Company Details
amadeus
23,419
517,888
5415
amadeus.com
540
AMA_3012346
Completed


Amadeus Vendor Cyber Rating & Cyber Score
amadeus.comWe make the experience of travel better for everyone, everywhere by inspiring innovation, partnerships and responsibility to people, places and planet. Our technology powers the travel and tourism industry. We inspire more connected ways of thinking, centered around the traveler. Our platform connects the travel and hospitality ecosystem. We are making travel a force for social and environmental good. We are passionate about travel. With a unique perspective, at the heart of our industry, we are redesigning the travel of tomorrow.
Company Details
amadeus
23,419
517,888
5415
amadeus.com
540
AMA_3012346
Completed
Between 750 and 799

Amadeus Global Score (TPRM)XXXX

Description: A widespread cyberattack disrupted check-in systems across major European airports, including Brussels, Berlin, and London Heathrow, leading to significant operational chaos. The attack caused mass flight cancellations, prolonged delays, and stranded thousands of passengers over a critical travel period. While the exact method of infiltration remains undisclosed, the incident highlights vulnerabilities in centralized aviation IT infrastructure, particularly in systems managing passenger processing and flight logistics.The financial repercussions include compensation claims from airlines and passengers, reputational damage to both airports and the affected IT provider, and potential regulatory scrutiny over cybersecurity lapses in critical infrastructure. Although no direct data breach (e.g., passenger PII theft) was confirmed in the article, the operational paralysis suggests a targeted disruption aimed at crippling air travel a sector vital to economic stability. The attack’s ripple effects extended beyond immediate logistical failures, eroding public trust in digital aviation systems and prompting calls for stricter cybersecurity protocols in transport hubs.


No incidents recorded for Amadeus in 2026.
No incidents recorded for Amadeus in 2026.
No incidents recorded for Amadeus in 2026.
Amadeus cyber incidents detection timeline including parent company and subsidiaries

We make the experience of travel better for everyone, everywhere by inspiring innovation, partnerships and responsibility to people, places and planet. Our technology powers the travel and tourism industry. We inspire more connected ways of thinking, centered around the traveler. Our platform connects the travel and hospitality ecosystem. We are making travel a force for social and environmental good. We are passionate about travel. With a unique perspective, at the heart of our industry, we are redesigning the travel of tomorrow.


Almaviva is the Italian digital innovation group that supports the country’s growth by helping enterprises meet the challenges of staying competitive in the digital age. The Group helps organizations transform their business models, operational structures, corporate culture, and ICT systems. Buildi

Líder em transformação digital nos mercados de Customer Experience e Debt Collection na América Latina. Combinamos tecnologia, inteligência e excelência operacional para entregar soluções completas que antecipam as necessidades dos nossos Clientes. São mais de 530 milhões de interações anuais, met

UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world’s best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to

Ingram Micro is a leading technology company for the global information technology ecosystem. With the ability to reach nearly 90% of the global population, we play a vital role in the worldwide IT sales channel, bringing products and services from technology manufacturers and cloud providers to a h

ITC Infotech is a global technology solution and services leader providing business-friendly solutions, that enable future-readiness for clients. We seamlessly bring together digital expertise, strong industry-specific alliances, and deep domain expertise from ITC Group businesses. Our solutions and
At CDW, we know how to make technology work so people can do great things. Our experts bring a full-stack, full-lifestyle approach with custom solutions, services and relationships to bring your vision to life. Through decades of experience, scale, and deep industry expertise, we deliver the full

NTT DATA, Inc. is a trusted global innovator of business and technology services. We're committed to helping clients innovate, optimize and transform for long-term success. Our R&D investments help organizations and society move confidently and sustainably into the digital future. As a Global Top Em

Bring teams together, reimagine workspaces, engage new audiences, and delight your customers –– all on the Zoom AI-first work platform you know and love. 💙 Zoomies help people stay connected so they can get more done together. We set out on a mission to make video communications frictionless and se
Atos Group is a global leader in digital transformation with c. 67,000 employees and annual revenue of c. €10 billion, operating in 61 countries under two brands — Atos for services and Eviden for products. European number one in cybersecurity, cloud and high performance computing, Atos Group is com
.png)
Amadeus IT Group S.A. (ISIN: ES0113900J37) shares advanced on strong Q1 results, highlighting robust recovery in global travel bookings.
Amadeus IT Group stock (ISIN: ES0109067019) shows resilience as global travel demand strengthens, with European investors watching closely...
Fresh concerns over AI disruption mean investors are looking to discriminate between the potential winners and losers.
Refute, a London, UK-based AI-powered counter-disinformation company, has raised £5 million in Seed funding. Investors.
The Berlin-based cybersecurity company enables businesses to protect sensitive data and applications through its Multi Cloud Platform,...
The Berlin-based cybersecurity company provides a multi-cloud platform that enables organisations to protect sensitive data and applications...
The tech layoff wave is still kicking in 2025. Last year saw more than 150,000 job cuts across 549 companies, according to independent...
UK cybersecurity start-up Sitehop, based in Sheffield, has raised £7.5m in a new funding round led by Northern Gritstone.
Startup future-proofing against quantum-powered cyber attacks raises £7.5m, led by Northern Gritstone. Sheffield-based Sitehop successfully...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Amadeus is http://amadeus.com.
According to Rankiteo, Amadeus’s AI-generated cybersecurity score is 787, reflecting their Fair security posture.
According to Rankiteo, Amadeus currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Amadeus has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Amadeus is not certified under SOC 2 Type 1.
According to Rankiteo, Amadeus does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Amadeus is not listed as GDPR compliant.
According to Rankiteo, Amadeus does not currently maintain PCI DSS compliance.
According to Rankiteo, Amadeus is not compliant with HIPAA regulations.
According to Rankiteo,Amadeus is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Amadeus operates primarily in the IT Services and IT Consulting industry.
Amadeus employs approximately 23,419 people worldwide.
Amadeus presently has no subsidiaries across any sectors.
Amadeus’s official LinkedIn profile has approximately 517,888 followers.
Amadeus is classified under the NAICS code 5415, which corresponds to Computer Systems Design and Related Services.
No, Amadeus does not have a profile on Crunchbase.
Yes, Amadeus maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/amadeus.
As of March 28, 2026, Rankiteo reports that Amadeus has experienced 1 cybersecurity incidents.
Amadeus has an estimated 39,819 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Cyber Attack.
Title: Cyberattack on Major European Airports' Check-in Systems
Description: Major European airports including Brussels, Berlin, and London's Heathrow were hit by a cyberattack on check-in systems, causing cancellations and long delays for thousands of passengers.
Type: Cyberattack (likely disruptive, possibly ransomware or DDoS)
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.

Systems Affected: Check-in systems
Downtime: True
Operational Impact: Flight cancellationsLong passenger delays
Customer Complaints: True

Entity Name: Brussels Airport
Entity Type: Airport
Industry: Aviation/Transportation
Location: Brussels, Belgium
Customers Affected: Thousands of passengers

Entity Name: Berlin Airport
Entity Type: Airport
Industry: Aviation/Transportation
Location: Berlin, Germany
Customers Affected: Thousands of passengers

Entity Name: Heathrow Airport
Entity Type: Airport
Industry: Aviation/Transportation
Location: London, United Kingdom
Customers Affected: Thousands of passengers

Source: Agence France-Presse (AFP)
URL: https://www.afp.com

Source: Barron's (republished content)
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Agence France-Presse (AFP)Url: https://www.afp.com, and Source: Barron's (republished content).
Most Significant System Affected: The most significant system affected in an incident was Check-in systems.
Most Recent Source: The most recent source of information about an incident are Agence France-Presse (AFP) and Barron's (republished content).
Most Recent URL for Additional Resources: The most recent URL for additional resources on cybersecurity best practices is https://www.afp.com .
.png)
A flaw has been found in wandb OpenUI up to 1.0. This affects the function create_share/get_share of the file backend/openui/server.py of the component HTMLAnnotator Component. Executing a manipulation of the argument ID can lead to HTML injection. The attack may be performed from remote. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability was detected in QDOCS Smart School Management System up to 7.2. The impacted element is an unknown function of the file /admin/enquiry of the component Admission Enquiry Module. Performing a manipulation of the argument Note results in cross site scripting. The attack is possible to be carried out remotely.
The Ultimate Member plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.2. This is due to the '{usermeta:password_reset_link}' template tag being processed within post content via the '[um_loggedin]' shortcode, which generates a valid password reset token for the currently logged-in user viewing the page. This makes it possible for authenticated attackers, with Contributor-level access and above, to craft a malicious pending post that, when previewed by an Administrator, generates a password reset token for the Administrator and exfiltrates it to an attacker-controlled server, leading to full account takeover.
LibJWT is a C JSON Web Token Library. Starting in version 3.0.0 and prior to version 3.3.0, the JWK parsing for RSA-PSS did not protect against a NULL value when expecting to parse JSON string values. A specially crafted JWK file could exploit this behavior by using integers in places where the code expected a string. This was fixed in v3.3.0. A workaround is available. Users importing keys through a JWK file should not do so from untrusted sources. Use the `jwk2key` tool to check for validity of a JWK file. Likewise, if possible, do not use JWK files with RSA-PSS keys.
Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Starting in version 2.0.39 and prior to version 3.0.25, a prototype pollution vulnerability exists in the `parse_str` function of the npm package locutus. An attacker can pollute `Object.prototype` by overriding `RegExp.prototype.test` and then passing a crafted query string to `parse_str`, bypassing the prototype pollution guard. This vulnerability stems from an incomplete fix for CVE-2026-25521. The CVE-2026-25521 patch replaced the `String.prototype.includes()`-based guard with a `RegExp.prototype.test()`-based guard. However, `RegExp.prototype.test` is itself a writable prototype method that can be overridden, making the new guard bypassable in the same way as the original — trading one hijackable built-in for another. Version 3.0.25 contains an updated fix.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.