Company Details
ohsu
16,777
96,908
62
ohsu.edu
0
ORE_1404184
In-progress

Oregon Health & Science University Company CyberSecurity Posture
ohsu.eduAt OHSU, we deliver breakthroughs for better health. We're driven by the belief that better health starts with innovations in the lab, in the classroom, at the bedside and in our communities. From cancer to Alzheimer's to cardiovascular care, we collaborate every day to identify and deliver new ways to understand disease, treat illness and train the next generation of scientists and health professionals. It takes all of us - from scientists, clinicians and nurses to a top-notch professional staff. Join us.
Company Details
ohsu
16,777
96,908
62
ohsu.edu
0
ORE_1404184
In-progress
Between 750 and 799

OHSU Global Score (TPRM)XXXX



No incidents recorded for Oregon Health & Science University in 2025.
No incidents recorded for Oregon Health & Science University in 2025.
No incidents recorded for Oregon Health & Science University in 2025.
OHSU cyber incidents detection timeline including parent company and subsidiaries

At OHSU, we deliver breakthroughs for better health. We're driven by the belief that better health starts with innovations in the lab, in the classroom, at the bedside and in our communities. From cancer to Alzheimer's to cardiovascular care, we collaborate every day to identify and deliver new ways to understand disease, treat illness and train the next generation of scientists and health professionals. It takes all of us - from scientists, clinicians and nurses to a top-notch professional staff. Join us.


Every day, 119,000 compassionate caregivers serve patients and communities through Providence St. Joseph Health, a national, Catholic, not-for-profit health system, driven by a belief that health is a human right. Rooted in the founding missions of the Sisters of Providence and the Sisters of St.
The International SOS Group of Companies has been in the business of saving lives for over 40 years. Protecting global workforces from health and security threats, we deliver customised health, security risk management and wellbeing solutions to fuel our clients’ growth and productivity. In the even

Be at the heart of exceptional care. Team MHS Florida is an award-winning group of friends and colleagues at one of the largest not-for-profit health systems in the nation. We're 17,000 strong, advancing towards a brighter future together. We're passionate about the work we do, delivering deep, pe

Bupa's purpose is helping people live longer, healthier, happier lives and making a better world. We are an international healthcare company serving over 38 million customers worldwide. With no shareholders, we reinvest profits into providing more and better healthcare for the benefit of current an

Atrium Health, part of Advocate Health, is redefining how, when and where care is delivered. We are rethinking methods of care delivery to reach more people and bringing human kindness to every step of their health journey. Our dedication to elevating health care for every individual, every teammate

UC San Diego Health and Health Sciences has been caring for the community and producing physicians for more than 50 years. In 1966, we established our first medical center. Two years later, in 1968, UC San Diego School of Medicine opened for business. Today, UC San Diego Health is the only academic
Cardinal Health is a distributor of pharmaceuticals, a global manufacturer and distributor of medical and laboratory products, and a provider of performance and data solutions for healthcare facilities. With more than 50 years in business, operations in more than 30 countries and approximately 48,00

Siemens Healthineers is a leading medtech company with over 125 years of experience. We pioneer breakthroughs in healthcare. For everyone. Everywhere. Sustainably. Our portfolio, spanning in vitro and in vivo diagnostics to image-guided therapy and cancer care, is crucial for clinical decision-makin
Select Medical made a commitment more than 20 years ago to deliver an exceptional patient care experience that promotes healing and recovery in a compassionate environment. We have honored that promise by helping define the nation's standard of excellence in specialized hospital and rehabilitative c
.png)
PORTLAND, Ore. (KTVZ) — Families, friends and Thanksgiving guests can stay safe from foodborne germs by practicing four simple steps this...
(update: adding comments from Alex Bradley). BEND, Ore. (KTVZ) - An Austin man walking more than 2,500 miles to honor his best friend and...
Asia Rubio, the lead lactation consultant for Sacred Roots, a Black Parent Initiative program that provides doula and lactation support for...
Oregon Health & Science University has tapped a seasoned West Coast health executive to take the helm of its health system after more than a...
Portland, OR – As families across Oregon gather indoors for Thanksgiving, state health officials are sounding the alarm on a silent, invisible killer that.
The Oregon Health Authority should immediately announce a program to improve the culture among workers at the Oregon State Hospital.
A step as simple at sticking to the same bedtime each night could improve a person's blood pressure, new research suggests.
A new report shows diabetes affects nearly 10% of Oregonians, with a quarter of local Oregon Health Plan patients facing hard-to-manage...
BEND, Ore. (KTVZ) -- Diabetes is one of the most common health challenges in Central Oregon. To coincide with Diabetes Awareness Month,...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Oregon Health & Science University is http://ohsu.edu.
According to Rankiteo, Oregon Health & Science University’s AI-generated cybersecurity score is 784, reflecting their Fair security posture.
According to Rankiteo, Oregon Health & Science University currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Oregon Health & Science University is not certified under SOC 2 Type 1.
According to Rankiteo, Oregon Health & Science University does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Oregon Health & Science University is not listed as GDPR compliant.
According to Rankiteo, Oregon Health & Science University does not currently maintain PCI DSS compliance.
According to Rankiteo, Oregon Health & Science University is not compliant with HIPAA regulations.
According to Rankiteo,Oregon Health & Science University is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Oregon Health & Science University operates primarily in the Hospitals and Health Care industry.
Oregon Health & Science University employs approximately 16,777 people worldwide.
Oregon Health & Science University presently has no subsidiaries across any sectors.
Oregon Health & Science University’s official LinkedIn profile has approximately 96,908 followers.
Oregon Health & Science University is classified under the NAICS code 62, which corresponds to Health Care and Social Assistance.
No, Oregon Health & Science University does not have a profile on Crunchbase.
Yes, Oregon Health & Science University maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/ohsu.
As of December 11, 2025, Rankiteo reports that Oregon Health & Science University has not experienced any cybersecurity incidents.
Oregon Health & Science University has an estimated 30,929 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Oregon Health & Science University has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. Versions prior to 16.0.96 and 17.0.1 through 17.0.9 have a weak default password. By default, this is a 6 digit numeric value which can be brute forced. (This is the app_password parameter). Depending on local configuration, this password could be the extension, voicemail, user manager, DPMA or EPM phone admin password. This issue is fixed in versions 16.0.96 and 17.0.10.
Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided by the caller using PDO::prepare() + execute() without semantic restrictions. This is consistent with the name (“write tool”), but in an LLM/agent context it becomes a high-risk capability: prompt injection or indirect prompt manipulation can cause execution of destructive queries such as DROP TABLE, TRUNCATE, DELETE, ALTER, or privilege-related statements (subject to DB permissions). Deployments that expose an agent with MySQLWriteTool enabled to untrusted input and/or run the tool with a DB user that has broad privileges are impacted. This issue is fixed in version 2.8.12.
Neuron is a PHP framework for creating and orchestrating AI Agents. Versions 2.8.11 and below use MySQLSelectTool, which is vulnerable to Read-Only Bypass. MySQLSelectTool is intended to be a read-only SQL tool (e.g., for LLM agent querying, however, validation based on the first keyword (e.g., SELECT) and a forbidden-keyword list does not block file-writing constructs such as INTO OUTFILE / INTO DUMPFILE. As a result, an attacker who can influence the tool input (e.g., via prompt injection through a public agent endpoint) may write arbitrary files to the DB server if the MySQL/MariaDB account has the FILE privilege and server configuration permits writes to a useful location (e.g., a web-accessible directory). This issue is fixed in version 2.8.12.
Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race conditions may arise from concurrent requests using the ApiClient class. This could cause a status code or response header from one request’s response to influence another request’s response. This issue is fixed in version 20.0.1.
The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.