Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

US Environmental Protection Agency (EPA)US Environmental Protection Agency (EPA)
VS
GSAGSA
US Environmental Protection Agency (EPA)

US Environmental Protection Agency (EPA)

1200 Pennsylvania Ave. N.W., Washington, 20004, US

Last Update: 31/03/2026

View Profile
Between 750 and 799
http://www.epa.gov/careers/
795/1000Fair

U.S. Environmental Protection Agency’s (EPA) mission is to protect human health and the environment. EPA works to ensure that: - Americans have clean air, land and water; - National efforts to reduce environmental risks are based on the best available scientific inform...

NAICS:92
NAICS Definition:Public Administration
Employees:16,564
Subsidiaries:1
12-month incidents
0
Known data breaches
0
Attack type number
0
GSA

GSA

1800 F St. NW, Washington, 20405, US

Last Update: 31/03/2026

View Profile
Between 750 and 799
http://www.gsa.gov
782/1000Fair

General Services Administration (GSA) is an independent agency of the United States government established in 1949 to help manage and support the basic functioning of federal agencies. Our organization includes the Public Buildings Service (PBS), Federal Acquisition Ser...

NAICS:92
NAICS Definition:Public Administration
Employees:13,399
Subsidiaries:7
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Ranges Comparison

Based On Specific Ai Models Category
US Environmental Protection Agency (EPA)

US Environmental Protection Agency (EPA)

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
GSA

GSA

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Government Administration Industry Avg (This Year)

No incidents recorded for US Environmental Protection Agency (EPA) in 2026.

Incidents

Incidents vs Government Administration Industry Avg (This Year)

No incidents recorded for GSA in 2026.

Incidents

Incident History - US Environmental Protection Agency (EPA) (X = Date, Y = Severity)

US Environmental Protection Agency (EPA) cyber incidents detection timeline including parent company and subsidiaries.

No timeline data available
R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - GSA (X = Date, Y = Severity)

GSA cyber incidents detection timeline including parent company and subsidiaries.

No timeline data available
R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
US Environmental Protection Agency (EPA)

US Environmental Protection Agency (EPA)

Incidents
No explicit notable incidents reported.
GSA

GSA

Incidents
No explicit notable incidents reported.

FAQ

Between US Environmental Protection Agency (EPA) company and GSA company, which one has the best AI Cybersecurity Score ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one has experienced more cyber incidents in the past ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one has experienced more cyber incidents this year ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one has experienced at least one ransomware attack ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one has experienced at least one data breach ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one has experienced at least one targeted cyberattack ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one has experienced at least one vulnerability ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one holds the most compliance certifications ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one holds the fewest compliance certifications ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one has the most subsidiaries ?
Between US Environmental Protection Agency (EPA) company and GSA company, which one has the largest number of employees ?
Between US Environmental Protection Agency (EPA) and GSA, which company holds both SOC 2 Type 1 certifications ?
Between US Environmental Protection Agency (EPA) and GSA, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - US Environmental Protection Agency (EPA) or GSA ?
Which company is PCI DSS compliant - US Environmental Protection Agency (EPA) or GSA ?
Between US Environmental Protection Agency (EPA) and GSA, which company complies with HIPAA regulations for healthcare data ?
Between US Environmental Protection Agency (EPA) and GSA, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-93436
SUMMARY

vLLM through 0.29.0 fails to properly clean up decode-side metadata for rejected inference requests in prefill/decode disaggregated deployments. Remote attackers can submit requests with max_tokens=0 to exhaust decode-worker memory without bound until the worker restarts.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 7.5)
CVSS3
Base Score: 7.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS4
Base Score: 8.7
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.6
EXPLOITABILITY
3.9
CVE-2026-93435
SUMMARY

redis-parser through 3.0.0 contains a denial of service vulnerability in the RESP protocol parser that allows malicious Redis endpoints to crash the client process through unbounded recursion on nested arrays. Attackers can send crafted RESP byte streams with repeated array headers that exhaust the V8 call stack, causing an uncaught RangeError that terminates the Node.js process without triggering error handling callbacks.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 7.5)
CVSS3
Base Score: 7.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS4
Base Score: 8.7
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.6
EXPLOITABILITY
3.9
CVE-2026-87701
SUMMARY

Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 9.6)
CVSS3
Base Score: 9.6
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
IMPACT SCORE
5.8
EXPLOITABILITY
3.1
CVE-2026-85917
SUMMARY

Server-side request forgery (ssrf) in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 7.5)
CVSS3
Base Score: 7.5
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
IMPACT SCORE
3.6
EXPLOITABILITY
3.9
CVE-2026-85889
SUMMARY

Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.

PUBLISHED
Date2026-09-17
UPDATED
Date2026-09-17
RISK INFORMATION (Score: 10)
CVSS3
Base Score: 10.0
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
IMPACT SCORE
6
EXPLOITABILITY
3.9