Workflow
KUAISHOU(01024)
icon
Search documents
21调查|一场蓄谋已久的攻击!起底黑灰产围猎快手黑幕
Core Viewpoint - Kuaishou experienced a significant network security incident involving the influx of explicit content in its live streaming rooms, raising questions about the company's governance and cybersecurity measures [1][10]. Group 1: Incident Overview - On December 22, Kuaishou's live streaming platform was attacked, leading to a surge of pornographic content [1]. - The company's stock price fell by over 3% following the incident [1]. - Experts suggest that the attack was not spontaneous but rather a well-planned operation by organized cybercriminals [2][3]. Group 2: Nature of Cyber Attacks - The term "black and gray industry" refers to illicit and borderline illegal operations within the internet sector, often involving automated attacks that exploit vulnerabilities in platforms like Kuaishou [2]. - Black industry activities are illegal, while gray industry activities are considered violations; both often intersect, particularly in live streaming and e-commerce [2]. - The attack on Kuaishou involved automated tools for mass account registration and content disruption, overwhelming the platform's manual review processes [3][7]. Group 3: Security Challenges - Kuaishou's live streaming environment is particularly vulnerable due to its high traffic, interactivity, and low entry barriers, making it an attractive target for cybercriminals [7]. - The platform's reliance on manual review and basic keyword filtering is insufficient against the scale of automated attacks, leading to a significant gap in defense efficiency [7]. - Experts emphasize the need for improved risk control measures, including better identification of batch registrations and real-time monitoring of suspicious activities [8]. Group 4: Legal and Compliance Implications - Kuaishou has reported the incident to relevant authorities and is currently addressing the security breach [10]. - Legal experts indicate that while the incident appears to be a content moderation issue, it fundamentally stems from a security breach due to a large-scale cyberattack [10][11]. - The company may face administrative penalties depending on the findings of regulatory investigations into its security practices and response mechanisms [11].
快手到底惹了谁?
3 6 Ke· 2025-12-23 09:54
12 月 23 日港股开盘,快手股价应声下跌,开盘跌近 6%,至收盘跌幅收窄为 3.52%。快手早间对外回应称,平台遭遇黑灰产攻击,目前已紧急修复处 理。 午间,快手在港股发布自愿性公告,称快手应用直播功能于昨晚 22 时左右遭到网络攻击,公司已第一时间启动应急预案,经全力处置与系统修复,快手 应用的直播功能已陆续恢复正常服务,快手应用的其他服务未受影响。 封面 I 我是谁:没有绝对安全的系统 中国最大短视频平台之一的快手科技昨日晚间(12 月 22 日)遭遇大规模网络攻击,直播频道出现大量色情及血腥内容,有媒体称部分直播间一度涌入近 十万人观看。此后快手直播一度关停,至凌晨后陆续恢复正常。这是过去几年来中国互联网平台遭遇的最大规模安全事故之一。 快手自愿性公告 相关讨论自今晨起不断发酵,真假信息混杂。一些谣言甚至波及到微信账号安全。今日早间,有传言称快手违规直播间中隐藏病毒链接,用户点击后微信 账号即被盗取。 微信员工"客村小蒋"对外回应称,"昨晚到现在,没有相关的微信账号被盗案例。"随后,微信官方辟谣平台"谣言过滤器"对外表示,经核实上述信息不 实。"微信账号有严格的安全保护机制,截至目前,我们没有发现相 ...
日活4亿的直播平台深夜“失守”!快手月薪6万急招安全岗
Xin Lang Cai Jing· 2025-12-23 09:12
Core Viewpoint - Kuaishou (1024.HK) faced a significant attack on its live streaming platform, resulting in the spread of inappropriate content and a temporary shutdown of the live streaming feature. The company reported that the incident was due to a coordinated black and gray market attack exploiting technical vulnerabilities and automated tools to bypass content moderation systems [2][24][32]. Group 1: Incident Overview - On December 22, Kuaishou's live streaming platform was flooded with pornographic content, leading to the suspension of numerous live streams and a complete shutdown of the live section by midnight [2][5][26]. - The attack involved approximately 17,000 automated accounts that were used to stream pre-recorded illegal videos, overwhelming the platform's content moderation systems [6][32]. - Kuaishou's stock price fell by 3.52% to HKD 64.35, with a market capitalization drop of HKD 554 million following the incident [24][26]. Group 2: Technical Analysis - Experts indicated that the attack was a P0-level incident, suggesting it was a premeditated large-scale attack that exploited vulnerabilities in the live streaming interface, bypassing user authentication and content review processes [8][29]. - The attackers utilized automated tools to create a surge of traffic that overwhelmed Kuaishou's content safety review interface, leading to a failure in the moderation system [32][30]. - The incident highlighted the limitations of Kuaishou's traditional human and algorithmic defenses against such automated and large-scale attacks [30][42]. Group 3: Company Response and Future Actions - Kuaishou initiated an emergency response, reporting the incident to relevant authorities and launching a cleanup of the inappropriate content [27][29]. - Following the attack, Kuaishou announced a gradual restoration of its live streaming services and emphasized its commitment to combating illegal content [27][24]. - The company is now actively recruiting for security positions to strengthen its defenses against future attacks, offering competitive salaries to attract talent [41][42]. Group 4: Business Performance Context - Kuaishou reported a user base of 416 million daily active users and a revenue of CNY 1,032.1 billion for the first three quarters of 2025, reflecting a year-on-year growth of 12.8% [16][36]. - The company's revenue growth was driven by online marketing services, live streaming, and e-commerce, with significant contributions from AI technology [19][39]. - Despite the recent incident, Kuaishou's overall business performance remains strong, with analysts optimistic about its future growth prospects, particularly in AI-driven services [39][40].
港股收评:市场情绪谨慎!科技股分化,贵金属冲高回落
Ge Long Hui· 2025-12-23 09:09
12月23日,港股三大指数午后持续走低,恒生科技指数一度跌至1%,最终收跌0.69%,恒生指数、国企指数由涨转跌,分别下跌0.11%及0.29%,市场情绪 谨慎。 | 名称 | | 最新价 | 涨跌额 | 涨跌幅 | | --- | --- | --- | --- | --- | | 恒生科技指数 800700 | ma | 5488.89 | -37.94 | -0.69% | | 恒生指数 | whiles | 25774.14 | -27.63 | -0.11% | | 800000 | mini | | | | | | | 8913.83 | -25.85 | -0.29% | | 国企指数 800100 | Marine | | | | 盘面上,大型科技股涨跌不一,风电股全天维持强势,建材水泥股、内银股多数上涨。金价在创下历史新高后,黄金、铜、铝等有色金属股呈现高开低走行 情,手游股、军工股、机器人概念股、半导体芯片股集体低迷。 | 行业热力图 √ | 领涨板块 | | | | | | | | | --- | --- | --- | --- | --- | --- | --- | --- | --- ...
快手、腾讯、小米,集体下跌
Di Yi Cai Jing Zi Xun· 2025-12-23 09:08
Market Overview - The Hang Seng Index closed down by 0.11% at 25,774.14, while the Hang Seng Tech Index fell by 0.69% to 5,488.89 [2][4] - The Hang Seng Biotech Index decreased by 0.50% to 14,742.59, and the Hang Seng China Enterprises Index dropped by 0.29% to 8,913.83 [2] - The overall market saw declines in sectors such as media, defense, pharmaceuticals, and semiconductors, while sectors like chemicals, electrical equipment, transportation, and banking showed gains [2] Gold Stocks Performance - Gold stocks continued to rise, with WanGuo Gold Group increasing by over 5%, Shandong Gold by over 4%, and other companies like Zhaojin Mining and ZhuFeng Gold rising by over 2% [2][3] - The precious metals index rose by 0.16%, reaching 6,958.48 [3] Technology Sector Performance - The technology sector faced significant declines, with notable drops in companies such as Horizon Robotics down nearly 4%, Tencent Holdings down over 2%, and Xiaomi Group and Trip.com down over 1% [3][4] - Kuaishou reported a drop of over 3% following a cyberattack on its live streaming feature, which has since been restored [5] Notable IPO - Nobikang experienced a remarkable debut, soaring over 363% on its first trading day, closing at 371.00 with a market capitalization of approximately 14 billion [7][8]
直播间现大量色情内容,快手称遭黑灰产攻击:直播功能已逐步恢复正常服务!奇安信专家:黑客规模化攻击超出人工审核应对极限
Mei Ri Jing Ji Xin Wen· 2025-12-23 08:40
Core Viewpoint - Kuaishou Technology's live streaming feature was attacked on December 22, 2025, leading to a significant disruption, but the company has since restored normal service and reported the incident to authorities [1][10]. Group 1: Incident Details - The attack resulted in the appearance of a large amount of pornographic content in multiple live streams on the Kuaishou platform, with one stream reportedly having 100,000 viewers before being shut down [4][10]. - The attack was characterized as a well-organized black and gray market hacker attack, with experts suggesting that vulnerabilities in the live streaming interface were exploited [7][10]. - The incident is classified as a P0-level accident, indicating a severe impact on core business functions, necessitating immediate response and investigation [8][10]. Group 2: Company Response - Kuaishou has initiated an emergency response plan and is taking legal measures to protect its interests and those of its shareholders [1]. - The company has been criticized for its slow response time in shutting down the offending live streams, highlighting the need for improved emergency protocols [7][8]. - Experts recommend that Kuaishou enhance its automated response systems to quickly detect and address such incidents in the future [8][10]. Group 3: Market Impact - Following the incident, Kuaishou's stock price fell nearly 4%, with a market capitalization of HKD 276.7 billion [11]. - The cybersecurity sector saw a brief surge in stock prices, with companies like Feiling Kesi rising by 9.63% in response to the incident [13]. Group 4: Broader Implications - The attack underscores the shift towards automated attacks in the black and gray market, which can overwhelm traditional manual content moderation systems [10]. - Experts emphasize the importance of addressing both external threats and internal vulnerabilities, advocating for a comprehensive security strategy that includes internal controls [10].
快手,最新公告!微信紧急辟谣
Core Viewpoint - Kuaishou's live streaming feature was attacked on December 22, 2025, leading to a temporary disruption, but has since been restored, with other services unaffected [1][3] Group 1: Incident Details - The cyber attack occurred around 22:00 on December 22, 2025, causing the live streaming function to fail [1] - Kuaishou activated its emergency response plan immediately and has been working on system recovery [1] - The attack was executed by a hacker organization using automated tools, which overwhelmed the platform's traditional manual defense mechanisms [3] Group 2: Company Response - Kuaishou has reported the incident to law enforcement and relevant authorities, condemning illegal activities associated with the attack [3] - The company emphasizes its commitment to compliance and will take appropriate legal measures to protect its interests and those of its shareholders [3] Group 3: Market Impact - Following the incident, Kuaishou's stock price fell by 3.52%, closing at HKD 64.35 per share on December 23 [3]
专家谈快手遭黑客大规模攻击:规模化攻击超出人工审核应对极限
Xin Jing Bao· 2025-12-23 08:21
Core Viewpoint - The incident involving Kuaishou highlights the challenges of manual content moderation in the face of large-scale automated attacks by hackers, necessitating the adoption of AI-driven automated defenses [1] Group 1: Incident Overview - On December 22, Kuaishou experienced a surge of inappropriate live streaming content [1] - Security experts from Qihoo 360 analyzed that the attack was a large-scale operation that exceeded the limits of manual review [1] Group 2: Attack Mechanism - Hackers utilized automated tools to register and control numerous zombie accounts, enabling rapid publication and dissemination of violating content [1] - Traditional manual moderation is inherently slow, and even increasing personnel cannot effectively address the efficiency gap in defense [1] Group 3: Company Response - Kuaishou issued a statement strongly condemning illegal activities associated with black and gray markets [1] - The company has reported the incident to law enforcement and relevant authorities [1]
快手最新声明:强烈谴责
中国能源报· 2025-12-23 08:15
Core Viewpoint - Kuaishou Technology announced that its live streaming feature was attacked on December 22, 2025, but has since been restored, with no other services affected. The company emphasizes its commitment to compliance and has reported the incident to law enforcement [3]. Group 1: Incident Response - The live streaming function of Kuaishou was compromised due to a cyber attack on December 22, 2025, around 2:00 AM [3]. - The company activated its emergency response plan immediately and has worked to restore the live streaming service, which is now gradually returning to normal [3]. - Kuaishou has reported the incident to the police and relevant authorities, condemning illegal activities associated with the attack and indicating potential legal actions to protect its interests and those of its shareholders [3]. Group 2: Company Overview - Kuaishou is a leading content community and social platform in China and globally, aiming to create value for customers through continuous technological innovation and product upgrades [4]. - The platform allows users to share their lives through short videos and live streaming, catering to diverse needs such as entertainment, online marketing, e-commerce, local services, and gaming [4].
快手遭黑灰产攻击,专家呼吁筑牢双重安全防线
Guo Ji Jin Rong Bao· 2025-12-23 08:13
Core Insights - The recent cyber attack on Kuaishou highlights the vulnerability of digital platforms to automated attacks by hacker organizations [1][3] - The incident serves as a wake-up call for the entire industry regarding the need for advanced security measures in the face of evolving threats [5] Group 1: Attack Details - Kuaishou experienced a severe attack on December 22, where hackers infiltrated the system within 60 to 90 minutes, leading to a collapse of the platform's security [1] - Approximately 17,000 zombie accounts were used to create live streams that broadcasted illegal content, with some streams attracting nearly 100,000 viewers [1] Group 2: Security Challenges - The attack was facilitated by the shift to an "automated attack" era, where traditional manual defense mechanisms are inadequate [3] - The rapid influx of violating content overwhelmed manual review processes, resulting in a "ban not keeping up with new additions" scenario [4] Group 3: Recommendations for Improvement - Experts emphasize the need for companies to adopt a dual defense strategy that addresses both external attacks and internal vulnerabilities [4] - The implementation of AI-driven automated security measures is crucial to counteract the increasing sophistication of cyber threats [4][5] - A zero-trust architecture is recommended to strengthen internal defenses against insider threats and unauthorized access [5]