Company Details
wakanim
21
0
None
wakanim.tv
0
WAK_3220122
In-progress

WAKANIM Company CyberSecurity Posture
wakanim.tvWakanim is Europe’s leading animation streaming and simulcast platform. Founded in France in 2009 and now operating in a dozen countries, Wakanim in collaboration with Aniplex and Peppermint Anime aims to bring the best of Japanese Animation to all fans accross the continent. With a limited free tier and a VIP experience, everyone can enjoy our seasonal simulcasts on Wakanim.tv. This season includes the smash hits series King’s Game, UQ Holder!, Vanishing Line, Blend-S and many more!
Company Details
wakanim
21
0
None
wakanim.tv
0
WAK_3220122
In-progress
Between 750 and 799

WAKANIM Global Score (TPRM)XXXX

Description: Sony-owned European streaming service Wakanim suffered a data breach incident which also delayed the release of new content as it works on an "issue." A data leak marketplace Breach Forums put to sell data leaked from 6.7 million users on Wakanim, including each user's account name, universally unique identifier, IP address, email address, state, city, zip code, country, phone number, first name and last name, and account type. The company immediately began an investigation of the issue and started working on resolving the issue.


No incidents recorded for WAKANIM in 2025.
No incidents recorded for WAKANIM in 2025.
No incidents recorded for WAKANIM in 2025.
WAKANIM cyber incidents detection timeline including parent company and subsidiaries

Wakanim is Europe’s leading animation streaming and simulcast platform. Founded in France in 2009 and now operating in a dozen countries, Wakanim in collaboration with Aniplex and Peppermint Anime aims to bring the best of Japanese Animation to all fans accross the continent. With a limited free tier and a VIP experience, everyone can enjoy our seasonal simulcasts on Wakanim.tv. This season includes the smash hits series King’s Game, UQ Holder!, Vanishing Line, Blend-S and many more!


Dow Jones is a global provider of news and business information, delivering content to consumers and organizations around the world across multiple formats, including print, digital, mobile and live events. Dow Jones has produced unrivaled quality content for more than 130 years and today has one of
.png)

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of WAKANIM is http://www.wakanim.tv.
According to Rankiteo, WAKANIM’s AI-generated cybersecurity score is 785, reflecting their Fair security posture.
According to Rankiteo, WAKANIM currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, WAKANIM is not certified under SOC 2 Type 1.
According to Rankiteo, WAKANIM does not hold a SOC 2 Type 2 certification.
According to Rankiteo, WAKANIM is not listed as GDPR compliant.
According to Rankiteo, WAKANIM does not currently maintain PCI DSS compliance.
According to Rankiteo, WAKANIM is not compliant with HIPAA regulations.
According to Rankiteo,WAKANIM is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
WAKANIM operates primarily in the Online Media industry.
WAKANIM employs approximately 21 people worldwide.
WAKANIM presently has no subsidiaries across any sectors.
WAKANIM’s official LinkedIn profile has approximately 0 followers.
WAKANIM is classified under the NAICS code None, which corresponds to Others.
No, WAKANIM does not have a profile on Crunchbase.
Yes, WAKANIM maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/wakanim.
As of December 28, 2025, Rankiteo reports that WAKANIM has experienced 1 cybersecurity incidents.
WAKANIM has an estimated 530 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Data Leak.
Common Attack Types: The most common types of attacks the company has faced is Data Leak.

Data Compromised: Account name, Universally unique identifier, Ip address, Email address, State, City, Zip code, Country, Phone number, First name, Last name, Account type
Downtime: Delayed release of new content
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Account Name, Universally Unique Identifier, Ip Address, Email Address, State, City, Zip Code, Country, Phone Number, First Name, Last Name, Account Type and .

Entity Name: Wakanim
Entity Type: Streaming Service
Industry: Entertainment
Location: Europe
Customers Affected: 6.7 million users

Type of Data Compromised: Account name, Universally unique identifier, Ip address, Email address, State, City, Zip code, Country, Phone number, First name, Last name, Account type
Number of Records Exposed: 6.7 million
Data Exfiltration: Yes
Personally Identifiable Information: Yes

Investigation Status: Ongoing
Last Attacking Group: The attacking group in the last incident was an Breach Forums.
Most Significant Data Compromised: The most significant data compromised in an incident were account name, universally unique identifier, IP address, email address, state, city, zip code, country, phone number, first name, last name, account type and .
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were zip code, country, phone number, account type, state, universally unique identifier, account name, last name, IP address, first name, email address and city.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 6.7M.
Current Status of Most Recent Investigation: The current status of the most recent investigation is Ongoing.
.png)
In GnuPG through 2.4.8, if a signed message has \f at the end of a plaintext line, an adversary can construct a modified message that places additional text after the signed material, such that signature verification of the modified message succeeds (although an "invalid armor" message is printed during verification). This is related to use of \f as a marker to denote truncation of a long plaintext line.
A vulnerability has been found in jackq XCMS up to 3fab5342cc509945a7ce1b8ec39d19f701b89261. Affected is the function Upload of the file Admin/Home/Controller/ProductImageController.class.php of the component Backend. Such manipulation of the argument File leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. The project was informed of the problem early through an issue report but has not responded yet.
In PHP versions 8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1 when using the PDO PostgreSQL driver with PDO::ATTR_EMULATE_PREPARES enabled, an invalid character sequence (such as \x99) in a prepared statement parameter may cause the quoting function PQescapeStringConn to return NULL, leading to a null pointer dereference in pdo_parse_params() function. This may lead to crashes (segmentation fault) and affect the availability of the target server.
In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1, a heap buffer overflow occurs in array_merge() when the total element count of packed arrays exceeds 32-bit limits or HT_MAX_SIZE, due to an integer overflow in the precomputation of element counts using zend_hash_num_elements(). This may lead to memory corruption or crashes and affect the integrity and availability of the target server.
In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1, the getimagesize() function may leak uninitialized heap memory into the APPn segments (e.g., APP1) when reading images in multi-chunk mode (such as via php://filter). This occurs due to a bug in php_read_stream_all_chunks() that overwrites the buffer without advancing the pointer, leaving tail bytes uninitialized. This may lead to information disclosure of sensitive heap data and affect the confidentiality of the target server.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.