Comparison Overview
Westpac

Westpac
Head Office: 200 Barangaroo Avenue, Sydney, 2000, AU
Last Update: 29/03/2026
To turn doing into done, it takes a little Westpac. From rescue helicopters and signing the Equator Principles, to paying super during parental leave and initiatives like Westpac SaferPay and SafeCall that help protect customers from scams... we have a proud history of...

OCBC
65 Chulia St, Singapore, Singapore, SG, 049513
Last Update: 02/04/2026
OCBC is the longest established Singapore bank, formed in 1932 from the merger of three local banks, the oldest of which was founded in 1912. It is now the second largest financial services group in Southeast Asia by assets and one of the world’s most highly-rated banks...
Compliance Ranges Comparison

Westpac







OCBC






Benchmark & Cyber Underwriting Signals
Incidents vs Banking Industry Avg (This Year)
No incidents recorded for Westpac in 2026.
Incidents vs Banking Industry Avg (This Year)
No incidents recorded for OCBC in 2026.
Incident History - Westpac (X = Date, Y = Severity)
Westpac cyber incidents detection timeline including parent company and subsidiaries.
Incident History - OCBC (X = Date, Y = Severity)
OCBC cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Westpac

OCBC
FAQ
Latest Global CVEs
Use after free in Aura in Google Chrome prior to 150.0.7871.128 allowed a local attacker to potentially exploit heap corruption via a malicious file. (Chromium security severity: High)
Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.128 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Out of bounds read and write in V8 in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in Cast in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in Network in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)