ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

From gaining new experiences in different roles to acquiring fresh knowledge and skills – at UBS we believe that you should never stop growing and learning because life never stops teaching. We know that it's our people – with their unique backgrounds, skills, experience levels and interests – who drive our ongoing success. Ready to be part of #teamUBS and make an impact? Find out more at ubs.com/careers. UBS works with individuals, families, institutions, and corporations around the world to help answer some of life's questions – whether through award winning wealth management advisory, investment banking and asset management expertise, or private and corporate banking services in Switzerland*. In June 2023, Credit Suisse became a UBS Group company. With our large and diverse team operating internationally, we have a presence in all major financial centers in more than 50 countries. Although we all come from different backgrounds and specializations, two things unite us: the conviction that we’re stronger together, and the will and curiosity to constantly innovate. That’s the key to us unlocking our full potential (and what we look for in everyone who joins us). It’s also why we’re regularly recognized as an attractive employer.* * Our awards https://www.ubs.com/awards Social Media Legal Terms: http://www.ubs.com/social-legal

UBS A.I CyberSecurity Scoring

UBS

Company Details

Linkedin ID:

ubs

Employees number:

118,118

Number of followers:

1,880,643

NAICS:

52

Industry Type:

Financial Services

Homepage:

ubs.com

IP Addresses:

362

Company ID:

UBS_2194882

Scan Status:

Completed

AI scoreUBS Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/ubs.jpeg
UBS Financial Services
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreUBS Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/ubs.jpeg
UBS Financial Services
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

UBS Company CyberSecurity News & History

Past Incidents
1
Attack Types
1
EntityTypeSeverityImpactSeenBlog DetailsIncident DetailsView
UBSRansomware8536/2025
Rankiteo Explanation :
Attack with significant impact with internal employee data leaks

Description: Global banking giant UBS has suffered a data breach following a cyber-attack on a third-party supplier. Information about 130,000 UBS employees, including their business contact details, job roles, locations, and floor information, was published on the dark web by a ransomware group called World Leaks. The breach did not impact customer data or operations, but the direct phone number of UBS CEO Sergio Ermotti was included in the published data.

UBS
Ransomware
Severity: 85
Impact: 3
Seen: 6/2025
Blog:
Rankiteo Explanation
Attack with significant impact with internal employee data leaks

Description: Global banking giant UBS has suffered a data breach following a cyber-attack on a third-party supplier. Information about 130,000 UBS employees, including their business contact details, job roles, locations, and floor information, was published on the dark web by a ransomware group called World Leaks. The breach did not impact customer data or operations, but the direct phone number of UBS CEO Sergio Ermotti was included in the published data.

Ailogo

UBS Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for UBS

Incidents vs Financial Services Industry Average (This Year)

UBS has 21.95% more incidents than the average of same-industry companies with at least one recorded incident.

Incidents vs All-Companies Average (This Year)

UBS has 29.87% more incidents than the average of all companies with at least one recorded incident.

Incident Types UBS vs Financial Services Industry Avg (This Year)

UBS reported 1 incidents this year: 0 cyber attacks, 1 ransomware, 0 vulnerabilities, 0 data breaches, compared to industry peers with at least 1 incident.

Incident History — UBS (X = Date, Y = Severity)

UBS cyber incidents detection timeline including parent company and subsidiaries

UBS Company Subsidiaries

SubsidiaryImage

From gaining new experiences in different roles to acquiring fresh knowledge and skills – at UBS we believe that you should never stop growing and learning because life never stops teaching. We know that it's our people – with their unique backgrounds, skills, experience levels and interests – who drive our ongoing success. Ready to be part of #teamUBS and make an impact? Find out more at ubs.com/careers. UBS works with individuals, families, institutions, and corporations around the world to help answer some of life's questions – whether through award winning wealth management advisory, investment banking and asset management expertise, or private and corporate banking services in Switzerland*. In June 2023, Credit Suisse became a UBS Group company. With our large and diverse team operating internationally, we have a presence in all major financial centers in more than 50 countries. Although we all come from different backgrounds and specializations, two things unite us: the conviction that we’re stronger together, and the will and curiosity to constantly innovate. That’s the key to us unlocking our full potential (and what we look for in everyone who joins us). It’s also why we’re regularly recognized as an attractive employer.* * Our awards https://www.ubs.com/awards Social Media Legal Terms: http://www.ubs.com/social-legal

Loading...
similarCompanies

UBS Similar Companies

Allianz

The Allianz Group is one of the world's leading insurers and asset managers with more than 100 million private and corporate customers in nearly 70 countries. We are proud to be the Worldwide Insurance Partner of the Olympic & Paralympic Movements from 2021 until 2032 and to be recognized as one of

DNB

We are here. So you can stay ahead. For nearly two hundred years we have acquired and shared knowledge, developed global networks and adapted to modern everyday life. To us, it is important to combine profitability with responsibility. DNB is Norway's largest financial services group and one of t

Shriram Finance Limited

Shriram Finance is the country’s biggest retail NBFC offering credit solutions for commercial vehicles, two-wheeler loans, car loans, home loans, gold loans, personal and small business loans. We are part of the 50-year-old Shriram Group, a financial conglomerate that has emerged as a trusted partne

SBI Card

SBI Card was launched in 1998 with the State Bank of India, India's largest bank, as the majority stakeholder. In March 2020, SBI Card was listed on BSE and NSE. Today, SBI Card is India’s largest pure-play credit card issuer with over 19.5 million cards in force, as of September 2024. Its wide arra

Bloomberg

Bloomberg is a global leader in business and financial information, delivering trusted data, news, and insights that bring transparency and efficiency, and fairness to markets. We help connect influential communities across the global financial ecosystem via reliable technology solutions that enable

Indiabulls Group

Founded in the year 2000, the Indiabulls Group is one of the country’s leading business houses with interest across sectors like financial services, real estate, pharmaceutical and LED. Headquartered in Gurgaon, all the group companies are listed on the Bombay Stock Exchange, and the National Stock

American Express

At American Express, we know that with the right backing, people and businesses have the power to progress in incredible ways. Whether we’re supporting our customers’ financial confidence to move ahead, taking commerce to new heights, or encouraging people to explore the world, our colleagues are co

CIMB Group is a leading ASEAN universal bank, one of the largest Asian investment banks and one of the world's largest Islamic banks. We are headquartered in Kuala Lumpur, Malaysia and offer consumer banking, commercial banking, wholesale banking, Islamic banking, and asset management products and

Morgan Stanley

Morgan Stanley (NYSE: MS) is a leading global financial services firm providing a wide range of investment banking, securities, wealth management and investment management services. With offices in 42 countries, our firm's employees serve clients worldwide including corporations, governments, instit

newsone

UBS CyberSecurity News

December 04, 2025 10:32 PM
UBS Stock News Today, Dec 4: ATM Heist in Gland Sparks Security Concerns

On December 4, a daring ATM heist at a UBS branch in Gland shook the Swiss banking community, highlighting potential vulnerabilities in...

December 04, 2025 11:08 AM
UBS Billionaire Ambitions Report 2025: The rise of a new generation

Dubai/United Arab Emirates – UBS, the leading and truly global wealth manager, today announced the publication of the 11th UBS Billionaire...

November 18, 2025 08:00 AM
Cyber Security: an investment opportunity | UBS Switzerland

Invest in the future of cybersecurity. Seize the opportunity to participate in the growth potential of the international cybersecurity industry.

November 18, 2025 08:00 AM
UBS GWM appoints Borja Martinez-Laredo to head Abu Dhabi office

UBS Global Wealth Management (GWM) Middle East has appointed Borja Martinez-Laredo as Location Head of its newly launched Abu Dhabi office,...

November 14, 2025 04:52 PM
UBS spotlights 30 disrupters for the next decade

UBS has unveiled a curated list of 30 companies it believes are best positioned to thrive over the coming decade, emphasizing that the next wave of market...

November 10, 2025 08:00 AM
UBS sets S&P 500's 2026 year-end target at 7,500 on AI-driven rally

Wall Street's artificial intelligence-driven rally will extend into 2026, UBS Global Research said on Monday, as the brokerage set the S&P...

November 03, 2025 02:25 PM
Cisco Systems upgraded to Buy due to role in AI infrastructure: UBS

Cisco Systems (CSCO) was upgraded to Buy from Neutral by UBS due to its critical role in the buildout of artificial intelligence infrastructure.

November 03, 2025 08:00 AM
UBS faces OECD scrutiny over human rights risks in passive investments

Investigative body cautions Swiss lender after complaint over its holdings in two US private prisons.

October 23, 2025 07:00 AM
China moves to boost AI oversight with focus on safety, data protection

China's Cybersecurity Law: China's proposed AI law aims to boost research, improve ethics, strengthen risk checks and enhance safety...

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

UBS CyberSecurity History Information

Official Website of UBS

The official website of UBS is http://www.ubs.com/about.

UBS’s AI-Generated Cybersecurity Score

According to Rankiteo, UBS’s AI-generated cybersecurity score is 759, reflecting their Fair security posture.

How many security badges does UBS’ have ?

According to Rankiteo, UBS currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does UBS have SOC 2 Type 1 certification ?

According to Rankiteo, UBS is not certified under SOC 2 Type 1.

Does UBS have SOC 2 Type 2 certification ?

According to Rankiteo, UBS does not hold a SOC 2 Type 2 certification.

Does UBS comply with GDPR ?

According to Rankiteo, UBS is not listed as GDPR compliant.

Does UBS have PCI DSS certification ?

According to Rankiteo, UBS does not currently maintain PCI DSS compliance.

Does UBS comply with HIPAA ?

According to Rankiteo, UBS is not compliant with HIPAA regulations.

Does UBS have ISO 27001 certification ?

According to Rankiteo,UBS is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of UBS

UBS operates primarily in the Financial Services industry.

Number of Employees at UBS

UBS employs approximately 118,118 people worldwide.

Subsidiaries Owned by UBS

UBS presently has no subsidiaries across any sectors.

UBS’s LinkedIn Followers

UBS’s official LinkedIn profile has approximately 1,880,643 followers.

NAICS Classification of UBS

UBS is classified under the NAICS code 52, which corresponds to Finance and Insurance.

UBS’s Presence on Crunchbase

Yes, UBS has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/ubs.

UBS’s Presence on LinkedIn

Yes, UBS maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/ubs.

Cybersecurity Incidents Involving UBS

As of December 11, 2025, Rankiteo reports that UBS has experienced 1 cybersecurity incidents.

Number of Peer and Competitor Companies

UBS has an estimated 30,346 peer or competitor companies worldwide.

What types of cybersecurity incidents have occurred at UBS ?

Incident Types: The types of cybersecurity incidents that have occurred include Ransomware.

How does UBS detect and respond to cybersecurity incidents ?

Detection and Response: The company detects and responds to cybersecurity incidents through an containment measures with strengthened security of relevant systems..

Incident Details

Can you provide details on each incident ?

Incident : Data Breach

Title: UBS Data Breach via Third-Party Supplier

Description: Global banking giant UBS has suffered a data breach following a cyber-attack on a third-party supplier, Chain IQ. Information about 130,000 UBS employees was published on the dark web by a ransomware group called World Leaks. The data included business contact details, job roles, and locations. UBS confirmed that no client data was affected.

Date Detected: 2023-06-12

Date Publicly Disclosed: 2023-06-12

Type: Data Breach

Attack Vector: Third-party supplier compromise

Threat Actor: World Leaks (Hunters International)

Motivation: Data exfiltration and potential ransom demand

What are the most common types of attacks the company has faced ?

Common Attack Types: The most common types of attacks the company has faced is Ransomware.

Impact of the Incidents

What was the impact of each incident ?

Incident : Data Breach UBS604061925

Data Compromised: Business contact details, Job roles, Locations

What types of data are most commonly compromised in incidents ?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Business Contact Details, Job Roles, Locations and .

Which entities were affected by each incident ?

Incident : Data Breach UBS604061925

Entity Name: UBS

Entity Type: Bank

Industry: Financial Services

Location: Switzerland

Incident : Data Breach UBS604061925

Entity Name: Pictet

Entity Type: Bank

Industry: Financial Services

Location: Switzerland

Incident : Data Breach UBS604061925

Entity Name: Chain IQ

Entity Type: Procurement Service Provider

Industry: Services

Location: Switzerland

Response to the Incidents

What measures were taken in response to each incident ?

Incident : Data Breach UBS604061925

Containment Measures: Strengthened security of relevant systems

Data Breach Information

What type of data was compromised in each breach ?

Incident : Data Breach UBS604061925

Type of Data Compromised: Business contact details, Job roles, Locations

Number of Records Exposed: 130000

How does the company handle incidents involving personally identifiable information (PII) ?

Handling of PII Incidents: The company handles incidents involving personally identifiable information (PII) through by strengthened security of relevant systems and .

Ransomware Information

Was ransomware involved in any of the incidents ?

Incident : Data Breach UBS604061925

Data Exfiltration: True

References

Where can I find more information about each incident ?

Incident : Data Breach UBS604061925

Source: Infosecurity

Where can stakeholders find additional resources on cybersecurity best practices ?

Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Infosecurity.

Investigation Status

What is the current status of the investigation for each incident ?

Incident : Data Breach UBS604061925

Investigation Status: Ongoing

Additional Questions

General Information

Who was the attacking group in the last incident ?

Last Attacking Group: The attacking group in the last incident was an World Leaks (Hunters International).

Incident Details

What was the most recent incident detected ?

Most Recent Incident Detected: The most recent incident detected was on 2023-06-12.

What was the most recent incident publicly disclosed ?

Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2023-06-12.

Impact of the Incidents

What was the most significant data compromised in an incident ?

Most Significant Data Compromised: The most significant data compromised in an incident were Business contact details, Job roles, Locations and .

Response to the Incidents

What containment measures were taken in the most recent incident ?

Containment Measures in Most Recent Incident: The containment measures taken in the most recent incident was Strengthened security of relevant systems.

Data Breach Information

What was the most sensitive data compromised in a breach ?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Job roles, Business contact details and Locations.

What was the number of records exposed in the most significant breach ?

Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 130.0.

References

What is the most recent source of information about an incident ?

Most Recent Source: The most recent source of information about an incident is Infosecurity.

Investigation Status

What is the current status of the most recent investigation ?

Current Status of Most Recent Investigation: The current status of the most recent investigation is Ongoing.

cve

Latest Global CVEs (Not Company-Specific)

Description

FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. Versions prior to 16.0.96 and 17.0.1 through 17.0.9 have a weak default password. By default, this is a 6 digit numeric value which can be brute forced. (This is the app_password parameter). Depending on local configuration, this password could be the extension, voicemail, user manager, DPMA or EPM phone admin password. This issue is fixed in versions 16.0.96 and 17.0.10.

Risk Information
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided by the caller using PDO::prepare() + execute() without semantic restrictions. This is consistent with the name (“write tool”), but in an LLM/agent context it becomes a high-risk capability: prompt injection or indirect prompt manipulation can cause execution of destructive queries such as DROP TABLE, TRUNCATE, DELETE, ALTER, or privilege-related statements (subject to DB permissions). Deployments that expose an agent with MySQLWriteTool enabled to untrusted input and/or run the tool with a DB user that has broad privileges are impacted. This issue is fixed in version 2.8.12.

Risk Information
cvss3
Base: 9.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Description

Neuron is a PHP framework for creating and orchestrating AI Agents. Versions 2.8.11 and below use MySQLSelectTool, which is vulnerable to Read-Only Bypass. MySQLSelectTool is intended to be a read-only SQL tool (e.g., for LLM agent querying, however, validation based on the first keyword (e.g., SELECT) and a forbidden-keyword list does not block file-writing constructs such as INTO OUTFILE / INTO DUMPFILE. As a result, an attacker who can influence the tool input (e.g., via prompt injection through a public agent endpoint) may write arbitrary files to the DB server if the MySQL/MariaDB account has the FILE privilege and server configuration permits writes to a useful location (e.g., a web-accessible directory). This issue is fixed in version 2.8.12.

Risk Information
cvss3
Base: 8.2
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
Description

Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race conditions may arise from concurrent requests using the ApiClient class. This could cause a status code or response header from one request’s response to influence another request’s response. This issue is fixed in version 20.0.1.

Risk Information
cvss3
Base: 8.4
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:L
Description

The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.

Risk Information
cvss3
Base: 5.4
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:N

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=ubs' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge