Comparison Overview
win.rar GmbH

win.rar GmbH
win.rar GmbH, Berlin, 10117, DE
Last Update: 02/07/2026
win.rar GmbH has been the official distributor of WinRAR and RARLAB products since February 2002 and handles all support, marketing and sales related to WinRAR & rarlab.com. win.rar GmbH is registered in Germany and is represented worldwide by local partners in more tha...

Grab
3 Media Close, Singapore, 138498, SG
Last Update: 10/09/2026
Grab is Southeast Asia’s leading superapp, offering a suite of services consisting of deliveries, mobility, financial services, enterprise and others. Grabbers come from all over the world, and we are united by a common mission: to drive Southeast Asia forward by creati...
Compliance Ranges Comparison

win.rar GmbH







Grab






Benchmark & Cyber Underwriting Signals
Incidents vs Software Development Industry Avg (This Year)
win.rar GmbH has 4.76% fewer incidents than the average of same-industry companies with at least one recorded incident.
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for Grab in 2026.
Incident History - win.rar GmbH (X = Date, Y = Severity)
win.rar GmbH cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Grab (X = Date, Y = Severity)
Grab cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

win.rar GmbH

Grab
FAQ
Latest Global CVEs
HTTP/2 servers could end up crashing due to inadvertently modifying its HPACK encoder concurrently. This happens because the server modifies the HPACK encoder from two goroutines without synchronization: one uses the encoder to encode a HEADERS frame as part of a response sent to a client and the other modifies the encoder's table size when handling a SETTINGS frame containing SETTINGS_HEADER_TABLE_SIZE that a client sends. A malicious client can repeatedly send a request while changing the header table size to crash the server.
Multiple ECH outer extension references are not permitted under RFC 9849; previously, a client could send a well-crafted packet that could trigger memory exhaustion in the server process by specifying multiple references. We now reject these as malformed and curb the memory amplification vector as a result.
A trusted template author may have previously written a valid template wherein the use of the 'yield' keyword would not be correctly escaped. We now ensure that valid keyword uses are escaped and non-keyword uses are not escaped.
Improper certificate validation in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network.
Authorization bypass through user-controlled key in Microsoft Bookings allows an unauthorized attacker to elevate privileges over a network.