Badge
11,371 badges added since 01 January 2025
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions

We’d love to stay connected with you! Please follow our Truist company page and unfollow this page which is no longer active. BB&T and SunTrust formed Truist with a shared purpose—to inspire and build better lives and communities. With our combined resources, collective passion, and commitment to innovation, we’re creating a better financial experience to help people and businesses achieve more. With 275 years of combined BB&T and SunTrust history, Truist serves approximately 12 million households with leading market share in many high growth markets in the country. The company offers a wide range of services including retail, small business and commercial banking; asset management; capital markets; commercial real estate; corporate and institutional banking; insurance; mortgage; payments; specialized lending; and wealth management. Headquartered in Charlotte, North Carolina, Truist is the sixth-largest commercial bank in the U.S. Truist Bank, Member FDIC. Learn more at Truist.com and see social media terms and conditions at Truist.com/SocialTerms.

SunTrust A.I CyberSecurity Scoring

SunTrust

Company Details

Linkedin ID:

suntrustnowtruist

Employees number:

11,696

Number of followers:

116,970

NAICS:

52

Industry Type:

Financial Services

Homepage:

truist.com

IP Addresses:

0

Company ID:

SUN_2235047

Scan Status:

In-progress

AI scoreSunTrust Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/suntrustnowtruist.jpeg
SunTrust Financial Services
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
Get a Score Increase
globalscoreSunTrust Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/suntrustnowtruist.jpeg
SunTrust Financial Services
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

SunTrust Company CyberSecurity News & History

Past Incidents
1
Attack Types
1
EntityTypeSeverityImpactSeenBlog DetailsSupply Chain SourceIncident DetailsView
SunTrustData Leak6034/2018NA
Rankiteo Explanation :
Attack with significant impact with internal employee data leaks

Description: SunTrust Bank suffered from a data breach incident in April 2018 which exposed employee data. Data on 1.5 million customers, including names, addresses, phone numbers, and account balances, may have been taken by a former SunTrust Bank employee. The business learned that information from some of its contact lists may have been stolen by a former employee. No personally identifiable information, such as a social security number, account number, PIN, User ID, password, or details from a driver's licence, was included in the contact lists. According to the bank, the data doesn't appear to contain any personally identifying information, including driver's licence numbers, account numbers, pins, user IDs, or social security numbers.

SunTrust
Data Leak
Severity: 60
Impact: 3
Seen: 4/2018
Blog:
Supply Chain Source: NA
Rankiteo Explanation
Attack with significant impact with internal employee data leaks

Description: SunTrust Bank suffered from a data breach incident in April 2018 which exposed employee data. Data on 1.5 million customers, including names, addresses, phone numbers, and account balances, may have been taken by a former SunTrust Bank employee. The business learned that information from some of its contact lists may have been stolen by a former employee. No personally identifiable information, such as a social security number, account number, PIN, User ID, password, or details from a driver's licence, was included in the contact lists. According to the bank, the data doesn't appear to contain any personally identifying information, including driver's licence numbers, account numbers, pins, user IDs, or social security numbers.

Ailogo

SunTrust Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for SunTrust

Incidents vs Financial Services Industry Average (This Year)

No incidents recorded for SunTrust in 2026.

Incidents vs All-Companies Average (This Year)

No incidents recorded for SunTrust in 2026.

Incident Types SunTrust vs Financial Services Industry Avg (This Year)

No incidents recorded for SunTrust in 2026.

Incident History — SunTrust (X = Date, Y = Severity)

SunTrust cyber incidents detection timeline including parent company and subsidiaries

SunTrust Company Subsidiaries

SubsidiaryImage

We’d love to stay connected with you! Please follow our Truist company page and unfollow this page which is no longer active. BB&T and SunTrust formed Truist with a shared purpose—to inspire and build better lives and communities. With our combined resources, collective passion, and commitment to innovation, we’re creating a better financial experience to help people and businesses achieve more. With 275 years of combined BB&T and SunTrust history, Truist serves approximately 12 million households with leading market share in many high growth markets in the country. The company offers a wide range of services including retail, small business and commercial banking; asset management; capital markets; commercial real estate; corporate and institutional banking; insurance; mortgage; payments; specialized lending; and wealth management. Headquartered in Charlotte, North Carolina, Truist is the sixth-largest commercial bank in the U.S. Truist Bank, Member FDIC. Learn more at Truist.com and see social media terms and conditions at Truist.com/SocialTerms.

Loading...
similarCompanies

SunTrust Similar Companies

KPMG US

KPMG is one of the world’s leading professional services firms and the fastest growing Big Four accounting firm in the United States. With 90+ offices and more than 36,000 employees and partners throughout the US, we’re leading the industry in new and exciting ways. Our size and strength make us muc

IFC - International Finance Corporation

IFC, a member of the World Bank Group, is the largest global development institution focused exclusively on the private sector in developing countries. We utilize and leverage our products and services—as well as products and services of other institutions in the World Bank Group—to provide develop

DNB

We are here. So you can stay ahead. For nearly two hundred years we have acquired and shared knowledge, developed global networks and adapted to modern everyday life. To us, it is important to combine profitability with responsibility. DNB is Norway's largest financial services group and one of t

We’re a bank, but there’s more to it than that. ​ When you join BMO, it opens a world of opportunities. This is a team that's committed to helping you succeed – personally and professionally. Because at BMO, when you grow, we grow. ​ You know your worth and so do we. That’s why we offer the righ

Natixis Corporate & Investment Banking

Natixis Corporate & Investment Banking is a leading global financial institution that provides advisory, investment banking, financing, corporate banking and capital markets services to corporations, financial institutions, financial sponsors and sovereign and supranational organizations worldwide.

Chase

At Chase, we’re dedicated to helping you succeed. Whether you’re in need of banking, credit cards, mortgages, auto financing, investment guidance, small business support, or payment solutions, we’re beside you every step of the way. For customer service, contact us via chase.com/customerservice. S

HDB Financial Services Ltd.

HDB Financial Services (HDBFS) is a leading Non-Banking Financial Company (NBFC) that caters to the growing needs of an Aspirational India, serving both Individual & Business Clients The lines of business include - Lending and BPO Services. Incorporated in 2007, HDB is a well-established business wi

BNP Paribas CIB

In a changing world, we aim at anticipating transformation and driving your company for success. We are convinced to have the expertise and networks you need to develop your business. BNP Paribas Corporate and Institutional Banking is a leading global financial partner, offering you a wide range of

Grupo Salinas

Grupo Salinas es un conjunto de empresas dinámicas, que se caracterizan por la evolución constante y la innovación, enfocadas en la creación de valor económico, social y ambiental. Estamos en industrias diversas como comercio especializado, servicios financieros, telecomunicaciones y medios de com

newsone

SunTrust CyberSecurity News

February 26, 2026 08:00 AM
Truist Bitcoin ETFs And Open Banking Move Tie Into Undervalued Shares

Truist Financial (NYSE:TFC) is offering clients access to SEC registered spot Bitcoin ETFs through Truist Investment Services Inc. The bank...

February 23, 2026 08:00 AM
A Look Back at Diversified Banks Stocks’ Q4 Earnings: JPMorgan Chase (NYSE:JPM) Vs The Rest Of The Pack

Let's dig into the relative performance of JPMorgan Chase NYSE:JPM and its peers as we unravel the now-completed Q4 diversified banks...

February 18, 2026 08:00 AM
CrowdStrike stock slips premarket as Truist trims target; Palo Alto outlook cut weighs on cyber

New York, Feb 18, 2026, 05:06 EST — Premarket. CrowdStrike fell around 3.5%, changing hands lately at $414.29. Truist trimmed its price...

February 05, 2026 12:34 PM
Finra slaps 12 firms with $14.4 million fine for cybersecurity issues

Companies affiliated with Wells Fargo & Co. received the largest of the penalties assessed by the regulator, which has been pursuing a broader crackdown for...

February 02, 2026 08:00 AM
FBI and cybersecurity firms warn airlines of Scattered Spider attacks

The FBI and major cybersecurity firms are warning that Scattered Spider, a well-known hacking group, is now targeting the airline and...

February 01, 2026 08:00 AM
Q4 Earnings Highs And Lows: Truist Financial (NYSE:TFC) Vs The Rest Of The Diversified Banks Stocks

Quarterly earnings results are a good time to check in on a company's progress, especially compared to its peers in the same sector.

January 24, 2026 08:00 AM
Here’s What Truist Financial Thinks About Fortinet, Inc (FTNT)

Fortinet, Inc. (NASDAQ:FTNT) is one of the Best Cybersecurity Stocks to Buy in 2026. On January 20, Junaid Siddiqui from Truist Financial...

January 23, 2026 08:00 AM
Fortinet Stock Prices Target Cut to $88 by Truist Amid Strong Q4 Forecast

Key takeaways. Truist has cut the price target for Fortinet to $88 from $95, yet it still maintains a Buy rating, predicting robust Q4...

January 20, 2026 08:00 AM
Truist Securities lowers Fortinet stock price target to $88 from $95

Investing.com - Truist Securities has lowered its price target on Fortinet (NASDAQ:FTNT) to $88.00 from $95.00 while maintaining a Buy...

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

SunTrust CyberSecurity History Information

Official Website of SunTrust

The official website of SunTrust is http://www.truist.com.

SunTrust’s AI-Generated Cybersecurity Score

According to Rankiteo, SunTrust’s AI-generated cybersecurity score is 762, reflecting their Fair security posture.

How many security badges does SunTrust’ have ?

According to Rankiteo, SunTrust currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Has SunTrust been affected by any supply chain cyber incidents ?

According to Rankiteo, SunTrust has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.

Does SunTrust have SOC 2 Type 1 certification ?

According to Rankiteo, SunTrust is not certified under SOC 2 Type 1.

Does SunTrust have SOC 2 Type 2 certification ?

According to Rankiteo, SunTrust does not hold a SOC 2 Type 2 certification.

Does SunTrust comply with GDPR ?

According to Rankiteo, SunTrust is not listed as GDPR compliant.

Does SunTrust have PCI DSS certification ?

According to Rankiteo, SunTrust does not currently maintain PCI DSS compliance.

Does SunTrust comply with HIPAA ?

According to Rankiteo, SunTrust is not compliant with HIPAA regulations.

Does SunTrust have ISO 27001 certification ?

According to Rankiteo,SunTrust is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of SunTrust

SunTrust operates primarily in the Financial Services industry.

Number of Employees at SunTrust

SunTrust employs approximately 11,696 people worldwide.

Subsidiaries Owned by SunTrust

SunTrust presently has no subsidiaries across any sectors.

SunTrust’s LinkedIn Followers

SunTrust’s official LinkedIn profile has approximately 116,970 followers.

NAICS Classification of SunTrust

SunTrust is classified under the NAICS code 52, which corresponds to Finance and Insurance.

SunTrust’s Presence on Crunchbase

No, SunTrust does not have a profile on Crunchbase.

SunTrust’s Presence on LinkedIn

Yes, SunTrust maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/suntrustnowtruist.

Cybersecurity Incidents Involving SunTrust

As of April 04, 2026, Rankiteo reports that SunTrust has experienced 1 cybersecurity incidents.

Number of Peer and Competitor Companies

SunTrust has an estimated 31,558 peer or competitor companies worldwide.

What types of cybersecurity incidents have occurred at SunTrust ?

Incident Types: The types of cybersecurity incidents that have occurred include Data Leak.

Incident Details

Can you provide details on each incident ?

Incident : Data Breach

Title: SunTrust Bank Data Breach

Description: SunTrust Bank suffered from a data breach incident in April 2018 which exposed employee data. Data on 1.5 million customers, including names, addresses, phone numbers, and account balances, may have been taken by a former SunTrust Bank employee.

Date Detected: 2018-04

Type: Data Breach

Attack Vector: Insider Threat

Vulnerability Exploited: Unauthorized access by former employee

Threat Actor: Former SunTrust Bank employee

Motivation: Unspecified

What are the most common types of attacks the company has faced ?

Common Attack Types: The most common types of attacks the company has faced is Data Leak.

Impact of the Incidents

What was the impact of each incident ?

Incident : Data Breach SUN340251223

Data Compromised: Names, Addresses, Phone numbers, Account balances

What types of data are most commonly compromised in incidents ?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Names, Addresses, Phone Numbers, Account Balances and .

Which entities were affected by each incident ?

Incident : Data Breach SUN340251223

Entity Name: SunTrust Bank

Entity Type: Financial Institution

Industry: Banking

Customers Affected: 1500000

Data Breach Information

What type of data was compromised in each breach ?

Incident : Data Breach SUN340251223

Type of Data Compromised: Names, Addresses, Phone numbers, Account balances

Number of Records Exposed: 1500000

Sensitivity of Data: High

Additional Questions

General Information

Who was the attacking group in the last incident ?

Last Attacking Group: The attacking group in the last incident was an Former SunTrust Bank employee.

Incident Details

What was the most recent incident detected ?

Most Recent Incident Detected: The most recent incident detected was on 2018-04.

Impact of the Incidents

What was the most significant data compromised in an incident ?

Most Significant Data Compromised: The most significant data compromised in an incident were names, addresses, phone numbers, account balances and .

Data Breach Information

What was the most sensitive data compromised in a breach ?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were phone numbers, names, account balances and addresses.

What was the number of records exposed in the most significant breach ?

Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 150.0.

cve

Latest Global CVEs (Not Company-Specific)

Description

nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to version 1.3.0, two peer-facing consensus request handlers assume that the history index is always available and call blockchain.history_store.history_index().unwrap() directly. That assumption is false by construction. HistoryStoreProxy::history_index() explicitly returns None for the valid HistoryStoreProxy::WithoutIndex state. when a full node is syncing or otherwise running without the history index, a remote peer can send RequestTransactionsProof or RequestTransactionReceiptsByAddress and trigger an Option::unwrap() panic on the request path. This issue has been patched in version 1.3.0.

Risk Information
cvss3
Base: 5.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

PraisonAI is a multi-agent teams system. Prior to version 1.5.95, FileTools.download_file() in praisonaiagents validates the destination path but performs no validation on the url parameter, passing it directly to httpx.stream() with follow_redirects=True. An attacker who controls the URL can reach any host accessible from the server including cloud metadata services and internal network services. This issue has been patched in version 1.5.95.

Risk Information
cvss3
Base: 8.6
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Description

PraisonAI is a multi-agent teams system. Prior to version 4.5.97, OAuthManager.validate_token() returns True for any token not found in its internal store, which is empty by default. Any HTTP request to the MCP server with an arbitrary Bearer token is treated as authenticated, granting full access to all registered tools and agent capabilities. This issue has been patched in version 4.5.97.

Risk Information
cvss3
Base: 9.1
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Description

PraisonAI is a multi-agent teams system. Prior to version 4.5.97, the PraisonAI Gateway server accepts WebSocket connections at /ws and serves agent topology at /info with no authentication. Any network client can connect, enumerate registered agents, and send arbitrary messages to agents and their tool sets. This issue has been patched in version 4.5.97.

Risk Information
cvss3
Base: 9.1
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Description

PraisonAI is a multi-agent teams system. Prior to version 4.5.90, MCPToolIndex.search_tools() compiles a caller-supplied string directly as a Python regular expression with no validation, sanitization, or timeout. A crafted regex causes catastrophic backtracking in the re engine, blocking the Python thread for hundreds of seconds and causing a complete service outage. This issue has been patched in version 4.5.90.

Risk Information
cvss3
Base: 6.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=suntrustnowtruist' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge