Company Details
adnocgroup
49,223
2,396,892
211
adnoc.ae
0
ADN_1825117
In-progress


ADNOC Group Vendor Cyber Rating & Cyber Score
adnoc.aeWe are one of the world's leading energy producers, and a primary catalyst for Abu Dhabi’s growth and diversification. We operate across the entire hydrocarbon value chain, through a network of fully-integrated businesses, with interests that range from exploration, production, storage, refining and distribution, to the development of a wide-range of petrochemical products. Since 1971, we have created thousands of jobs, driven the growth of a diverse knowledge-based economy, and played a key role in Abu Dhabi’s global emergence. Today, we continue to look for new and innovative ways to maximize the value of our resources, pioneering those approaches and technologies that will ensure we are able to meet the demands of an ever-changing energy market, and continue to have a positive impact on the Abu Dhabi economy for generations to come.
Company Details
adnocgroup
49,223
2,396,892
211
adnoc.ae
0
ADN_1825117
In-progress
Between 750 and 799

ADNOC Group Global Score (TPRM)XXXX

Description: A significant BEC fraud that targets Middle Eastern-based businesses and people has been discovered. The effort has grown to include a new group of phishing domains that were created using the same name patterns as a prior campaign that was detected in July. The collection of phishing websites uses several forms of baits, including phoney employment offers, investment possibilities, vendor registration, and contract bidding, to target contractors in the UAE. Ninety percent of the 35 phishing domains examined target the Emirates National Oil Company, Sharjah National Oil Corporation, and Abu Dhabi National Oil Company (ADNOC) (ENOC). In order to deceive users, some domains have simply an email server (often provided by Zoho) active, some have duplicated the content of reputable companies, and some domains reroute to reputable domains. Threat actors behind this campaign are deliberately purchasing and registering domains with keywords that are similar to those of domains belonging to real businesses. The campaign also makes use of pre-stored static web pages with comparable templates to make it resistant to takedowns. If a domain is banned, these templates are uploaded to another domain.


No incidents recorded for ADNOC Group in 2026.
No incidents recorded for ADNOC Group in 2026.
No incidents recorded for ADNOC Group in 2026.
ADNOC Group cyber incidents detection timeline including parent company and subsidiaries

We are one of the world's leading energy producers, and a primary catalyst for Abu Dhabi’s growth and diversification. We operate across the entire hydrocarbon value chain, through a network of fully-integrated businesses, with interests that range from exploration, production, storage, refining and distribution, to the development of a wide-range of petrochemical products. Since 1971, we have created thousands of jobs, driven the growth of a diverse knowledge-based economy, and played a key role in Abu Dhabi’s global emergence. Today, we continue to look for new and innovative ways to maximize the value of our resources, pioneering those approaches and technologies that will ensure we are able to meet the demands of an ever-changing energy market, and continue to have a positive impact on the Abu Dhabi economy for generations to come.

Marathon Petroleum Corporation (MPC) is a leading, integrated, downstream and midstream energy company headquartered in Findlay, Ohio. The company operates the nation's largest refining system. MPC's marketing system includes branded locations across the United States, including Marathon brand retai
At Enbridge, our goal is to be the first-choice energy delivery company in North America and beyond—for customers, communities, investors, regulators and policymakers, and employees. We also recognize the importance of a secure, reliable and affordable supply of energy, which we deliver every day th

We're Equinor, an international energy company with a proud history. Formerly Statoil, we are 20,000 committed colleagues developing oil, gas, wind and solar energy in more than 30 countries worldwide. We’re the largest operator in Norway, among the world’s largest offshore operators, and a growing
Transocean is a leading international provider of offshore contract drilling services for oil and gas wells. The company specializes in technically demanding sectors of the global offshore drilling business, with a particular focus on ultra-deepwater and harsh environment drilling services and opera

Tenaris is a leading supplier of tubes and related services for the world’s energy industry and certain other industrial applications. Our mission is to deliver value to our customers through product development, manufacturing excellence, and supply chain management. Tenaris employees around the wor
CB&I is the world’s leading designer and builder of storage facilities, tanks, and terminals. With more than 60,000 structures completed throughout its 135+ year history, CB&I has the global expertise and strategically located operations to provide its customers world-class storage solutions for eve

TechnipFMC is a leading technology provider to the traditional and new energies industry, delivering fully integrated projects, products, and services. With our proprietary technologies and comprehensive solutions, we are transforming our clients’ project economics, helping them unlock new possibi

Hindustan Petroleum Corporation Limited (HPCL) is a Maharatna Central Public Sector Enterprise (CPSE) and a S&P Global Platts Top 250 Global Energy Company. HPCL has a strong presence in downstream hydrocarbon sector of the country with a sizable share in petroleum product marketing and also has bus
Petróleos Mexicanos es la mayor empresa de México, el mayor contribuyente fiscal del país, así como una de las empresas más grandes de América Latina. Es de las pocas empresas petroleras del mundo que desarrolla toda la cadena productiva de la industria, desde la exploración, hasta la distribució
.png)
Abu Dhabi state oil giant ADNOC and Austria's OMV said on Thursday they have appointed Roger Kearns as chief executive officer and Sultan...
Tahaluf is rapidly redefining Saudi Arabia's global events landscape. Headquartered in Riyadh, it is a strategic joint venture between...
Stc Group is Saudi Arabia's largest telecommunications and digital services provider, offering mobile, broadband, cloud, IoT, cybersecurity,...
Gulf Business presents 50 MENA companies at the forefront of transformation.
A shortage of skilled cybersecurity talent is limiting organisations' ability to monitor third-party vulnerabilities consistently.
Abu Dhabi National Oil Company and Austria's OMV expect to complete by the end of March a mega-merger to create a global chemicals giant,...
No injuries were reported, the Abu Dhabi Media Office said in a post on X.
The law sets a legal and technical framework governing the deployment of autonomous vehicles, emphasising safety, security, data protection.
Abu Dhabi National Oil Company (Adnoc) is forecasting a strong 2026, underpinned by rapid fleet expansion and increased use of technology.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of ADNOC Group is http://www.adnoc.ae.
According to Rankiteo, ADNOC Group’s AI-generated cybersecurity score is 782, reflecting their Fair security posture.
According to Rankiteo, ADNOC Group currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, ADNOC Group has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, ADNOC Group is not certified under SOC 2 Type 1.
According to Rankiteo, ADNOC Group does not hold a SOC 2 Type 2 certification.
According to Rankiteo, ADNOC Group is not listed as GDPR compliant.
According to Rankiteo, ADNOC Group does not currently maintain PCI DSS compliance.
According to Rankiteo, ADNOC Group is not compliant with HIPAA regulations.
According to Rankiteo,ADNOC Group is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
ADNOC Group operates primarily in the Oil and Gas industry.
ADNOC Group employs approximately 49,223 people worldwide.
ADNOC Group presently has no subsidiaries across any sectors.
ADNOC Group’s official LinkedIn profile has approximately 2,396,892 followers.
ADNOC Group is classified under the NAICS code 211, which corresponds to Oil and Gas Extraction.
Yes, ADNOC Group has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/adnoc-drilling.
Yes, ADNOC Group maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/adnocgroup.
As of April 04, 2026, Rankiteo reports that ADNOC Group has experienced 1 cybersecurity incidents.
ADNOC Group has an estimated 10,824 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Cyber Attack.
Title: BEC Fraud Targeting Middle Eastern Businesses
Description: A significant BEC fraud that targets Middle Eastern-based businesses and people has been discovered. The effort has grown to include a new group of phishing domains that were created using the same name patterns as a prior campaign that was detected in July. The collection of phishing websites uses several forms of baits, including phoney employment offers, investment possibilities, vendor registration, and contract bidding, to target contractors in the UAE. Ninety percent of the 35 phishing domains examined target the Emirates National Oil Company, Sharjah National Oil Corporation, and Abu Dhabi National Oil Company (ADNOC) (ENOC). In order to deceive users, some domains have simply an email server (often provided by Zoho) active, some have duplicated the content of reputable companies, and some domains reroute to reputable domains. Threat actors behind this campaign are deliberately purchasing and registering domains with keywords that are similar to those of domains belonging to real businesses. The campaign also makes use of pre-stored static web pages with comparable templates to make it resistant to takedowns. If a domain is banned, these templates are uploaded to another domain.
Type: BEC Fraud
Attack Vector: Phishing
Motivation: Financial Gain
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.
Identification of Attack Vectors: The company identifies the attack vectors used in incidents through Phishing Domains.

Entity Name: Emirates National Oil Company
Entity Type: Corporation
Industry: Oil and Gas
Location: United Arab Emirates

Entity Name: Sharjah National Oil Corporation
Entity Type: Corporation
Industry: Oil and Gas
Location: United Arab Emirates

Entity Name: Abu Dhabi National Oil Company (ADNOC)
Entity Type: Corporation
Industry: Oil and Gas
Location: United Arab Emirates

Entry Point: Phishing Domains
High Value Targets: Emirates National Oil Company, Sharjah National Oil Corporation, Abu Dhabi National Oil Company (Adnoc),
Data Sold on Dark Web: Emirates National Oil Company, Sharjah National Oil Corporation, Abu Dhabi National Oil Company (Adnoc),
Most Recent Entry Point: The most recent entry point used by an initial access broker was an Phishing Domains.
.png)
nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to version 1.3.0, two peer-facing consensus request handlers assume that the history index is always available and call blockchain.history_store.history_index().unwrap() directly. That assumption is false by construction. HistoryStoreProxy::history_index() explicitly returns None for the valid HistoryStoreProxy::WithoutIndex state. when a full node is syncing or otherwise running without the history index, a remote peer can send RequestTransactionsProof or RequestTransactionReceiptsByAddress and trigger an Option::unwrap() panic on the request path. This issue has been patched in version 1.3.0.
PraisonAI is a multi-agent teams system. Prior to version 1.5.95, FileTools.download_file() in praisonaiagents validates the destination path but performs no validation on the url parameter, passing it directly to httpx.stream() with follow_redirects=True. An attacker who controls the URL can reach any host accessible from the server including cloud metadata services and internal network services. This issue has been patched in version 1.5.95.
PraisonAI is a multi-agent teams system. Prior to version 4.5.97, OAuthManager.validate_token() returns True for any token not found in its internal store, which is empty by default. Any HTTP request to the MCP server with an arbitrary Bearer token is treated as authenticated, granting full access to all registered tools and agent capabilities. This issue has been patched in version 4.5.97.
PraisonAI is a multi-agent teams system. Prior to version 4.5.97, the PraisonAI Gateway server accepts WebSocket connections at /ws and serves agent topology at /info with no authentication. Any network client can connect, enumerate registered agents, and send arbitrary messages to agents and their tool sets. This issue has been patched in version 4.5.97.
PraisonAI is a multi-agent teams system. Prior to version 4.5.90, MCPToolIndex.search_tools() compiles a caller-supplied string directly as a Python regular expression with no validation, sanitization, or timeout. A crafted regex causes catastrophic backtracking in the re engine, blocking the Python thread for hundreds of seconds and causing a complete service outage. This issue has been patched in version 4.5.90.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.