Active signals
29
6 resolved
Cyber overlay
Active signals feed each entity's cyber exposure factor in the annual priority score; every number traces to signal records.
Active signals
29
6 resolved
Critical / high
20
of active signals
Exploited in the wild
2
active signals
Internet exposed
9
active signals
Entities affected
18
of 30 in universe
Entities with active signals, ranked by their cyber exposure score factor.
| Entity | Critical | High | Moderate | Low | Exploited | Cyber exposure score |
|---|---|---|---|---|---|---|
| Digital Onboarding Journey 2 active signals | 1 | 1 | – | – | 1 | 86 |
| Cloud Infrastructure Program 3 active signals | 1 | 2 | – | – | – | 83 |
| Enterprise IAM Platform 2 active signals | 1 | 1 | – | – | 1 | 78 |
| Customer Data Domain 3 active signals | 1 | 1 | 1 | – | – | 65 |
| Mobile Banking App 2 active signals | – | 1 | 1 | – | – | 46 |
| Core Banking Platform 2 active signals | – | 2 | – | – | – | 40 |
| Generative AI Knowledge Assistant 2 active signals | – | 1 | 1 | – | – | 30 |
| Managed Security Services Provider 2 active signals | – | 1 | 1 | – | – | 30 |
| Enterprise Data Warehouse 2 active signals | – | 1 | 1 | – | – | 30 |
| HR Information System 1 active signal | – | 1 | – | – | – | 28 |
| Loan Origination System 1 active signal | – | 1 | – | – | – | 28 |
| Payment Operations 1 active signal | – | 1 | – | – | – | 20 |
| Credit Decisioning Model 1 active signal | – | 1 | – | – | – | 20 |
| ATM Fleet Operations 1 active signal | – | 1 | – | – | – | 20 |
| Cloud Email & Collaboration Suite 1 active signal | – | – | 1 | – | – | 18 |
| Fraud Detection Model 1 active signal | – | – | 1 | – | – | 10 |
| Data Center Operations 1 active signal | – | – | 1 | – | – | 10 |
| AML Transaction Monitoring 1 active signal | – | – | 1 | – | – | 10 |
| Signal | Entity | Type | Severity | Detected | Status | Score points |
|---|---|---|---|---|---|---|
HRIS test tenant reachable without SSO Attack Surface Monitor · internet exposed | HR Information System | external exposure | HIGH | 2026-05-21 | Active | +28 |
Developers with standing production access to core Identity Analytics | Core Banking Platform | iam weakness | HIGH | 2026-05-14 | Active | +20 |
CVE-2026-0788 in origination platform framework Vulnerability Scanner · internet exposed | Loan Origination System |
| cve |
| HIGH |
| 2026-05-06 |
| Active |
| +28 |
CVE-2026-0412 in mobile SDK dependency SCA Pipeline · internet exposed | Mobile Banking App | cve | HIGH | 2026-04-30 | Active | +28 |
PII columns unmasked in analytics sandbox Data Discovery | Enterprise Data Warehouse | data risk | HIGH | 2026-04-27 | Active | +20 |
MSSP disclosed security incident affecting client portal TPRM Monitoring | Managed Security Services Provider | vendor event | HIGH | 2026-04-18 | Active | +20 |
OWASP ASVS session management gaps in onboarding flow Security Review · internet exposed | Digital Onboarding Journey | framework gap | HIGH | 2026-04-14 | Active | +28 |
Overly broad cloud IAM roles in production accounts CSPM | Cloud Infrastructure Program | iam weakness | HIGH | 2026-04-12 | Active | +20 |
Stale privileged accounts without rotation Identity Analytics | Enterprise IAM Platform | iam weakness | HIGH | 2026-04-08 | Active | +20 |
Credit model missing fairness test evidence AI Governance Register | Credit Decisioning Model | ai governance gap | HIGH | 2026-04-02 | Active | +20 |
Customer data copied to non-production without masking Data Discovery | Customer Data Domain | data risk | HIGH | 2026-03-28 | Active | +20 |
Payment operators with conflicting duties in access model Identity Analytics | Payment Operations | iam weakness | HIGH | 2026-03-17 | Active | +20 |
CSA CCM logging domain controls unimplemented Compliance Mapper | Cloud Infrastructure Program | framework gap | HIGH | 2026-03-15 | Active | +20 |
ATM fleet running unsupported OS build Asset Inventory | ATM Fleet Operations | vuln | HIGH | 2026-03-03 | Active | +20 |
Unsupported middleware version on core batch servers Vulnerability Scanner | Core Banking Platform | vuln | HIGH | 2026-02-28 | Active | +20 |
No model inventory entry for GenAI assistant AI Governance Register | Generative AI Knowledge Assistant | ai governance gap | HIGH | 2026-02-14 | Active | +20 |
CVE-2026-1187 in SSO federation library Vulnerability Scanner · internet exposed | Enterprise IAM Platform | cve | HIGH | 2026-03-22 | Resolved · 2026-04-15 | 0 |
Loan servicer ransomware event at subcontractor TPRM Monitoring · exploited in the wild | Third-Party Loan Servicer | vendor event | HIGH | 2026-01-25 | Resolved · 2026-03-10 | 0 |