Company Details
york-university
11,129
405,813
6113
yorku.ca
142
YOR_6139396
Completed


York University Company CyberSecurity Posture
yorku.caYork University is a diverse community of students, faculty, and staff driving positive change. As one of the largest post-secondary communities in the world and with a uniquely global perspective, we are driven by passion and purpose as part of a forward-thinking collective bringing enduring values and new ideas to complex societal challenges. The York University staff and faculty community benefit from opportunities for career advancement, learning and development, and personal growth while creating positive change for our students and broader communities.
Company Details
york-university
11,129
405,813
6113
yorku.ca
142
YOR_6139396
Completed
Between 750 and 799

York University Global Score (TPRM)XXXX

Description: York University suffered a cyberattack incident. Attack corrupted a number of its servers and workstations. It had to shut down many online programs after the attack began. Some of those programs remained offline, including portals where students can access OSAP applications, tuition fees, and final grades from the winter semester.


No incidents recorded for York University in 2026.
No incidents recorded for York University in 2026.
No incidents recorded for York University in 2026.
York University cyber incidents detection timeline including parent company and subsidiaries

York University is a diverse community of students, faculty, and staff driving positive change. As one of the largest post-secondary communities in the world and with a uniquely global perspective, we are driven by passion and purpose as part of a forward-thinking collective bringing enduring values and new ideas to complex societal challenges. The York University staff and faculty community benefit from opportunities for career advancement, learning and development, and personal growth while creating positive change for our students and broader communities.


Founded in 1827, the University of Toronto is Canada’s top university with a long history of challenging the impossible and transforming society through the ingenuity and resolve of our faculty, students, alumni, and supporters. We are proud to be one of the world’s top research-intensive univers

One of the nation’s largest schools, the University of Minnesota offers baccalaureate, master’s, and doctoral degrees in virtually every field—from medicine to business, law to liberal arts, and science and engineering to architecture. The University of Minnesota system is made up of five campuses

The University of Cincinnati, top 5 university for co-op and internships, offers students a balance of academic excellence and real-world experience. Since its founding in 1819, UC has been the source of many discoveries creating positive change for society, including the first antihistamine, the fi

A research-intensive public university, Nanyang Technological University, Singapore (NTU Singapore) has 33,000 undergraduate and postgraduate students in the Engineering, Business, Science, Medicine, Humanities, Arts, & Social Sciences, and Graduate colleges. NTU is also home to world-renowned au

Auburn University is a comprehensive land, space and sea grant research institution blending arts and applied sciences. The university continuously changes to accommodate today's needs, while still respecting the traditions and spirit of Auburn. As we grow and change, Auburn will always continue its

George Mason University is Virginia’s largest and most diverse public research university. Located near Washington, D.C., Mason enrolls more than 40,000 students from 130 countries and 50 states, and has a residential population of more than 6,000 students. Mason has grown rapidly over the past half

Founded in 1963 to provide talent for Central Florida and the growing U.S. space program, UCF has been making an impact on the state, the nation — and outer space — ever since. With 13 colleges and more than 230 degree programs, your passion lies at one of our campus locations designed to help you

A comprehensive institution of higher learning located in Giza, Egypt, is committed to preparing students for the challenges of a rapidly changing workplace. Through interactive learning and new information technologies, our graduates are poised to enter the work force with the skills needed to

The University of Pennsylvania is one of the oldest universities in America and, as a member of the Ivy League, one of the most prestigious institutions of higher learning in all the world. Penn is home to 12 schools including the School of Arts and Sciences, the School of Nursing, the School of Eng
.png)
STATEN ISLAND, N.Y. — One of Staten Island's hospitals has received tens of millions of dollars from New York state to enhance its health...
A devastating fire in Albany, USA, claimed the life of 24-year-old cybersecurity professional Sahaja Reddy Udumala from Hyderabad.
Explore top cybersecurity certifications, what's required to earn them and what advantages each credential has to offer.
Students Gain Hands-On Cybersecurity and AI Experience at Stevens Institute of Technology · Running lightweight AI models directly on the Pi...
At M.I.T., a new program called “artificial intelligence and decision-making” is now the second-most-popular undergraduate major.
Find the best U.S. schools with online cybersecurity bachelor's degrees, and learn how to succeed in an online cybersecurity bachelor's...
Nineteen teams from six universities competed for cash prizes in a series of high-level cybersecurity challenges, sponsored by Amazon and...
Get detailed information on the top online cybersecurity bootcamps, including costs and payment options, and get started finding the right...
The agency says it found a network of some 300 servers and 100000 SIM cards—enough to knock out cell service in the NYC area.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of York University is http://yorku.ca/.
According to Rankiteo, York University’s AI-generated cybersecurity score is 798, reflecting their Fair security posture.
According to Rankiteo, York University currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, York University has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, York University is not certified under SOC 2 Type 1.
According to Rankiteo, York University does not hold a SOC 2 Type 2 certification.
According to Rankiteo, York University is not listed as GDPR compliant.
According to Rankiteo, York University does not currently maintain PCI DSS compliance.
According to Rankiteo, York University is not compliant with HIPAA regulations.
According to Rankiteo,York University is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
York University operates primarily in the Higher Education industry.
York University employs approximately 11,129 people worldwide.
York University presently has no subsidiaries across any sectors.
York University’s official LinkedIn profile has approximately 405,813 followers.
York University is classified under the NAICS code 6113, which corresponds to Colleges, Universities, and Professional Schools.
No, York University does not have a profile on Crunchbase.
Yes, York University maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/york-university.
As of January 24, 2026, Rankiteo reports that York University has experienced 1 cybersecurity incidents.
York University has an estimated 15,191 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Cyber Attack.
Title: York University Cyberattack Incident
Description: York University suffered a cyberattack incident that corrupted a number of its servers and workstations. The university had to shut down many online programs after the attack began. Some of those programs remained offline, including portals where students can access OSAP applications, tuition fees, and final grades from the winter semester.
Type: Cyberattack
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.

Systems Affected: serversworkstations
Downtime: ['online programs', 'OSAP applications', 'tuition fees', 'final grades from the winter semester']

Entity Name: York University
Entity Type: Educational Institution
Industry: Education
Most Significant System Affected: The most significant system affected in an incident was serversworkstations.
.png)
Typemill is a flat-file, Markdown-based CMS designed for informational documentation websites. A reflected Cross-Site Scripting (XSS) exists in the login error view template `login.twig` of versions 2.19.1 and below. The `username` value can be echoed back without proper contextual encoding when authentication fails. An attacker can execute script in the login page context. This issue has been fixed in version 2.19.2.
A DOM-based Cross-Site Scripting (XSS) vulnerability exists in the DomainCheckerApp class within domain/script.js of Sourcecodester Domain Availability Checker v1.0. The vulnerability occurs because the application improperly handles user-supplied data in the createResultElement method by using the unsafe innerHTML property to render domain search results.
A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Modern Image Gallery App v1.0 within the gallery/upload.php component. The application fails to properly validate uploaded file contents. Additionally, the application preserves the user-supplied file extension during the save process. This allows an unauthenticated attacker to upload arbitrary PHP code by spoofing the MIME type as an image, leading to full system compromise.
A UNIX symbolic link following issue in the jailer component in Firecracker version v1.13.1 and earlier and 1.14.0 on Linux may allow a local host user with write access to the pre-created jailer directories to overwrite arbitrary host files via a symlink attack during the initialization copy at jailer startup, if the jailer is executed with root privileges. To mitigate this issue, users should upgrade to version v1.13.2 or 1.14.1 or above.
An information disclosure vulnerability exists in the /srvs/membersrv/getCashiers endpoint of the Aptsys gemscms backend platform thru 2025-05-28. This unauthenticated endpoint returns a list of cashier accounts, including names, email addresses, usernames, and passwords hashed using MD5. As MD5 is a broken cryptographic function, the hashes can be easily reversed using public tools, exposing user credentials in plaintext. This allows remote attackers to perform unauthorized logins and potentially gain access to sensitive POS operations or backend functions.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.