Company Details
adnocgroup
36,845
1,738,581
211
adnoc.ae
0
ADN_1825117
In-progress

ADNOC Group Company CyberSecurity Posture
adnoc.aeWe are one of the world's leading energy producers, and a primary catalyst for Abu Dhabi’s growth and diversification. We operate across the entire hydrocarbon value chain, through a network of fully-integrated businesses, with interests that range from exploration, production, storage, refining and distribution, to the development of a wide-range of petrochemical products. Since 1971, we have created thousands of jobs, driven the growth of a diverse knowledge-based economy, and played a key role in Abu Dhabi’s global emergence. Today, we continue to look for new and innovative ways to maximize the value of our resources, pioneering those approaches and technologies that will ensure we are able to meet the demands of an ever-changing energy market, and continue to have a positive impact on the Abu Dhabi economy for generations to come.
Company Details
adnocgroup
36,845
1,738,581
211
adnoc.ae
0
ADN_1825117
In-progress
Between 750 and 799

ADNOC Group Global Score (TPRM)XXXX

Description: A significant BEC fraud that targets Middle Eastern-based businesses and people has been discovered. The effort has grown to include a new group of phishing domains that were created using the same name patterns as a prior campaign that was detected in July. The collection of phishing websites uses several forms of baits, including phoney employment offers, investment possibilities, vendor registration, and contract bidding, to target contractors in the UAE. Ninety percent of the 35 phishing domains examined target the Emirates National Oil Company, Sharjah National Oil Corporation, and Abu Dhabi National Oil Company (ADNOC) (ENOC). In order to deceive users, some domains have simply an email server (often provided by Zoho) active, some have duplicated the content of reputable companies, and some domains reroute to reputable domains. Threat actors behind this campaign are deliberately purchasing and registering domains with keywords that are similar to those of domains belonging to real businesses. The campaign also makes use of pre-stored static web pages with comparable templates to make it resistant to takedowns. If a domain is banned, these templates are uploaded to another domain.


No incidents recorded for ADNOC Group in 2025.
No incidents recorded for ADNOC Group in 2025.
No incidents recorded for ADNOC Group in 2025.
ADNOC Group cyber incidents detection timeline including parent company and subsidiaries

We are one of the world's leading energy producers, and a primary catalyst for Abu Dhabi’s growth and diversification. We operate across the entire hydrocarbon value chain, through a network of fully-integrated businesses, with interests that range from exploration, production, storage, refining and distribution, to the development of a wide-range of petrochemical products. Since 1971, we have created thousands of jobs, driven the growth of a diverse knowledge-based economy, and played a key role in Abu Dhabi’s global emergence. Today, we continue to look for new and innovative ways to maximize the value of our resources, pioneering those approaches and technologies that will ensure we are able to meet the demands of an ever-changing energy market, and continue to have a positive impact on the Abu Dhabi economy for generations to come.


Koch Engineered Solutions (KES) provides uniquely engineered solutions in construction; mass and heat transfer; combustion and emissions controls; filtration; separation; materials applications; automation and actuation. KES is located in Wichita, Kansas, and is a subsidiary of Koch Industries, one

TechnipFMC is a leading technology provider to the traditional and new energies industry, delivering fully integrated projects, products, and services. With our proprietary technologies and comprehensive solutions, we are transforming our clients’ project economics, helping them unlock new possibi
Aker Solutions delivers integrated solutions, products and services to the global energy industry. We enable low-carbon oil and gas production and develop renewable solutions to meet future energy needs. By combining innovative digital solutions and predictable project execution we accelerate the tr

Tenaris is a leading supplier of tubes and related services for the world’s energy industry and certain other industrial applications. Our mission is to deliver value to our customers through product development, manufacturing excellence, and supply chain management. Tenaris employees around the wor

Besmindo Group is a leader in providing new tool joints; repair & redress of tool joints, pup joints, drill pipes, threads for tool joints and OCTG tubing. The mission is to continually provide these and other services by promoting a reputation for excellence and value while fully anticipating, then
Our motto “Growth is Life” aptly captures the ever-evolving spirit of Reliance. Our activities span hydrocarbon exploration and production, petroleum refining and marketing, petrochemicals, retail, and telecommunications. In each of these areas, we are committed to innovation-led, exponential growth
Weatherford International plc (Nasdaq: WFRD) is a leading global energy services company. Operating in approximately 75 countries, the Company answers the challenges of the energy industry with its global talent network of approximately 17,000 team members and approximately 350 operating locations,

We’re a leading producer of the energy and chemicals that drive global commerce and enhance the daily lives of people around the globe by continuing delivering an uninterrupted supply of energy to the world. Our resilience and agility has built one of the world’s largest integrated energy and chemi
At Enbridge, our goal is to be the first-choice energy delivery company in North America and beyond—for customers, communities, investors, regulators and policymakers, and employees. We also recognize the importance of a secure, reliable and affordable supply of energy, which we deliver every day th
.png)
Abu Dhabi state oil company ADNOC plans $150 billion of investment between 2026 and 2030, it said on Monday, seeking to maintain existing...
ADNOC partnered with Microsoft to get the views of 850 executives from places like TotalEnergies, OpenAI, and the IEA on AI and energy...
The latest Powering Possible report from Abu Dhabi National Oil Company (ADNOC) and Microsoft highlights that AI adoption is considered...
The second edition of the Powering Possible report highlights the opportunities and challenges of AI adoption in the energy sector.
The six listed subsidiaries of Abu Dhabi National Oil Company (Adnoc) plan to distribute $43 billion in dividends between 2025 and 2030.
Adnoc says it wants to build a “world-scale integrated gas portfolio” and the Abu Dhabi oil company is prepared to spend big to do so,...
The Investor Majlis provided insights into how the ADNOC ecosystem enables value creation across the Group's portfolio, including how ADNOC...
First published: 22-Sep-2025 07:28:27Staff WriterABU DHABI – The United Arab Emirates continues to consolidate its global leadership in...
UAE's G42 Group advances sovereign AI with a $340m ADNOC contract, new enterprise tools, Europe expansion and cultural tech projects.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of ADNOC Group is http://www.adnoc.ae.
According to Rankiteo, ADNOC Group’s AI-generated cybersecurity score is 782, reflecting their Fair security posture.
According to Rankiteo, ADNOC Group currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, ADNOC Group is not certified under SOC 2 Type 1.
According to Rankiteo, ADNOC Group does not hold a SOC 2 Type 2 certification.
According to Rankiteo, ADNOC Group is not listed as GDPR compliant.
According to Rankiteo, ADNOC Group does not currently maintain PCI DSS compliance.
According to Rankiteo, ADNOC Group is not compliant with HIPAA regulations.
According to Rankiteo,ADNOC Group is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
ADNOC Group operates primarily in the Oil and Gas industry.
ADNOC Group employs approximately 36,845 people worldwide.
ADNOC Group presently has no subsidiaries across any sectors.
ADNOC Group’s official LinkedIn profile has approximately 1,738,581 followers.
ADNOC Group is classified under the NAICS code 211, which corresponds to Oil and Gas Extraction.
Yes, ADNOC Group has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/adnoc-drilling.
Yes, ADNOC Group maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/adnocgroup.
As of December 11, 2025, Rankiteo reports that ADNOC Group has experienced 1 cybersecurity incidents.
ADNOC Group has an estimated 10,531 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Cyber Attack.
Title: BEC Fraud Targeting Middle Eastern Businesses
Description: A significant BEC fraud that targets Middle Eastern-based businesses and people has been discovered. The effort has grown to include a new group of phishing domains that were created using the same name patterns as a prior campaign that was detected in July. The collection of phishing websites uses several forms of baits, including phoney employment offers, investment possibilities, vendor registration, and contract bidding, to target contractors in the UAE. Ninety percent of the 35 phishing domains examined target the Emirates National Oil Company, Sharjah National Oil Corporation, and Abu Dhabi National Oil Company (ADNOC) (ENOC). In order to deceive users, some domains have simply an email server (often provided by Zoho) active, some have duplicated the content of reputable companies, and some domains reroute to reputable domains. Threat actors behind this campaign are deliberately purchasing and registering domains with keywords that are similar to those of domains belonging to real businesses. The campaign also makes use of pre-stored static web pages with comparable templates to make it resistant to takedowns. If a domain is banned, these templates are uploaded to another domain.
Type: BEC Fraud
Attack Vector: Phishing
Motivation: Financial Gain
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.
Identification of Attack Vectors: The company identifies the attack vectors used in incidents through Phishing Domains.

Entity Name: Emirates National Oil Company
Entity Type: Corporation
Industry: Oil and Gas
Location: United Arab Emirates

Entity Name: Sharjah National Oil Corporation
Entity Type: Corporation
Industry: Oil and Gas
Location: United Arab Emirates

Entity Name: Abu Dhabi National Oil Company (ADNOC)
Entity Type: Corporation
Industry: Oil and Gas
Location: United Arab Emirates

Entry Point: Phishing Domains
High Value Targets: Emirates National Oil Company, Sharjah National Oil Corporation, Abu Dhabi National Oil Company (Adnoc),
Data Sold on Dark Web: Emirates National Oil Company, Sharjah National Oil Corporation, Abu Dhabi National Oil Company (Adnoc),
Most Recent Entry Point: The most recent entry point used by an initial access broker was an Phishing Domains.
.png)
FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. Versions prior to 16.0.96 and 17.0.1 through 17.0.9 have a weak default password. By default, this is a 6 digit numeric value which can be brute forced. (This is the app_password parameter). Depending on local configuration, this password could be the extension, voicemail, user manager, DPMA or EPM phone admin password. This issue is fixed in versions 16.0.96 and 17.0.10.
Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided by the caller using PDO::prepare() + execute() without semantic restrictions. This is consistent with the name (“write tool”), but in an LLM/agent context it becomes a high-risk capability: prompt injection or indirect prompt manipulation can cause execution of destructive queries such as DROP TABLE, TRUNCATE, DELETE, ALTER, or privilege-related statements (subject to DB permissions). Deployments that expose an agent with MySQLWriteTool enabled to untrusted input and/or run the tool with a DB user that has broad privileges are impacted. This issue is fixed in version 2.8.12.
Neuron is a PHP framework for creating and orchestrating AI Agents. Versions 2.8.11 and below use MySQLSelectTool, which is vulnerable to Read-Only Bypass. MySQLSelectTool is intended to be a read-only SQL tool (e.g., for LLM agent querying, however, validation based on the first keyword (e.g., SELECT) and a forbidden-keyword list does not block file-writing constructs such as INTO OUTFILE / INTO DUMPFILE. As a result, an attacker who can influence the tool input (e.g., via prompt injection through a public agent endpoint) may write arbitrary files to the DB server if the MySQL/MariaDB account has the FILE privilege and server configuration permits writes to a useful location (e.g., a web-accessible directory). This issue is fixed in version 2.8.12.
Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race conditions may arise from concurrent requests using the ApiClient class. This could cause a status code or response header from one request’s response to influence another request’s response. This issue is fixed in version 20.0.1.
The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.