Badge
11,371 badges added since 01 January 2025
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions

inDrive is a global mobility and urban services platform. The inDrive app has been downloaded over 400 million times, and has been the second most downloaded mobility app for the third consecutive year. In addition to ride-hailing, inDrive provides an expanding list of urban services, including intercity transportation and delivery. In 2023, inDrive launched New Ventures, a venture and M&A arm. inDrive operates in 1065 cities in 48 countries. Driven by its mission of challenging social injustice, the company is committed to having a positive impact on the lives of one billion people by 2030. It pursues this goal both through its core business, which supports local communities via a fair pricing model; and through the work of inVision, its non-profit arm. inVision’s community empowerment programs help to advance education, sports, arts and sciences, gender equality and other vital initiatives. For more information visit www.inDrive.com

inDrive A.I CyberSecurity Scoring

inDrive

Company Details

Linkedin ID:

indrive

Employees number:

10,675

Number of followers:

454,761

NAICS:

5415

Industry Type:

IT Services and IT Consulting

Homepage:

inDrive.com

IP Addresses:

0

Company ID:

IND_5246418

Scan Status:

In-progress

AI scoreinDrive Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/indrive.jpeg
inDrive IT Services and IT Consulting
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
Get a Score Increase
globalscoreinDrive Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/indrive.jpeg
inDrive IT Services and IT Consulting
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

inDrive Company CyberSecurity News & History

Past Incidents
0
Attack Types
0
No data available
Ailogo

inDrive Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for inDrive

Incidents vs IT Services and IT Consulting Industry Average (This Year)

No incidents recorded for inDrive in 2026.

Incidents vs All-Companies Average (This Year)

No incidents recorded for inDrive in 2026.

Incident Types inDrive vs IT Services and IT Consulting Industry Avg (This Year)

No incidents recorded for inDrive in 2026.

Incident History — inDrive (X = Date, Y = Severity)

inDrive cyber incidents detection timeline including parent company and subsidiaries

inDrive Company Subsidiaries

SubsidiaryImage

inDrive is a global mobility and urban services platform. The inDrive app has been downloaded over 400 million times, and has been the second most downloaded mobility app for the third consecutive year. In addition to ride-hailing, inDrive provides an expanding list of urban services, including intercity transportation and delivery. In 2023, inDrive launched New Ventures, a venture and M&A arm. inDrive operates in 1065 cities in 48 countries. Driven by its mission of challenging social injustice, the company is committed to having a positive impact on the lives of one billion people by 2030. It pursues this goal both through its core business, which supports local communities via a fair pricing model; and through the work of inVision, its non-profit arm. inVision’s community empowerment programs help to advance education, sports, arts and sciences, gender equality and other vital initiatives. For more information visit www.inDrive.com

Loading...
similarCompanies

inDrive Similar Companies

Carelon Global Solutions India

Carelon Global Solutions makes healthcare operations more practical, effective, and efficient. Our global team of more than 25K innovators drives growth, delivers exceptional support, and develops digital tools specifically for health plans, providers, and systems. Each day, our partners and experts

T-Systems International

Your digitalization partner with industry expertise With locations in more than 26 countries and over 26,000 employees (2024), T-Systems is one of the leading providers of digital services in Europe. The Deutsche Telekom subsidiary is headquartered in Germany and has a presence in Europe as well as

Unlocking financial technology. Bringing the world’s money into harmony. At FIS, we advance the way the world pays, banks, and invests. With decades of expertise, we provide financial technology solutions to financial institutions, businesses, and developers. Headquartered in Jacksonville, Florida,

Capita

Capita is an outsourcer, helping clients across the public and private sectors run complex business processes more efficiently, creating better consumer experiences. Operating across eight countries, Capita’s 34,000 colleagues support primarily UK and European clients with people-based services und

Softtek

Founded in 1982 by a small group of entrepreneurs, Softtek started out in Mexico providing local IT services, and today is a global leader in next-generation digital solutions. The first company to introduce the Nearshore model, Softtek helps Global 2000 organizations build their digital capabilitie

ASGN Incorporated

ASGN Incorporated (NYSE: ASGN) is a leading provider of IT services and solutions across the commercial and government sectors. ASGN helps corporate enterprises and government organizations develop, implement and operate critical IT and business solutions through its integrated offerings. For more i

NCS Group

NCS, a subsidiary of Singtel Group, is a leading technology services firm with presence in Asia Pacific and partners with governments and enterprises to advance communities through technology. Combining the experience and expertise of its 14,000-strong team across 56 specialisations, NCS provides di

Algar Tech

Somos a Algar Tech CX. Com 26 anos de mercado, atuamos como parceira de negócio para a transformação digital de grandes corporações. Nosso portfólio possui serviços de Relacionamento com o Cliente, que visam melhorar a experiência dos consumidores. Somos mais de 7 mil associados que trabalham com o

Indra Group (https://www.indragroup.com/) is the foremost Spanish multinational and one of the leading European companies that focus on defence and advanced technologies. It stands at the forefront of the defence, space, air traffic management, mobility, and Information Technology businesses through

newsone

inDrive CyberSecurity News

February 12, 2026 08:00 AM
Cybersecurity Company Appoints Head of Channel for Africa

Check Point® Software Technologies Ltd. recently announced the appointment of Vincent Mabaso as Head of Channel – Africa.

January 20, 2026 08:00 AM
inDrive strengthens a transparent mobility model without algorithmic control.

Seven years after starting its operations in Brazil, inDrive, a global mobility and services platform, is reaching a new milestone in its...

November 18, 2025 08:00 AM
inDrive to update app next year following 8x growth in rides

inDrive considers the Philippines a high-growth market in SEA based on the growing number of riders and drivers. | Back End News.

November 04, 2025 08:00 AM
PalmPay backs police cybercrime centre in drive for safer digital payments

PalmPay, participated in the Nigeria Police Force National Cybercrime Centre (NPF-NCCC) Cybersecurity Awareness Walk in Abuja as part of...

October 31, 2025 07:00 AM
FG to prioritise cybersecurity in drive for digitising fire service

Controller General of the FFS, Samuel Olumode-Adeyemi, announced this during the 2025 Cyber Security Awareness Day programme organised by the...

October 15, 2025 07:00 AM
Siemens sets new standards in drive technology with Sinamics S220 drive system

The Sinamics S220 drive system is an integral part of the Siemens Xcelerator portfolio; The new CU320-3 control unit offers maximum...

October 01, 2025 07:00 AM
New Google Drive Desktop Feature adds AI-powered Ransomware Detection to Prevent Cyberattacks

Google has introduced a new AI-powered ransomware detection feature for Google Drive for desktop, designed to block cyberattacks and protect...

April 02, 2025 07:00 AM
Seamfix Partners with ISSAN to Champion Identity Security at Cybersecurity Roundtable

Seamfix Limited, a leading provider of innovative identity management and cybersecurity solutions, proudly sponsored the ISSAN Cybersecurity...

June 18, 2024 07:00 AM
AI replacing workers? | McDonald's halts the use of AI chatbot in drive-thrus

McDonald's will stop using AI chatbots to take customer orders at drive-thrus, having tested the technology at over 100 locations across the US.

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

inDrive CyberSecurity History Information

Official Website of inDrive

The official website of inDrive is http://www.inDrive.com.

inDrive’s AI-Generated Cybersecurity Score

According to Rankiteo, inDrive’s AI-generated cybersecurity score is 782, reflecting their Fair security posture.

How many security badges does inDrive’ have ?

According to Rankiteo, inDrive currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Has inDrive been affected by any supply chain cyber incidents ?

According to Rankiteo, inDrive has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.

Does inDrive have SOC 2 Type 1 certification ?

According to Rankiteo, inDrive is not certified under SOC 2 Type 1.

Does inDrive have SOC 2 Type 2 certification ?

According to Rankiteo, inDrive does not hold a SOC 2 Type 2 certification.

Does inDrive comply with GDPR ?

According to Rankiteo, inDrive is not listed as GDPR compliant.

Does inDrive have PCI DSS certification ?

According to Rankiteo, inDrive does not currently maintain PCI DSS compliance.

Does inDrive comply with HIPAA ?

According to Rankiteo, inDrive is not compliant with HIPAA regulations.

Does inDrive have ISO 27001 certification ?

According to Rankiteo,inDrive is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of inDrive

inDrive operates primarily in the IT Services and IT Consulting industry.

Number of Employees at inDrive

inDrive employs approximately 10,675 people worldwide.

Subsidiaries Owned by inDrive

inDrive presently has no subsidiaries across any sectors.

inDrive’s LinkedIn Followers

inDrive’s official LinkedIn profile has approximately 454,761 followers.

NAICS Classification of inDrive

inDrive is classified under the NAICS code 5415, which corresponds to Computer Systems Design and Related Services.

inDrive’s Presence on Crunchbase

Yes, inDrive has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/indriver.

inDrive’s Presence on LinkedIn

Yes, inDrive maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/indrive.

Cybersecurity Incidents Involving inDrive

As of March 28, 2026, Rankiteo reports that inDrive has not experienced any cybersecurity incidents.

Number of Peer and Competitor Companies

inDrive has an estimated 39,818 peer or competitor companies worldwide.

inDrive CyberSecurity History Information

How many cyber incidents has inDrive faced ?

Total Incidents: According to Rankiteo, inDrive has faced 0 incidents in the past.

What types of cybersecurity incidents have occurred at inDrive ?

Incident Types: The types of cybersecurity incidents that have occurred include .

Incident Details

What are the most common types of attacks the company has faced ?

Additional Questions

cve

Latest Global CVEs (Not Company-Specific)

Description

A flaw has been found in wandb OpenUI up to 1.0. This affects the function create_share/get_share of the file backend/openui/server.py of the component HTMLAnnotator Component. Executing a manipulation of the argument ID can lead to HTML injection. The attack may be performed from remote. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was detected in QDOCS Smart School Management System up to 7.2. The impacted element is an unknown function of the file /admin/enquiry of the component Admission Enquiry Module. Performing a manipulation of the argument Note results in cross site scripting. The attack is possible to be carried out remotely.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:N/I:P/A:N
cvss3
Base: 3.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The Ultimate Member plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.2. This is due to the '{usermeta:password_reset_link}' template tag being processed within post content via the '[um_loggedin]' shortcode, which generates a valid password reset token for the currently logged-in user viewing the page. This makes it possible for authenticated attackers, with Contributor-level access and above, to craft a malicious pending post that, when previewed by an Administrator, generates a password reset token for the Administrator and exfiltrates it to an attacker-controlled server, leading to full account takeover.

Risk Information
cvss3
Base: 8.0
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Description

LibJWT is a C JSON Web Token Library. Starting in version 3.0.0 and prior to version 3.3.0, the JWK parsing for RSA-PSS did not protect against a NULL value when expecting to parse JSON string values. A specially crafted JWK file could exploit this behavior by using integers in places where the code expected a string. This was fixed in v3.3.0. A workaround is available. Users importing keys through a JWK file should not do so from untrusted sources. Use the `jwk2key` tool to check for validity of a JWK file. Likewise, if possible, do not use JWK files with RSA-PSS keys.

Risk Information
cvss4
Base: 5.8
Severity: HIGH
CVSS:4.0/AV:A/AC:H/AT:P/PR:N/UI:A/VC:L/VI:L/VA:H/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Starting in version 2.0.39 and prior to version 3.0.25, a prototype pollution vulnerability exists in the `parse_str` function of the npm package locutus. An attacker can pollute `Object.prototype` by overriding `RegExp.prototype.test` and then passing a crafted query string to `parse_str`, bypassing the prototype pollution guard. This vulnerability stems from an incomplete fix for CVE-2026-25521. The CVE-2026-25521 patch replaced the `String.prototype.includes()`-based guard with a `RegExp.prototype.test()`-based guard. However, `RegExp.prototype.test` is itself a writable prototype method that can be overridden, making the new guard bypassable in the same way as the original — trading one hijackable built-in for another. Version 3.0.25 contains an updated fix.

Risk Information
cvss4
Base: 6.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=indrive' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge