Forward Air Corporation Company Cyber Security Posture

forwardair.com

Forward Air has been a leader in the expedited ground transportation industry for over 40 years. Our portfolio ofย services has evolved to meet each customerโ€™s unique shipping needs, including expedited linehaul (TL & LTL), pick-upย and delivery, intermodal drayage, pool distribution, and specialized temperature-controlled logistics services. At Forward, we drive industry innovation and continuously strive to develop better technologies, systems, and toolsย for our customers throughout North America โ€“ to keep your business moving forward. We are more than aย transportation company. As a single resource for your shipping needs, we are your supply chain partner.

FAC Company Details

Linkedin ID:

forward-air

Employees number:

2954 employees

Number of followers:

45761.0

NAICS:

484

Industry Type:

Truck Transportation

Homepage:

forwardair.com

IP Addresses:

Scan still pending

Company ID:

FOR_2665143

Scan Status:

In-progress

AI scoreFAC Risk Score (AI oriented)

Between 900 and 1000

This score is AI-generated and less favored by cyber insurers, who prefer the TPRM score.

Ailogo

Forward Air Corporation Company Scoring based on AI Models

Model NameDateDescriptionCurrent Score DifferenceScore
AVERAGE-Industry03-12-2025

This score represents the average cybersecurity rating of companies already scanned within the same industry. It provides a benchmark to compare an individual company's security posture against its industry peers.

N/A

Between 900 and 1000

Forward Air Corporation Company Cyber Security News & History

Past Incidents
4
Attack Types
2
EntityTypeSeverityImpactSeenUrl IDDetailsView
Forward Air CorporationBreach80309/2021FOR2322322Link
Rankiteo Explanation :
Attack with significant impact with internal employee data leaks

Description: Freight shipping company Forward Air Corp. disclosed a data breach incident after being targeted in a ransomware attack. The attackers affected its IT systems and stole certain data, including the personal information of its employees. The compromised information includes employeesโ€™ names, addresses, dates of birth, Social Security numbers, driverโ€™s license numbers, passport numbers, and bank account numbers.

Forward Air CorporationBreach85412/2020FOR308072625Link
Rankiteo Explanation :
Attack with significant impact with customers data leaks

Description: The California Office of the Attorney General reported that Forward Air Corporation experienced a data breach on December 15, 2020. The breach potentially exposed personal information including names, addresses, dates of birth, Social Security numbers, driver's license numbers, passport numbers, and bank account numbers of unknown individuals. The breach was reported on September 24, 2021.

Forward Air CorporationBreach6036/2020FOR243072625Link
Rankiteo Explanation :
Attack with significant impact with internal employee data leaks

Description: The Maine Office of the Attorney General reported that Forward Air Corporation experienced a data breach due to external hacking that occurred between June 20, 2020, and June 26, 2020. The breach potentially involved access to Social Security numbers, affecting a total of 3,464 individuals, including one resident from Maine. Written notification was sent to the affected individuals on November 11, 2020, and identity theft protection services were offered for 12 months through Kroll.

Forward Air CorporationRansomware80212/2020FOR14319222Link
Rankiteo Explanation :
Attack limited on finance or reputation

Description: Forward Air Corp was targeted by the Hades ransomware group. The attack caused a delay in company's business that resulted in the loss of revenue and severely impacted the companyโ€™s financial results. The companyโ€™s internal security teams along with cyber defense firms investigated the attack and secured the network from any future attacks.

Forward Air Corporation Company Subsidiaries

SubsidiaryImage

Forward Air has been a leader in the expedited ground transportation industry for over 40 years. Our portfolio ofย services has evolved to meet each customerโ€™s unique shipping needs, including expedited linehaul (TL & LTL), pick-upย and delivery, intermodal drayage, pool distribution, and specialized temperature-controlled logistics services. At Forward, we drive industry innovation and continuously strive to develop better technologies, systems, and toolsย for our customers throughout North America โ€“ to keep your business moving forward. We are more than aย transportation company. As a single resource for your shipping needs, we are your supply chain partner.

Loading...

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=forward-air' -H 'apikey: YOUR_API_KEY_HERE'
newsone

FAC Cyber Security News

2025-06-12T07:00:00.000Z
Forward Air Corporation Announces Results of 2025 Annual Meeting and Board Changes

Forward Air Corporation (NASDAQ:FWRD) (the โ€œCompanyโ€, โ€œForward Airโ€, โ€œweโ€, โ€œourโ€, or โ€œusโ€) today announced changes to its Board of Directorsย ...

2025-06-19T07:00:00.000Z
Investors in Forward Air (NASDAQ:FWRD) from three years ago are still down 74%, even after 14% gain this past week

Forward Air Corporation (NASDAQ:FWRD) shareholders should be happy to see the share price up 20% in the last month.

2025-06-13T07:00:00.000Z
US trucker Forward Air attracts takeover interest from buyout firms, sources say

Forward Air, which specializes in moving hauls which do not take up a full truckload, said earlier this week it is committed to advancing itsย ...

2025-04-09T07:00:00.000Z
Forward Air Projects $59M Q1 EBITDA as New Tariffs Threaten 15% Revenue

Forward Air reveals Q1 EBITDA guidance of $54-59M and stronger liquidity, while assessing impact of new tariffs affecting up to 15% ofย ...

2025-02-26T08:00:00.000Z
Forward Air gains needed breathing room, awaits demand recovery

The new management team at Forward Air continues to plot a path to profitability following the closing of a messy acquisition a little more than a year ago.

2025-04-23T07:00:00.000Z
Cybersecurity jobs available right now: April 23, 2025

As a Cybersecurity Threat Intelligence Analyst, you will monitor cybersecurity threat feeds, forums, and OSINT to identify potential securityย ...

2025-06-30T13:31:37.000Z
Forward Air Corporation(NasdaqGS:FWRD) added to Russell Small Cap Comp Growth Index

The Intermodal segment provides first- and last-mile high value intermodal container drayage services both to and from seaports and railheads.

2025-01-06T08:00:00.000Z
Forward Air exploring options, may sell company

Forward Air announced Monday its board of directors has embarked on a review of strategic alternatives. The post Forward Air exploringย ...

2024-10-07T07:00:00.000Z
Chorus of investors calling on Forward Air to consider a sale grows

Forward has revamped its leadership team, made changes to the board and refocused on the revenue and cost synergies it says its new platformย ...

similarCompanies

FAC Similar Companies

Grimaldi Group

Established in 1947, Grimaldi is a fully integrated multinational logistics Group specialising in maritime transport of cars, rolling cargo, containers and passengers. Wholly owned by the Grimaldi family, the Group is led by Gianluca and Emanuele Grimaldi, sons of the founder Guido, and their broth

Schneider

Put us on the job and consider it done. Schneider is a premier provider of transportation and logistics services headquartered in Green Bay, Wisconsin, and with offices in Chicago, Dallas and many cities in between. Offering one of the broadest portfolios in the industry, Schneiderโ€™s solutions inclu

Netlog Logistics Group

โ€šร„รฌ Based in Istanbul, Turkey, Netlog Logistics Group (โ€šร„รบNLGโ€šร„รน) is an internationally acclaimed logistics services provider (โ€šร„รบLSPโ€šร„รน) โ€šร„รฌ NLG offers warehousing, international road, air and sea freight transportation, as well as temperature-controlled logistics and liquid bulk food transportatio

CLW GROUP TRUCK

CLW GROUP TRUCK produce trucks specially for you,we are the biggest special trucks manufacturer in China,you can find all kinds of the special trucks produced in our factory ,and you can also send us the drawings and the requirement details to produced specially for you . In our factory you can f

The Kowloon Motor Bus Company (1933) Limited

Established in 1933, The Kowloon Motor Bus Company (1933) Limited ("KMB") is the largest franchised bus operator in Hong Kong, serving more than 2.8 million passenger-trips each day. A workforce of more than 12,300 employees, including some 10,000 bus captains, ensures that customers enjoy high-qual

Poste Italiane

With our over 160-year history, approximately 120,000 employees and 12,800 post offices, total financial assets of โ‚ฌ580 billion and 35 million customers, the Group occupies a unique position in terms of size, recognisability, reach and customer loyalty. Poste Italiane is Italy's largest service inf

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

FAC CyberSecurity History Information

How many cyber incidents has FAC faced?

Total Incidents: According to Rankiteo, FAC has faced 4 incidents in the past.

What types of cybersecurity incidents have occurred at FAC?

Incident Types: The types of cybersecurity incidents that have occurred incidents Breach and Ransomware.

What was the total financial impact of these incidents on FAC?

Total Financial Loss: The total financial loss from these incidents is estimated to be $0.

How does FAC detect and respond to cybersecurity incidents?

Detection and Response: The company detects and responds to cybersecurity incidents through third party assistance with Kroll and communication strategy with Written notification to affected individuals and third party assistance with Cyber defense firms.

Incident Details

Can you provide details on each incident?

Incident : Data Breach

Title: Forward Air Corporation Data Breach

Description: The Maine Office of the Attorney General reported that Forward Air Corporation experienced a data breach due to external hacking that occurred between June 20, 2020, and June 26, 2020. The breach potentially involved access to Social Security numbers, affecting a total of 3,464 individuals, including one resident from Maine. Written notification was sent to the affected individuals on November 11, 2020, and identity theft protection services were offered for 12 months through Kroll.

Date Publicly Disclosed: 2020-11-11

Type: Data Breach

Attack Vector: External Hacking

Incident : Data Breach

Title: Forward Air Corporation Data Breach

Description: The California Office of the Attorney General reported that Forward Air Corporation experienced a data breach on December 15, 2020. The breach potentially exposed personal information including names, addresses, dates of birth, Social Security numbers, driver's license numbers, passport numbers, and bank account numbers of unknown individuals. The breach was reported on September 24, 2021.

Date Detected: 2020-12-15

Date Publicly Disclosed: 2021-09-24

Type: Data Breach

Incident : Data Breach

Title: Forward Air Corp. Data Breach

Description: Freight shipping company Forward Air Corp. disclosed a data breach incident after being targeted in a ransomware attack. The attackers affected its IT systems and stole certain data, including the personal information of its employees. The compromised information includes employeesโ€™ names, addresses, dates of birth, Social Security numbers, driverโ€™s license numbers, passport numbers, and bank account numbers.

Type: Data Breach

Attack Vector: Ransomware

Incident : Ransomware

Title: Forward Air Corp Ransomware Attack

Description: Forward Air Corp was targeted by the Hades ransomware group. The attack caused a delay in the company's business that resulted in the loss of revenue and severely impacted the companyโ€™s financial results. The companyโ€™s internal security teams along with cyber defense firms investigated the attack and secured the network from any future attacks.

Type: Ransomware

Threat Actor: Hades ransomware group

Motivation: Financial

What are the most common types of attacks the company has faced?

Common Attack Types: The most common types of attacks the company has faced is Breach.

Impact of the Incidents

What was the impact of each incident?

Incident : Data Breach FOR243072625

Data Compromised: Social Security numbers

Identity Theft Risk: High

Incident : Data Breach FOR308072625

Data Compromised: names, addresses, dates of birth, Social Security numbers, driver's license numbers, passport numbers, bank account numbers

Incident : Data Breach FOR2322322

Data Compromised: employees' names, addresses, dates of birth, Social Security numbers, driverโ€™s license numbers, passport numbers, bank account numbers

Systems Affected: IT systems

Incident : Ransomware FOR14319222

Financial Loss: Loss of revenue

Downtime: Delay in company's business

Operational Impact: Severely impacted the companyโ€™s financial results

Revenue Loss: Loss of revenue

What is the average financial loss per incident?

Average Financial Loss: The average financial loss per incident is $0.00.

What types of data are most commonly compromised in incidents?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Social Security numbers, names, addresses, dates of birth, Social Security numbers, driver's license numbers, passport numbers, bank account numbers and personal information.

Which entities were affected by each incident?

Incident : Data Breach FOR243072625

Entity Type: Corporation

Industry: Transportation and Logistics

Customers Affected: 3464

Incident : Data Breach FOR308072625

Entity Type: Company

Industry: Transportation

Incident : Data Breach FOR2322322

Entity Type: Company

Industry: Freight Shipping

Incident : Ransomware FOR14319222

Entity Type: Company

Industry: Transportation and Logistics

Response to the Incidents

What measures were taken in response to each incident?

Incident : Data Breach FOR243072625

Third Party Assistance: Kroll

Communication Strategy: Written notification to affected individuals

Incident : Ransomware FOR14319222

Third Party Assistance: Cyber defense firms

How does the company involve third-party assistance in incident response?

Third-Party Assistance: The company involves third-party assistance in incident response through Kroll, Cyber defense firms.

Data Breach Information

What type of data was compromised in each breach?

Incident : Data Breach FOR243072625

Type of Data Compromised: Social Security numbers

Number of Records Exposed: 3464

Sensitivity of Data: High

Personally Identifiable Information: Social Security numbers

Incident : Data Breach FOR308072625

Type of Data Compromised: names, addresses, dates of birth, Social Security numbers, driver's license numbers, passport numbers, bank account numbers

Sensitivity of Data: High

Personally Identifiable Information: True

Incident : Data Breach FOR2322322

Type of Data Compromised: personal information

Sensitivity of Data: High

Personally Identifiable Information: names, addresses, dates of birth, Social Security numbers, driverโ€™s license numbers, passport numbers, bank account numbers

Ransomware Information

Was ransomware involved in any of the incidents?

Incident : Data Breach FOR2322322

Data Exfiltration: True

Incident : Ransomware FOR14319222

Ransomware Strain: Hades

References

Where can I find more information about each incident?

Incident : Data Breach FOR243072625

Source: Maine Office of the Attorney General

Incident : Data Breach FOR308072625

Source: California Office of the Attorney General

Where can stakeholders find additional resources on cybersecurity best practices?

Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Maine Office of the Attorney General, and Source: California Office of the Attorney General.

Investigation Status

What is the current status of the investigation for each incident?

Incident : Ransomware FOR14319222

Investigation Status: Investigated by internal security teams and cyber defense firms

How does the company communicate the status of incident investigations to stakeholders?

Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through was Written notification to affected individuals.

Post-Incident Analysis

What were the root causes and corrective actions taken for each incident?

Incident : Ransomware FOR14319222

Root Causes: None

Corrective Actions: Secured the network from any future attacks

What is the company's process for conducting post-incident analysis?

Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as Kroll, Cyber defense firms.

What corrective actions has the company taken based on post-incident analysis?

Corrective Actions Taken: The company has taken the following corrective actions based on post-incident analysis: Secured the network from any future attacks.

Additional Questions

General Information

Who was the attacking group in the last incident?

Last Attacking Group: The attacking group in the last incident was an Hades ransomware group.

Incident Details

What was the most recent incident detected?

Most Recent Incident Detected: The most recent incident detected was on 2020-12-15.

What was the most recent incident publicly disclosed?

Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2020-11-11.

Impact of the Incidents

What was the highest financial loss from an incident?

Highest Financial Loss: The highest financial loss from an incident was Loss of revenue.

What was the most significant data compromised in an incident?

Most Significant Data Compromised: The most significant data compromised in an incident were Social Security numbers, names, addresses, dates of birth, Social Security numbers, driver's license numbers, passport numbers, bank account numbers, employees' names, addresses, dates of birth, Social Security numbers, driverโ€™s license numbers, passport numbers and bank account numbers.

What was the most significant system affected in an incident?

Most Significant System Affected: The most significant system affected in an incident was IT systems.

Response to the Incidents

What third-party assistance was involved in the most recent incident?

Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was Kroll, Cyber defense firms.

Data Breach Information

What was the most sensitive data compromised in a breach?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Social Security numbers, names, addresses, dates of birth, Social Security numbers, driver's license numbers, passport numbers, bank account numbers, employees' names, addresses, dates of birth, Social Security numbers, driverโ€™s license numbers, passport numbers and bank account numbers.

What was the number of records exposed in the most significant breach?

Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 350.0.

References

What is the most recent source of information about an incident?

Most Recent Source: The most recent source of information about an incident are Maine Office of the Attorney General and California Office of the Attorney General.

Investigation Status

What is the current status of the most recent investigation?

Current Status of Most Recent Investigation: The current status of the most recent investigation is Investigated by internal security teams and cyber defense firms.

What Do We Measure?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge