Company Details
us-census-bureau
11,978
63,746
92
census.gov
0
U.S_1398862
In-progress


U.S. Census Bureau Vendor Cyber Rating & Cyber Score
census.govThe Census Bureau serves as the nation’s leading provider of quality data about its people and economy. We have been headquartered in Suitland, Maryland since 1942, and currently employ about 4,285 staff members. We are part of the U.S. Department of Commerce and overseen by the Economics and Statistics Administration (ESA). We honor privacy, protect confidentiality, share our expertise globally, and conduct our work openly. We are guided on this mission by our strong and capable workforce, our readiness to innovate, and our abiding commitment to our customers. View our comment policy: https://www.census.gov/about/contact-us/comment-policy.html View our privacy policy: https://www.census.gov/about/policies/privacy/privacy-policy.html
Company Details
us-census-bureau
11,978
63,746
92
census.gov
0
U.S_1398862
In-progress
Between 750 and 799

UCB Global Score (TPRM)XXXX

Description: United States Census Bureau fell victim to a cyberattack in January 2020 that was traced back to a Citrix vulnerability. The attackers managed to breach the internal network used to manage the agency’s remote workers but the automated firewall blocked communications with the attacker’s command and control servers. No census information or data was accessed by the attackers as the backdoor was discovered and removed.


No incidents recorded for U.S. Census Bureau in 2026.
No incidents recorded for U.S. Census Bureau in 2026.
No incidents recorded for U.S. Census Bureau in 2026.
UCB cyber incidents detection timeline including parent company and subsidiaries

The Census Bureau serves as the nation’s leading provider of quality data about its people and economy. We have been headquartered in Suitland, Maryland since 1942, and currently employ about 4,285 staff members. We are part of the U.S. Department of Commerce and overseen by the Economics and Statistics Administration (ESA). We honor privacy, protect confidentiality, share our expertise globally, and conduct our work openly. We are guided on this mission by our strong and capable workforce, our readiness to innovate, and our abiding commitment to our customers. View our comment policy: https://www.census.gov/about/contact-us/comment-policy.html View our privacy policy: https://www.census.gov/about/policies/privacy/privacy-policy.html


Il ministero dell'Interno è una struttura complessa il cui assetto organizzativo è disciplinato dal D.L.vo n. 300/99 e dai provvedimenti attuativi. A livello centrale, si articola in uffici di diretta collaborazione con il ministro (D.P.R. n. 98/2002) e cinque dipartimenti (D.P.R. n. 398/2001 e succ
U.S. Environmental Protection Agency’s (EPA) mission is to protect human health and the environment. EPA works to ensure that: - Americans have clean air, land and water; - National efforts to reduce environmental risks are based on the best available scientific information; - Federal laws protecti

Most people know that the National Park Service cares for national parks, a network of over 420 natural, cultural and recreational sites across the nation. The treasures in this system – the first of its kind in the world – have been set aside by the American people to preserve, protect, and share t

Bli en samhällsbyggare – jobba i Malmö stad! Genom att arbeta i Malmö stad får du möjlighet att arbeta med hållbar samhällsutveckling. Som en samhällsbyggare spelar du en viktig roll i Malmös utveckling och därför ser vi oss som framtidens arbetsplats. Människors lika värde är en förutsättning fö

Empresa Brasileira de Correios e Telégrafos foi criada como empresa em 1969 por decreto lei. Hoje conta com mais de 100.000 empregados, tem presença em todos os municípios do Brasil. NEGÓCIO: Soluções que aproximam. MISSÃO: Fornecer soluções acessíveis e confiáveis para conectar pessoas, institu

At the Home Office, we help to ensure that the country is safe and secure. We’ve been looking after UK citizens since 1782. We are responsible for: - working on the problems caused by illegal drug use - shaping the alcohol strategy, policy and licensing conditions - keeping the United Kingdom safe

Page officielle du ministère de l'Éducation nationale. Retrouvez toute l'information sur www.education.gouv.fr, twitter.com/education_gouv, facebook.com/education.gouv et dans nos lettres d'informations (bulletin hebdo et lettre education.gouv.fr). --------------------------------------------------

De organisatie bestaat uit diverse onderdelen, waaronder de Belastingdienst, Douane, Toeslagen, FIOD en enkele facilitaire organisaties. Met ruim 30.000 medewerkers werken we in kantoren die verspreid zijn over het hele land. Gezamenlijk heffen, innen en controleren we belastingen. Daarnaast zorgen

Its main functions are to: collect and administer all national taxes, duties and levies; collect revenue that may be imposed under any other legislation, as agreed on between SARS and an organ of state or institution entitled to the revenue; provide protection against the illegal importation
.png)
Steven M. McAndrews serves as the Deputy Director for Threat Analysis and Incident Response, within the Office of Cybersecurity, Energy Security,...
After the 2020 Census, the Census Bureau initiated four enterprise-wide programs to modernize and consolidate the IT systems that collect,...
Beau Houser serves as the Chief Information Security Officer (CISO) for the US Census Bureau where he leads the agency's cybersecurity program.
Learn more about the data from the US Census Bureau showing large businesses using AI tools less than previous months.
The first United States Census was taken at the dawn of the nation in 1790, under George Washington's presidency and then-Secretary of State...
The 2030 census program could encounter multiple issues, which are likely to influence the design and implementation of the population...
In the two years since the last Digital States Survey from the Center for Digital Government, leading states have put resident experience at...
Business leaders say the county is seeing growth in many types of companies, including high technology, cybersecurity and bio-health firms.
[12/21/2017 Updated with new statement from the US Census Bureau stating Alteryx only had access to publicly available data on census.gov].

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of U.S. Census Bureau is http://www.census.gov.
According to Rankiteo, U.S. Census Bureau’s AI-generated cybersecurity score is 776, reflecting their Fair security posture.
According to Rankiteo, U.S. Census Bureau currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, U.S. Census Bureau has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, U.S. Census Bureau is not certified under SOC 2 Type 1.
According to Rankiteo, U.S. Census Bureau does not hold a SOC 2 Type 2 certification.
According to Rankiteo, U.S. Census Bureau is not listed as GDPR compliant.
According to Rankiteo, U.S. Census Bureau does not currently maintain PCI DSS compliance.
According to Rankiteo, U.S. Census Bureau is not compliant with HIPAA regulations.
According to Rankiteo,U.S. Census Bureau is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
U.S. Census Bureau operates primarily in the Government Administration industry.
U.S. Census Bureau employs approximately 11,978 people worldwide.
U.S. Census Bureau presently has no subsidiaries across any sectors.
U.S. Census Bureau’s official LinkedIn profile has approximately 63,746 followers.
U.S. Census Bureau is classified under the NAICS code 92, which corresponds to Public Administration.
No, U.S. Census Bureau does not have a profile on Crunchbase.
Yes, U.S. Census Bureau maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/us-census-bureau.
As of April 03, 2026, Rankiteo reports that U.S. Census Bureau has experienced 1 cybersecurity incidents.
U.S. Census Bureau has an estimated 12,425 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Cyber Attack.
Detection and Response: The company detects and responds to cybersecurity incidents through an containment measures with automated firewall blocked communications, containment measures with backdoor discovered and removed..
Title: United States Census Bureau Cyberattack
Description: The United States Census Bureau fell victim to a cyberattack in January 2020 that was traced back to a Citrix vulnerability. The attackers managed to breach the internal network used to manage the agency’s remote workers but the automated firewall blocked communications with the attacker’s command and control servers. No census information or data was accessed by the attackers as the backdoor was discovered and removed.
Date Detected: January 2020
Type: Cyberattack
Attack Vector: Network Intrusion
Vulnerability Exploited: Citrix Vulnerability
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.
Identification of Attack Vectors: The company identifies the attack vectors used in incidents through Citrix Vulnerability.

Systems Affected: Internal network for remote workers

Entity Name: United States Census Bureau
Entity Type: Government Agency
Industry: Government
Location: United States

Containment Measures: Automated firewall blocked communicationsBackdoor discovered and removed
Handling of PII Incidents: The company handles incidents involving personally identifiable information (PII) through by automated firewall blocked communications, backdoor discovered and removed and .

Entry Point: Citrix Vulnerability
Backdoors Established: ['Backdoor discovered and removed']

Root Causes: Citrix Vulnerability,
Most Recent Incident Detected: The most recent incident detected was on January 2020.
Most Significant System Affected: The most significant system affected in an incident was Internal network for remote workers.
Containment Measures in Most Recent Incident: The containment measures taken in the most recent incident was Automated firewall blocked communicationsBackdoor discovered and removed.
Most Recent Entry Point: The most recent entry point used by an initial access broker was an Citrix Vulnerability.
.png)
A vulnerability was found in Nothings stb up to 1.26. Impacted is the function stbtt_InitFont_internal in the library stb_truetype.h of the component TTF File Handler. Performing a manipulation results in out-of-bounds read. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read in VS6ComFile!get_macro_mem_COM. Opening a crafted V7 file may lead to information disclosure from the affected product.
V-SFT versions 6.2.10.0 and prior contain a stack-based buffer overflow in VS6ComFile!CSaveData::_conv_AnimationItem. Opening a crafted V7 file may lead to arbitrary code execution on the affected product.
V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6MemInIF!set_temp_type_default. Opening a crafted V7 file may lead to information disclosure from the affected product.
V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6ComFile!load_link_inf. Opening a crafted V7 file may lead to information disclosure from the affected product.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.