork company and Microsoft company, which one has experienced more cyber incidents this year ?
Between Upwork company and Microsoft company, which one has experienced at least one ransomware attack ?
Between Upwork company and Microsoft company, which one has experienced at least one data breach ?
Between Upwork company and Microsoft company, which one has experienced at least one targeted cyberattack ?
Between Upwork company and Microsoft company, which one has experienced at least one vulnerability ?
Between Upwork company and Microsoft company, which one holds the most compliance certifications ?
Between Upwork company and Microsoft company, which one holds the fewest compliance certifications ?
Between Upwork company and Microsoft company, which one has the most subsidiaries ?
Between Upwork company and Microsoft company, which one has the largest number of employees ?
Between Upwork and Microsoft, which company holds both SOC 2 Type 1 certifications ?
Between Upwork and Microsoft, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - Upwork or Microsoft ?
Which company is PCI DSS compliant - Upwork or Microsoft ?
Between Upwork and Microsoft, which company complies with HIPAA regulations for healthcare data ?
Between Upwork and Microsoft, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-94057
SUMMARY

Exim before 4.100.1 allows SMTP smuggling in which the received message does not match any sent message, and instead depends on crafted data sent after a rejection during DATA processing.

PUBLISHED
Date2026-09-19
UPDATED
Date2026-09-19
RISK INFORMATION (Score: 4)
CVSS3
Base Score: 4.0
Complexity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N
IMPACT SCORE
1.4
EXPLOITABILITY
2.2
CVE-2026-94056
SUMMARY

Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory.

PUBLISHED
Date2026-09-19
UPDATED
Date2026-09-19
RISK INFORMATION (Score: 7.5)
CVSS3
Base Score: 7.5
Complexity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:L
IMPACT SCORE
4.7
EXPLOITABILITY
2.2
CVE-2026-94055
SUMMARY

Exim before 4.100.1, when certain non-default TLS settings are used with GnuTLS, has a use-after-free.

PUBLISHED
Date2026-09-19
UPDATED
Date2026-09-19
RISK INFORMATION (Score: 3.7)
CVSS3
Base Score: 3.7
Complexity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
IMPACT SCORE
1.4
EXPLOITABILITY
2.2
CVE-2026-94054
SUMMARY

Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, has an out-of-bounds write.

PUBLISHED
Date2026-09-19
UPDATED
Date2026-09-19
RISK INFORMATION (Score: 7)
CVSS3
Base Score: 7.0
Complexity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:L
IMPACT SCORE
4.7
EXPLOITABILITY
2.2
CVE-2026-93993
SUMMARY

Mistral Vibe before 2.25.5 contains a remote code execution vulnerability in the worktree creation process that executes git hooks before trust validation. Attackers can supply a repository with a crafted post-checkout hook that executes arbitrary shell commands with the privileges of the user running Vibe.

PUBLISHED
Date2026-09-19
UPDATED
Date2026-09-19
RISK INFORMATION (Score: 8.8)
CVSS3
Base Score: 8.8
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS4
Base Score: 8.6
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
5.9
EXPLOITABILITY
2.8