Comparison Overview

The Ohio State University

VS

University of Arkansas

The Ohio State University

190 N Oval Mall, Columbus, Ohio, US, 43210
Last Update: 2026-04-01
Between 800 and 849

One of the largest universities in the United States, The Ohio State University is a leading research university and the model for Ohio's public higher education institutes. Founded in 1870 as a land-grant university, it consistently ranks as one of the top public universities in the United States. The main campus is located in Columbus, and regional campuses are located in Lima, Mansfield, Marion, Newark and Wooster.

NAICS: 6113
NAICS Definition: Colleges, Universities, and Professional Schools
Employees: 30,501
Subsidiaries: 1
12-month incidents
0
Known data breaches
0
Attack type number
0

University of Arkansas

Administration Bldg 425, Fayetteville, AR, US, 72701
Last Update: 2026-04-01
Between 750 and 799

The University of Arkansas is Arkansas' only R1 research institution and is the flagship land-grant campus of the U of A System. We provide an internationally competitive education for undergraduate and graduate students in more than 200 academic programs and contribute more than $2.2 billion in economic impact to the state of Arkansas. The Carnegie Foundation classifies the U of A among the top 3 percent of colleges and universities in America with the highest level of research activity. U.S. News & World Report ranks the University of Arkansas among its top American public research universities. Founded in 1871, the University of Arkansas comprises 10 colleges and schools and maintains a low student-to-faculty ratio that promotes personal attention and close mentoring to provide all students with life-changing opportunities. The U of A is dedicated to Arkansas and works to build a better world.

NAICS: 6113
NAICS Definition: Colleges, Universities, and Professional Schools
Employees: 10,589
Subsidiaries: 9
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/the-ohio-state-university.jpeg
The Ohio State University
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/university-of-arkansas.jpeg
University of Arkansas
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
The Ohio State University
100%
Compliance Rate
0/4 Standards Verified
University of Arkansas
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Higher Education Industry Average (This Year)

No incidents recorded for The Ohio State University in 2026.

Incidents vs Higher Education Industry Average (This Year)

No incidents recorded for University of Arkansas in 2026.

Incident History — The Ohio State University (X = Date, Y = Severity)

The Ohio State University cyber incidents detection timeline including parent company and subsidiaries

Incident History — University of Arkansas (X = Date, Y = Severity)

University of Arkansas cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/the-ohio-state-university.jpeg
The Ohio State University
Incidents

No Incident

https://images.rankiteo.com/companyimages/university-of-arkansas.jpeg
University of Arkansas
Incidents

Date Detected: 01/2022
Type:Breach
Attack Vector: Email
Blog: Blog

FAQ

The Ohio State University company demonstrates a stronger AI Cybersecurity Score compared to University of Arkansas company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

University of Arkansas company has historically faced a number of disclosed cyber incidents, whereas The Ohio State University company has not reported any.

In the current year, University of Arkansas company and The Ohio State University company have not reported any cyber incidents.

Neither University of Arkansas company nor The Ohio State University company has reported experiencing a ransomware attack publicly.

University of Arkansas company has disclosed at least one data breach, while The Ohio State University company has not reported such incidents publicly.

Neither University of Arkansas company nor The Ohio State University company has reported experiencing targeted cyberattacks publicly.

Neither The Ohio State University company nor University of Arkansas company has reported experiencing or disclosing vulnerabilities publicly.

Neither The Ohio State University nor University of Arkansas holds any compliance certifications.

Neither company holds any compliance certifications.

University of Arkansas company has more subsidiaries worldwide compared to The Ohio State University company.

The Ohio State University company employs more people globally than University of Arkansas company, reflecting its scale as a Higher Education.

Neither The Ohio State University nor University of Arkansas holds SOC 2 Type 1 certification.

Neither The Ohio State University nor University of Arkansas holds SOC 2 Type 2 certification.

Neither The Ohio State University nor University of Arkansas holds ISO 27001 certification.

Neither The Ohio State University nor University of Arkansas holds PCI DSS certification.

Neither The Ohio State University nor University of Arkansas holds HIPAA certification.

Neither The Ohio State University nor University of Arkansas holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A vulnerability was found in Nothings stb up to 1.26. Impacted is the function stbtt_InitFont_internal in the library stb_truetype.h of the component TTF File Handler. Performing a manipulation results in out-of-bounds read. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:N/A:P
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read in VS6ComFile!get_macro_mem_COM. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain a stack-based buffer overflow in VS6ComFile!CSaveData::_conv_AnimationItem. Opening a crafted V7 file may lead to arbitrary code execution on the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6MemInIF!set_temp_type_default. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6ComFile!load_link_inf. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X