Comparison Overview

Moody's Corporation

VS

Commonwealth Bank

Moody's Corporation

250 Greenwich Street, New York, New York, US, 10007
Last Update: 2026-04-01
Between 750 and 799

In a world shaped by increasingly interconnected risks, Moody’s helps customers develop a holistic view of these risks to advance their business and act decisively. With a rich history of expertise in global markets and a diverse workforce in more than 40 countries, Moody’s unites the brightest minds to turn today’s risks into tomorrow’s opportunities.

NAICS: 52
NAICS Definition: Finance and Insurance
Employees: 15,041
Subsidiaries: 14
12-month incidents
0
Known data breaches
0
Attack type number
0

Commonwealth Bank

., Sydney, 2000, AU
Last Update: 2026-04-01
Between 750 and 799

Australia’s leading provider of financial services including retail, premium, business and institutional banking, funds management, superannuation, insurance, investment and sharebroking products and services. We are a business with more than 800,000 shareholders and over 52,000 employees. We offer a full range of financial services to help all Australians build and manage their finances. Connect with us, we'd like to hear from you: facebook.com/commonwealthbank twitter.com/commbank youtube.com/commbank youtube.com/commbankbusiness instagram.com/commbank Our Community Guidelines can be found at: https://www.commbank.com.au/support/social-networks.html For information on our Privacy Policy visit https://www.commbank.com.au/support/privacy

NAICS: 52
NAICS Definition: Finance and Insurance
Employees: 47,247
Subsidiaries: 7
12-month incidents
0
Known data breaches
1
Attack type number
2

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/moodys-corporation.jpeg
Moody's Corporation
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/commonwealthbank.jpeg
Commonwealth Bank
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Moody's Corporation
100%
Compliance Rate
0/4 Standards Verified
Commonwealth Bank
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Financial Services Industry Average (This Year)

No incidents recorded for Moody's Corporation in 2026.

Incidents vs Financial Services Industry Average (This Year)

No incidents recorded for Commonwealth Bank in 2026.

Incident History — Moody's Corporation (X = Date, Y = Severity)

Moody's Corporation cyber incidents detection timeline including parent company and subsidiaries

Incident History — Commonwealth Bank (X = Date, Y = Severity)

Commonwealth Bank cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/moodys-corporation.jpeg
Moody's Corporation
Incidents

No Incident

https://images.rankiteo.com/companyimages/commonwealthbank.jpeg
Commonwealth Bank
Incidents

Date Detected: 05/2018
Type:Breach
Blog: Blog

Date Detected: 6/2016
Type:Data Leak
Attack Vector: Loss of Physical Media
Blog: Blog

FAQ

Moody's Corporation company demonstrates a stronger AI Cybersecurity Score compared to Commonwealth Bank company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Commonwealth Bank company has historically faced a number of disclosed cyber incidents, whereas Moody's Corporation company has not reported any.

In the current year, Commonwealth Bank company and Moody's Corporation company have not reported any cyber incidents.

Neither Commonwealth Bank company nor Moody's Corporation company has reported experiencing a ransomware attack publicly.

Commonwealth Bank company has disclosed at least one data breach, while Moody's Corporation company has not reported such incidents publicly.

Neither Commonwealth Bank company nor Moody's Corporation company has reported experiencing targeted cyberattacks publicly.

Neither Moody's Corporation company nor Commonwealth Bank company has reported experiencing or disclosing vulnerabilities publicly.

Neither Moody's Corporation nor Commonwealth Bank holds any compliance certifications.

Neither company holds any compliance certifications.

Moody's Corporation company has more subsidiaries worldwide compared to Commonwealth Bank company.

Commonwealth Bank company employs more people globally than Moody's Corporation company, reflecting its scale as a Financial Services.

Neither Moody's Corporation nor Commonwealth Bank holds SOC 2 Type 1 certification.

Neither Moody's Corporation nor Commonwealth Bank holds SOC 2 Type 2 certification.

Neither Moody's Corporation nor Commonwealth Bank holds ISO 27001 certification.

Neither Moody's Corporation nor Commonwealth Bank holds PCI DSS certification.

Neither Moody's Corporation nor Commonwealth Bank holds HIPAA certification.

Neither Moody's Corporation nor Commonwealth Bank holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A vulnerability was found in Nothings stb up to 1.26. Impacted is the function stbtt_InitFont_internal in the library stb_truetype.h of the component TTF File Handler. Performing a manipulation results in out-of-bounds read. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:N/A:P
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read in VS6ComFile!get_macro_mem_COM. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain a stack-based buffer overflow in VS6ComFile!CSaveData::_conv_AnimationItem. Opening a crafted V7 file may lead to arbitrary code execution on the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6MemInIF!set_temp_type_default. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6ComFile!load_link_inf. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X