Company Details
colliers
25,427
920,654
None
ow.ly
0
COL_8777133
In-progress

Colliers Company CyberSecurity Posture
ow.lyColliers (NASDAQ, TSX: CIGI) is a leading diversified professional services and investment management company. With operations in 68 countries, our 19,000 enterprising professionals work collaboratively to provide expert real estate and investment advice to clients. For more than 29 years, our experienced leadership with significant inside ownership has delivered compound annual investment returns of approximately 20% for shareholders. With annual revenues of $4.3 billion and $96 billion of assets under management, Colliers maximizes the potential of property and real assets to accelerate the success of our clients, our investors and our people. Learn more at corporate.colliers.com, X @Colliers or LinkedIn.
Company Details
colliers
25,427
920,654
None
ow.ly
0
COL_8777133
In-progress
Between 750 and 799

Colliers Global Score (TPRM)XXXX

Description: Colliers International Group, a Toronto-based commercial real estate services firm, suffered a cyber attack after IT World Canada confronted the company about a listing on the dark web by the Netflix ransomware gang – a listing which suggests that the firm was hit by the gang and that Colliers’ files were copied. Colliers conducted an investigation into the attack with the support of cybersecurity experts to limit the attack’s effect.


No incidents recorded for Colliers in 2025.
No incidents recorded for Colliers in 2025.
No incidents recorded for Colliers in 2025.
Colliers cyber incidents detection timeline including parent company and subsidiaries

Colliers (NASDAQ, TSX: CIGI) is a leading diversified professional services and investment management company. With operations in 68 countries, our 19,000 enterprising professionals work collaboratively to provide expert real estate and investment advice to clients. For more than 29 years, our experienced leadership with significant inside ownership has delivered compound annual investment returns of approximately 20% for shareholders. With annual revenues of $4.3 billion and $96 billion of assets under management, Colliers maximizes the potential of property and real assets to accelerate the success of our clients, our investors and our people. Learn more at corporate.colliers.com, X @Colliers or LinkedIn.


MEB’S ability to create value for both clients and residents has been the cornerstone of our success. Scott, Libby, Mark, and Jodi have been active in the real estate management industry and have over 125 years of combined experience. With their breadth and depth of knowledge, MEB is the “go-to” co
We’re a leading professional services firm that specializes in real estate and investment management. JLL shapes the future of real estate for a better world by using the most advanced technology to create rewarding opportunities, amazing spaces and sustainable real estate solutions for our clients,

SM Prime Holdings, Inc. (SMPH) is one of the largest integrated property developers in Southeast Asia that offers innovative and sustainable lifestyle cities with the development of malls, residences, offices, hotels and convention centers. It is also the largest, in terms of asset, in the Philippin

Since 1969, Weichert Realtors has grown from a single office into one of the nation's leading providers of real estate and related services. Their success is rooted in their customer-first philosophy, making every organizational decision based on building trust and sustaining amazing experiences at

Compass is a real estate technology company with a powerful end-to-end platform that supports the entire buying and selling workflow. We deliver an incomparable experience to both agents and their clients all in service of the Compass mission: to help everyone find their place in the world. Founded
As one of the leading global real estate franchisors, RE/MAX, LLC is a subsidiary of RE/MAX Holdings (NYSE: RMAX) with more than 140,000 agents in almost 9,000 offices and a presence in more than 110 countries and territories. Nobody in the world sells more real estate than RE/MAX, as measured by

Savills is a global real estate services provider with a network of more than 40,000 people in over 700 offices across the Americas, Europe, Asia Pacific, Africa and the Middle East. A FTSE 250 company (LON: SVS) headquartered in London, Savills advises corporate, institutional and private clients w
IWG is leading the workspace revolution. Our companies help more than 2.5 million people and their businesses to work more productively. We do so by providing a choice of professional, inspiring and collaborative workspaces, communities and services. Our customers are start-ups, small and medium-s

Forbes 500 500 Projects Globally Top 10 Real Estate Company in China Over the past 20 years, Country Garden has been a practitioner in China's urbanization, bringing modernization to landscape and improving the quality of people's lives. Besides Mainland China, Country Garden has also been act
.png)
India's real estate sector saw a 9% year-on-year decline in institutional investments in 2025, totaling $4.3 billion, according to Colliers.
PMCs now have an opportunity to elevate their services – leveraging data and automation to improve transparency, enhance decision-making and...
India's commercial office market is being anchored by the technology sector, which drove nearly 40% of all Grade A conventional office...
Colliers has hired broker Clayton Jones as it beefs up its Silicon Valley staff in preparation for an expected regional real estate comeback...
TALLAHASSEE, Florida — State officials leased property back to a company associated with the historically powerful Collier family for less...
In its newly released Global Tech Markets 2025 report, Colliers ranks London as only behind the San Francisco Bay area as a top talent...
Singapore has cemented its position as one of the world's leading hubs for tech talent, ranking fourth globally in a talent acquisition...
As the search for tech talent intensifies, companies are deciding to invest more in regions that offer “more abundant and affordable tech...
Number of new AI job listings surging; competition for data scientists, information security analysts heating up.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Colliers is https://ow.ly/gksi50Rpork.
According to Rankiteo, Colliers’s AI-generated cybersecurity score is 777, reflecting their Fair security posture.
According to Rankiteo, Colliers currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Colliers is not certified under SOC 2 Type 1.
According to Rankiteo, Colliers does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Colliers is not listed as GDPR compliant.
According to Rankiteo, Colliers does not currently maintain PCI DSS compliance.
According to Rankiteo, Colliers is not compliant with HIPAA regulations.
According to Rankiteo,Colliers is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Colliers operates primarily in the Real Estate industry.
Colliers employs approximately 25,427 people worldwide.
Colliers presently has no subsidiaries across any sectors.
Colliers’s official LinkedIn profile has approximately 920,654 followers.
Colliers is classified under the NAICS code None, which corresponds to Others.
Yes, Colliers has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/colliers-international.
Yes, Colliers maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/colliers.
As of December 11, 2025, Rankiteo reports that Colliers has experienced 1 cybersecurity incidents.
Colliers has an estimated 29,505 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Ransomware.
Detection and Response: The company detects and responds to cybersecurity incidents through an third party assistance with cybersecurity experts..
Title: Colliers International Group Data Breach
Description: Colliers International Group, a Toronto-based commercial real estate services firm, suffered a cyber attack after IT World Canada confronted the company about a listing on the dark web by the Netflix ransomware gang – a listing which suggests that the firm was hit by the gang and that Colliers’ files were copied.
Type: Data Breach, Ransomware
Threat Actor: Netflix ransomware gang
Motivation: Data Exfiltration, Ransom
Common Attack Types: The most common types of attacks the company has faced is Ransomware.

Entity Name: Colliers International Group
Entity Type: Company
Industry: Commercial Real Estate Services
Location: Toronto

Third Party Assistance: Cybersecurity experts
Third-Party Assistance: The company involves third-party assistance in incident response through Cybersecurity experts.

Data Exfiltration: Yes

Source: IT World Canada
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: IT World Canada.

Investigation Status: Investigation conducted
Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as Cybersecurity experts.
Last Attacking Group: The attacking group in the last incident was an Netflix ransomware gang.
Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was Cybersecurity experts.
Most Recent Source: The most recent source of information about an incident is IT World Canada.
Current Status of Most Recent Investigation: The current status of the most recent investigation is Investigation conducted.
.png)
FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. Versions prior to 16.0.96 and 17.0.1 through 17.0.9 have a weak default password. By default, this is a 6 digit numeric value which can be brute forced. (This is the app_password parameter). Depending on local configuration, this password could be the extension, voicemail, user manager, DPMA or EPM phone admin password. This issue is fixed in versions 16.0.96 and 17.0.10.
Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided by the caller using PDO::prepare() + execute() without semantic restrictions. This is consistent with the name (“write tool”), but in an LLM/agent context it becomes a high-risk capability: prompt injection or indirect prompt manipulation can cause execution of destructive queries such as DROP TABLE, TRUNCATE, DELETE, ALTER, or privilege-related statements (subject to DB permissions). Deployments that expose an agent with MySQLWriteTool enabled to untrusted input and/or run the tool with a DB user that has broad privileges are impacted. This issue is fixed in version 2.8.12.
Neuron is a PHP framework for creating and orchestrating AI Agents. Versions 2.8.11 and below use MySQLSelectTool, which is vulnerable to Read-Only Bypass. MySQLSelectTool is intended to be a read-only SQL tool (e.g., for LLM agent querying, however, validation based on the first keyword (e.g., SELECT) and a forbidden-keyword list does not block file-writing constructs such as INTO OUTFILE / INTO DUMPFILE. As a result, an attacker who can influence the tool input (e.g., via prompt injection through a public agent endpoint) may write arbitrary files to the DB server if the MySQL/MariaDB account has the FILE privilege and server configuration permits writes to a useful location (e.g., a web-accessible directory). This issue is fixed in version 2.8.12.
Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race conditions may arise from concurrent requests using the ApiClient class. This could cause a status code or response header from one request’s response to influence another request’s response. This issue is fixed in version 20.0.1.
The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.