Comparison Overview

SortRefer

VS

Sloma & Co.

SortRefer

Burdsall House, The Derby Conference Centre, Derby, undefined, DE24 8UX, GB
Last Update: 2026-04-03
Between 750 and 799

Need to organise Conveyancing for your client? We’ve got you Sorted! SortRefer is a free online portal for Mortgage Intermediaries. Built and launched by brokers for brokers in 2009, we offer a full range of products and services to support your clients during their home moving process. Built by our in-house development team, our bespoke portal is underpinned by customer service support and fantastic supplier relationships. At SortRefer, we can help you: > Access instant, accurate and competitive quotations. > Earn additional income through flexible referral fees. > Enhance your client experience. > Gain control of each customer journey through real-time case tracking updates.

NAICS: 5411
NAICS Definition: Legal Services
Employees: 31
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Sloma & Co.

288 jiujiang Road, Shanghai, shanghai, 200002, CN
Last Update: 2026-03-09
Between 750 and 799

Sloma & Co., a law firm providing various legal services, is headquartered in Shanghai and has branches in Suzhou (Kunshan), Shenzhen and Berlin. Sloma & Co. boasts of more than 70 professional lawyers practicing in various areas cover almost all legal-related areas, including litigation and arbitration, corporate and finance, foreign direct investment, mergers and acquisitions, project loans, banking, intellectual property rights, real estate transactions, commerce, shipping, shipbuilding financing, insurance, criminal defense, marriage and family, inheritance, etc. On 1 September 2007, Seaway Law Firm and Sloma & Co formally merged into Sloma & Co.. Seaway Law Firm, founded in 1995, is a law firm practicing in the areas of corporate and finance, foreign direct investment, intellectual property rights, media, entertainment and maritime affairs. Sloma & Co, founded in 2001, is an international-based law firm practicing in the areas of maritime affairs and international trading. Merger of the two firms significantly enhances Sloma & Co.’s proficiency in maritime affairs, intellectual property rights, corporate and finance, foreign direct investment, and international trading. All partners firmly believe that, by merging the two firms into one firm, “the sum of one plus one is greater than two”. The objective of Sloma & Co. is to provide our clients with first-class legal services in this time full of opportunities and challenges.

NAICS: 541
NAICS Definition:
Employees: 36
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/sortrefer.jpeg
SortRefer
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/sloma-&-co..jpeg
Sloma & Co.
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
SortRefer
100%
Compliance Rate
0/4 Standards Verified
Sloma & Co.
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Legal Services Industry Average (This Year)

No incidents recorded for SortRefer in 2026.

Incidents vs Legal Services Industry Average (This Year)

No incidents recorded for Sloma & Co. in 2026.

Incident History — SortRefer (X = Date, Y = Severity)

SortRefer cyber incidents detection timeline including parent company and subsidiaries

Incident History — Sloma & Co. (X = Date, Y = Severity)

Sloma & Co. cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/sortrefer.jpeg
SortRefer
Incidents

No Incident

https://images.rankiteo.com/companyimages/sloma-&-co..jpeg
Sloma & Co.
Incidents

No Incident

FAQ

Sloma & Co. company demonstrates a stronger AI Cybersecurity Score compared to SortRefer company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Sloma & Co. company has disclosed a higher number of cyber incidents compared to SortRefer company.

In the current year, Sloma & Co. company and SortRefer company have not reported any cyber incidents.

Neither Sloma & Co. company nor SortRefer company has reported experiencing a ransomware attack publicly.

Neither Sloma & Co. company nor SortRefer company has reported experiencing a data breach publicly.

Neither Sloma & Co. company nor SortRefer company has reported experiencing targeted cyberattacks publicly.

Neither SortRefer company nor Sloma & Co. company has reported experiencing or disclosing vulnerabilities publicly.

Neither SortRefer nor Sloma & Co. holds any compliance certifications.

Neither company holds any compliance certifications.

Neither SortRefer company nor Sloma & Co. company has publicly disclosed detailed information about the number of their subsidiaries.

Sloma & Co. company employs more people globally than SortRefer company, reflecting its scale as a Legal Services.

Neither SortRefer nor Sloma & Co. holds SOC 2 Type 1 certification.

Neither SortRefer nor Sloma & Co. holds SOC 2 Type 2 certification.

Neither SortRefer nor Sloma & Co. holds ISO 27001 certification.

Neither SortRefer nor Sloma & Co. holds PCI DSS certification.

Neither SortRefer nor Sloma & Co. holds HIPAA certification.

Neither SortRefer nor Sloma & Co. holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.

Description

XSS vulnerability in cveInterface.js allows for inject HTML to be passed to display, as cveInterface trusts input from CVE API services

Description

Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and red_url parameters.

Description

A reflected cross-site scripting (XSS) vulnerability in the login_newpwd.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda parameter.