Company Details
ap-hp
37,495
225,901
62
aphp.fr
112
GRE_1553484
Completed


Greater Paris University Hospitals - AP-HP Vendor Cyber Rating & Cyber Score
aphp.frAP-HP (Greater Paris University Hospitals) is a European world-renowned university hospital. Its 39 hospitals treat 8 million people every year: in consultation, emergency, during scheduled or home hospitalizations. The AP-HP provides a public health service for everyone, 24 hours a day. This mission is a duty as well as a great source of pride. AP-HP is the leading employer in the Greater Paris area: 100.000 staff members – doctors, researchers, paramedical staff, administrative personnel and workers – work there.
Company Details
ap-hp
37,495
225,901
62
aphp.fr
112
GRE_1553484
Completed
Between 750 and 799

GPUHA Global Score (TPRM)XXXX



No incidents recorded for Greater Paris University Hospitals - AP-HP in 2026.
No incidents recorded for Greater Paris University Hospitals - AP-HP in 2026.
No incidents recorded for Greater Paris University Hospitals - AP-HP in 2026.
GPUHA cyber incidents detection timeline including parent company and subsidiaries

AP-HP (Greater Paris University Hospitals) is a European world-renowned university hospital. Its 39 hospitals treat 8 million people every year: in consultation, emergency, during scheduled or home hospitalizations. The AP-HP provides a public health service for everyone, 24 hours a day. This mission is a duty as well as a great source of pride. AP-HP is the leading employer in the Greater Paris area: 100.000 staff members – doctors, researchers, paramedical staff, administrative personnel and workers – work there.


Michigan Medicine, based in Ann Arbor, Michigan, is part of one of the world’s leading universities. Michigan Medicine is a premier, highly ranked academic medical center and award-winning health care system with state-of-the-art facilities. Our vision is to create the future of health care throu

American Medical Response, America’s leading provider of medical transportation, has a single mission: making a difference by caring for people in need. AMR solutions include 911 emergency, interfacility transportation, event medical, advanced & basic life support transports and federal disaster res

O nascimento da Sociedade Beneficente Israelita Brasileira Albert Einstein, na década de 50, resultou do compromisso da comunidade judaica em oferecer à população brasileira uma referência em qualidade da prática médica. Mas a Sociedade queria ir além da simples construção de um hospital. E assi

University Health Network (UHN) is Canada's largest research hospital, which includes Toronto General and Toronto Western Hospitals, Princess Margaret Cancer Centre, the Toronto Rehabilitation Institute and the Michener Institute for Education at UHN. The scope of research and complexity of cases at

Fueled by our bold purpose to improve the health of humanity, we are transforming from a traditional health benefits organization into a lifetime trusted health partner. Our nearly 100,000 associates serve more than 118 million people, at every stage of health. We address a full range of needs wi

Ramsay Health Care is a trusted provider of private hospital and healthcare services in Australia, Europe and the United Kingdom. Every year, millions of patients put their trust in Ramsay, confident in our ability to deliver safe, high-quality healthcare with outstanding clinical outcomes. We ope

Every day millions of people feel the impact of our intelligent devices, advanced analytics and artificial intelligence. As a leading global medical technology and digital solutions innovator, GE HealthCare enables clinicians to make faster, more informed decisions through intelligent devices, data

CHRISTUS Health is a Catholic not-for-profit health care system comprising more than 600 centers, including long-term care facilities, community hospitals, walk-in clinics and health ministries. We are a community of 50,000 Associates, with over 15,000 physicians providing personalized care. Our m
Sutter Health is a not-for-profit, people-centered healthcare system providing comprehensive care throughout California. Sutter Health is committed to innovative, high-quality patient care and community partnerships, and innovative, high-quality patient care. Today, Sutter Health is pursuing a bold
.png)
PARIS, Nov. 10, 2023 (GLOBE NEWSWIRE) -- One Biosciences, a biotech company leveraging the power of single-cell analysis and A.I. to...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Greater Paris University Hospitals - AP-HP is http://www.aphp.fr.
According to Rankiteo, Greater Paris University Hospitals - AP-HP’s AI-generated cybersecurity score is 796, reflecting their Fair security posture.
According to Rankiteo, Greater Paris University Hospitals - AP-HP currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Greater Paris University Hospitals - AP-HP has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Greater Paris University Hospitals - AP-HP is not certified under SOC 2 Type 1.
According to Rankiteo, Greater Paris University Hospitals - AP-HP does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Greater Paris University Hospitals - AP-HP is not listed as GDPR compliant.
According to Rankiteo, Greater Paris University Hospitals - AP-HP does not currently maintain PCI DSS compliance.
According to Rankiteo, Greater Paris University Hospitals - AP-HP is not compliant with HIPAA regulations.
According to Rankiteo,Greater Paris University Hospitals - AP-HP is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Greater Paris University Hospitals - AP-HP operates primarily in the Hospitals and Health Care industry.
Greater Paris University Hospitals - AP-HP employs approximately 37,495 people worldwide.
Greater Paris University Hospitals - AP-HP presently has no subsidiaries across any sectors.
Greater Paris University Hospitals - AP-HP’s official LinkedIn profile has approximately 225,901 followers.
Greater Paris University Hospitals - AP-HP is classified under the NAICS code 62, which corresponds to Health Care and Social Assistance.
No, Greater Paris University Hospitals - AP-HP does not have a profile on Crunchbase.
Yes, Greater Paris University Hospitals - AP-HP maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/ap-hp.
As of March 30, 2026, Rankiteo reports that Greater Paris University Hospitals - AP-HP has not experienced any cybersecurity incidents.
Greater Paris University Hospitals - AP-HP has an estimated 32,297 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Greater Paris University Hospitals - AP-HP has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
A vulnerability was identified in Totolink A3300R 17.0.0cu.557_b20221024. This affects the function setLanCfg of the file /cgi-bin/cstecgi.cgi of the component Parameter Handler. The manipulation of the argument lanIp leads to command injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.
Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib. Compress::Raw::Zlib is included in the Perl package as a dual-life core module, and is vulnerable to CVE-2026-3381 due to a vendored version of zlib which has several vulnerabilities, including CVE-2026-27171. The bundled Compress::Raw::Zlib was updated to version 2.221 in Perl blead commit c75ae9cc164205e1b6d6dbd57bd2c65c8593fe94.
Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically extracted binary data, resulting in arbitrary command execution when an analyst interacts with the UI. Specifically, the @execute annotation (which is intended for trusted, user-authored comments) is also parsed in comments generated during auto-analysis (such as CFStrings in Mach-O binaries). This allows a crafted binary to present seemingly benign clickable text which, when clicked, executes attacker-controlled commands on the analyst’s machine.
A critical security vulnerability in parisneo/lollms versions up to 2.2.0 allows any authenticated user to accept or reject friend requests belonging to other users. The `respond_request()` function in `backend/routers/friends.py` does not implement proper authorization checks, enabling Insecure Direct Object Reference (IDOR) attacks. Specifically, the `/api/friends/requests/{friendship_id}` endpoint fails to verify whether the authenticated user is part of the friendship or the intended recipient of the request. This vulnerability can lead to unauthorized access, privacy violations, and potential social engineering attacks. The issue has been addressed in version 2.2.0.
A Server-Side Request Forgery (SSRF) vulnerability exists in parisneo/lollms versions prior to 2.2.0, specifically in the `/api/files/export-content` endpoint. The `_download_image_to_temp()` function in `backend/routers/files.py` fails to validate user-controlled URLs, allowing attackers to make arbitrary HTTP requests to internal services and cloud metadata endpoints. This vulnerability can lead to internal network access, cloud metadata access, information disclosure, port scanning, and potentially remote code execution.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.