Workflow
数据安全
icon
Search documents
实探“磐石行动”:AI+网络安全成新赛道 行业年复合增长9.2%
"磐石行动""红队"攻击实战现场。 记者 宋薇萍 摄 ◎记者 宋薇萍 近日,上海长兴岛临港长兴科技园内上演了一场"红蓝对决"。 "红队"是由全国各网络安全专业企业、机构和高校组成的顶尖攻击队伍,他们身着红色马甲,被称 为"红队"。"蓝队"则是由上海市网络基础设施、互联网、工业互联网平台与标识解析企业组成的防守及 溯源反制队伍。他们之间进行了一场长达10天的鏖战。 这场由上海市通信管理局联合上海市委网信办、上海市经信委、上海市公安局、上海市教委、上海市普 陀区人民政府和长兴岛管委会共同主办的网络安全实战攻防活动,被称为"磐石行动"。 近年来,上海每年举办一次"磐石行动"。护航城市数字化转型,打造具有世界影响力的国际数字之都, 上海正以"磐石行动"为抓手,持续织密网络安全、数据安全防护网。 不是一个人在战斗 上海证券报记者在"红队"攻击实战现场看到,"红队"由50支富有朝气和充满战斗力的年轻队伍组成,队 员以"90后"居多,还有不少"00后"。 对抗升级的背后,离不开AI技术的驱动。本届"磐石行动"中,不少团队使用了大模型技术。"除往年惯 用的传统防守手段外,我们通过将AI深度植入防护体系,构建了集智能监测、动态 ...
Varonis Systems (VRNS) FY Conference Transcript
2025-06-04 18:42
Summary of Varonis Systems (VRNS) FY Conference - June 04, 2025 Company Overview - **Company**: Varonis Systems - **Industry**: Data Security - **Business Model**: SaaS (Software as a Service) Core Points and Arguments 1. **Data Security Focus**: Varonis provides a data security platform that identifies, protects, and monitors sensitive data to prevent threats such as ransomware, insider threats, and AI abuse [3][4][5] 2. **Risk Assessment Approach**: The company conducts risk assessments to identify where sensitive data is at risk and how to mitigate those risks effectively [7][16][29] 3. **Blast Radius Concept**: The term "blast radius" refers to the amount of sensitive data accessible to a compromised user, emphasizing the importance of limiting access to reduce potential damage [9][10][11] 4. **Challenges in Data Protection**: Traditional data loss prevention (DLP) methods have been ineffective, leading to a focus on monitoring and automating data protection [13][15][16] 5. **Comprehensive Visibility**: Varonis offers unprecedented visibility into sensitive data, including its location, access permissions, and usage patterns, which is crucial for effective data protection [18][22][23] 6. **Automated Remediation**: The platform automates the process of fixing identified risks, such as excessive access permissions and misconfigurations, enhancing overall data security [19][25][26] 7. **AI and Data Security**: The rise of AI tools like Microsoft Copilot and ChatGPT has increased the urgency for organizations to secure sensitive data, as these tools can inadvertently expose information [27][48][49] Financial Transition and SaaS Model 1. **SaaS Transition**: Varonis is transitioning to a SaaS model, aiming for 80% of its Annual Recurring Revenue (ARR) to come from SaaS by the end of 2025, ahead of the original five-year plan [42][43] 2. **Financial Metrics**: The company reported a positive free cash flow guidance of $120 to $125 million for the year, indicating strong financial health during the transition [44] 3. **Customer Benefits**: The SaaS model simplifies customer engagement, reduces hardware costs, and improves renewal rates due to the stickiness of the Managed Data Detection Response (MDDR) service [51][52] 4. **Cost Efficiency**: Customers experience a total cost of ownership reduction despite a 25-30% uplift in license costs when switching from on-premises to SaaS [54] Competitive Landscape 1. **Increased Competition**: The competitive landscape has evolved with more players entering the data security and discovery space, particularly in cloud and SaaS applications [31][32][33] 2. **Differentiation**: Varonis differentiates itself through comprehensive coverage across data stores and the ability to automate risk remediation, which is not offered by many competitors [35][36] Additional Insights 1. **Real-Time Monitoring**: Varonis emphasizes the importance of real-time monitoring of data transactions to detect insider threats and other anomalies [26][28] 2. **Identity Layer Understanding**: The company is focusing on understanding the identity layer, which is crucial for identifying risky behaviors among users [22] 3. **Future Opportunities**: The company sees significant growth potential in the AI space, as organizations increasingly adopt AI tools that require robust data security measures [47][48] This summary encapsulates the key points discussed during the Varonis Systems FY Conference, highlighting the company's focus on data security, financial transition to a SaaS model, competitive landscape, and future opportunities in the AI domain.
富人被盯上!又一家奢侈品牌用户数据被泄露
凤凰网财经· 2025-06-04 13:49
Core Viewpoint - Recent data breach incidents involving luxury brands Cartier and Dior have raised concerns about customer data security, with both companies confirming the leaks and taking steps to address the situation [1][4]. Group 1: Cartier Data Breach - Cartier has confirmed that customer data, including names and birth dates, was leaked, but financial information such as bank details was not compromised [2][4]. - The data breach affects customers globally, not just in the Chinese market, and the company is currently investigating the incident while collaborating with external cybersecurity experts [4]. Group 2: Dior Data Breach - Dior also reported a data breach where unauthorized external personnel accessed some customer data, which was discovered on May 7, 2025 [4]. - Similar to Cartier, the leaked information does not include financial data but involves personal details such as names, gender, and contact information [4]. - Dior has taken immediate action by hiring a professional cybersecurity team to investigate and has advised affected customers to remain vigilant against suspicious communications [4].
22天,两大奢侈品品牌先后“失守”用户数据安全!“大盗”是谁?专窃高净值客群
Mei Ri Jing Ji Xin Wen· 2025-06-04 13:14
每经记者|杜蔚 每经编辑|张海妮 "真没想到,我的个人数据竟会因为买奢侈品而被频繁'泄露'!"魏女士向《每日经济新闻》记者道出了不满与担忧。6月3日晚,她收到了Cartier(卡地亚) 的邮件,称其个人数据恐被泄露。而就在不久前(5月12日),魏女士还收到过Dior(迪奥)的提示短信,提及其个人数据被泄露。 图片来源:受访者提供 今日(6月4日)上午,《每日经济新闻》记者以消费者身份致电卡地亚。公司官方客服表示,泄露消息属实,除了中国市场,还涉及全球市场的部分卡地亚 顾客,"目前事件正在持续调查中,我们已向相关监管部门报备"。 作为珠宝与钟表行业的百年奢侈品牌,卡地亚在业内享有"珠宝商皇帝"称号,是上市公司历峰集团的业绩贡献大户。此番,为何会突发核心用户数据外泄, 品牌将如何应对? 从迪奥到卡地亚,短短22天,全球两大奢侈品品牌均被曝出核心用户数据被盗事件,引发行业担忧。究竟是哪些"大盗",频繁"偷走"奢侈品高净值用户数 据? 卡地亚承认用户数据被泄露,涉及全球市场 "是不是钓鱼网站?""我都被泄露几次了,已经没有隐私了"⋯⋯ 《每日经济新闻》记者注意到,花费数万元购买奢侈品却遭遇个人信息"被窃"的并非魏女士 ...
富人被盯上!又一家奢侈品牌用户数据被泄露,回应:属实
21世纪经济报道· 2025-06-04 06:53
近日,突然传出知名奢侈品牌卡地亚用户数据被泄露的消息。 卡地亚邮件显示,泄露的信息包括客户姓名、出生日期等,但不涉及银行信息等。 社交平台截图 据澎湃新闻报道,迪奥相关工作人员表示,近期确实发生了客户信息泄露的事件,已立即采 取措施并聘请专业网络安全专家团队进行调查。 迪奥相关工作人员表示介绍,受影响的数据中不包含客户的银行卡等财务信息,主要涉及姓 名、性别、联系方式等个人信息。公司建议受影响客户保持警惕,避免打开不明来源的信息 或链接,如有任何可疑情况可随时拨打客服中心寻求帮助。此外,为进一步加强系统安全 性,迪奥方面已对可能受影响的信息实施监控,后续也将全力协助受影响客户。 来源 | 每日经济新闻、澎湃新闻 本期编辑 金珊 热搜!张雪峰怒斥:提出这问题的人,怎么那么闲 枕套惊现医院名字!亚朵再曝卫生问题,一季度住宿入住率下滑3.1% 雷军连发三问,点赞网友评论!小米股价走高 SFC 21君荐读 据《每日经济新闻》报道,6月4日上午,卡地亚官方客服向记者表示, 泄露消息属实,但泄 露的客户并非只有中国市场,而是涉及全球市场的部分卡地亚顾客。 其还表示,目前事件正在持续调查中,已向相关监督部门报备。"我们有一 ...
卡地亚客服承认确有部分客户数据遭泄露!迪奥曾出现类似情况
Nan Fang Du Shi Bao· 2025-06-04 06:46
值得注意的是,5月13日,有多位网友反映称收到了迪奥发来的短信,其中显示,"我们于5月7日发现, 曾有未经授权的外部人员获取了我们持有的部分客户数据。在中国收集的受影响的客户个人信息的最大 范围可能包括姓名、性别、手机号码、电子邮箱地址、邮寄地址、消费水平、偏好,以及您可能已向我 们提供的其他信息。被访问的数据库中不包含诸如银行账户详情、国际银行账户号码(IBAN)或信用 卡信息等财务信息。" 迪奥表示,"初步调查显示,此次事件是由数据库遭受未经授权的访问所致。对于此事给您带来的任何 不便及困扰,我们深表歉意。"针对这一事件,迪奥官方客服向南都记者表示,"我们已采取措施加以控 制,目前暂无后续进展的相关信息。" 消费者称收到了卡地亚发来的邮件。 上述消费者向南都记者提供的邮件截图显示,卡地亚致歉称,"近期有未经授权者短暂进入系统并获取 部分有限的客户数据。我们已通知相关部门,正与外部网络安全专家合作处理此事。根据调查结果,您 的部分信息或受此次事件影响,其中包括姓名、电子邮件地址及所在国家/地区。任何密码、信用卡数 据或其他银行信息资料均未受到影响。对于此次事件可能给您造成的不便,我们深表歉意。" 对此,卡地 ...
禁用 Cursor 等工具?字节内部致歉并补充说明。网友:禁了,也没禁
程序员的那些事· 2025-06-03 01:16
以下文章来源于算法爱好者 ,作者小蒜 算法爱好者 . 算法是程序员的内功!「算法爱好者」专注分享算法相关文章、工具资源和算法题,帮程序员修炼内 功。 5 月 28 日,有媒体报道,字节的安全与风控部门发布内部邮件,宣布自 6 月 30 日起将逐步禁用包括 Cursor 和 Windsurf 在内的多款第三方 AI 开发工具 。 引发争议 这一决定在技术团队中引发激烈争论,员工意见呈现两极分化。 支持的员工主要持 2 种观点: 值得注意的是,反对者特别质疑所谓"数据安全"的理由。他们指出 Cursor Pro 版本就提供隐私保护模式,而 Trae 自身反而缺乏类似功能。 二发邮件 或许是看到了不一样是声音。 28 号晚 7 点,字节跳动安全与风控部门再发邮件,对先前通知不到位表达歉意并作出进一步解释。 关于第三方 AI 开发工具的通知补充 北京时间 5 月 28 日早上,安全与风控部给研发同学发送了关于"第三方 AI 开发工具"的通知,因邮件背景讲的 不够清晰导致了一些误解,在此我们首先向大家表示歉意,并做出补充说明。 发布本次通知的主要原因是: 不少员工通过个人账户采购使用这些工具,数据沉淀到个人账户,不符合 ...
二姨看时尚|开云、韩国新世界出手收购;阿迪达斯爆用户数据泄露;爱马仕也做耳机了
Group 1: Industry Developments - Kering Group has acquired Giambattista Valli, increasing its stake to full ownership, becoming the main investor and strategic decision-maker [11] - South Korean retail giant Shinsegae Group plans to acquire a controlling stake in C&C International, a color cosmetics ODM manufacturer, valued at 285 billion KRW (approximately 14.94 billion RMB) [6] - La Perla, a high-end lingerie brand, has been sold to an investment entity, which will retain the brand's existing factories and employees [5] Group 2: Company Performance - Gap Inc. reported a 2.2% increase in net sales to $3.463 billion for Q1, with net profit rising 22% to $193 million, driven by strong performance from Old Navy [2] - Capri Holdings reported a 15.4% decline in revenue to $1.035 billion for Q4 FY2025, with a net loss of $645 million, reflecting struggles across its main brands [3] Group 3: Mergers and Acquisitions - Elf Beauty has acquired Hailey Bieber's skincare brand Rhode for $1 billion, consisting of $600 million in cash and $200 million in newly issued common stock, with potential additional payments based on future growth [4] - Fountain Capital is seeking to raise up to $1.32 billion by selling approximately half of its stake in Amer Sports Inc., a manufacturer of sports equipment [4] Group 4: Brand Value Rankings - Chanel has surpassed Louis Vuitton to become the second most valuable luxury brand globally, according to Brand Finance's 2025 rankings, with Porsche retaining the top position [7] Group 5: Retail Expansion - Balenciaga has opened its largest flagship store globally in Beijing, covering 1,204 square meters, emphasizing its commitment to the Chinese market [8] Group 6: Data Security Issues - Adidas has reported a data breach involving customer data theft from a service provider, although payment information and passwords were not compromised [12]
全面拥抱人工智能时代丨广西推出“桂智一号”AI平台
Guang Xi Ri Bao· 2025-05-31 02:11
Core Insights - The "Guizhi No. 1" data security management and AI application platform was officially launched by the Guangxi Academy of Sciences, marking a significant step in the field of artificial intelligence and data security [1][2] - There is an increasing demand for data security and privacy protection across various sectors, including government, education, research, and enterprises, due to the prominent issues surrounding data security [1] - Current data management levels are inconsistent, with data scattered across various departments without unified management and effective security measures [1] Group 1 - The "Guizhi No. 1" platform is based on NAS technology and integrates cutting-edge domestic open-source models such as DeepSeek, Qwen3, and QWQ, leveraging the efficiency and flexibility of AI agents [2] - The platform offers multiple intelligent applications, including smart audio and video transcription, document writing assistance, knowledge base retrieval, intelligent file classification, and risk warning, achieving lightweight deployment of large models for efficient operation [2] - A comprehensive data lifecycle management system has been established, covering the entire process from data collection to governance, ensuring data integrity, consistency, and security [2]
这家A股公司公告:实控人被刑事立案!公司今年一季度净利润同比下降947.89%
Mei Ri Jing Ji Xin Wen· 2025-05-30 14:22
每经编辑|张锦河 5月30日晚,*ST天喻(300205,股价4.18元,市值17.98亿元)发布公告称,公司收到武汉市公安局送达的《立案告知书》,公司实际控制人之一闫春雨等 人涉嫌挪用资金案,武汉市公安局认为符合刑事案件立案标准,根据规定现已决定立案侦查。 截至公告披露日,闫春雨未担任公司董事、监事、高级管理人员,上述事项不会对公司正常生产经营产生重大影响。公司将积极配合公安机关调查并持续关 注上述事项的进展情况,严格按照有关法律的规定和要求,及时履行信息披露义务。 公司年报显示,闫春雨,男,40岁,曾为公司董事长,任期起始日期为2021年09月27日,任期终止日期为2024年10月11日。 值得注意的是,近期*ST天喻董事、高管密集辞职。具体来看: 5月12日,*ST天喻公告,收到公司董事艾迪递交的书面辞职报告,艾迪因个人原因辞去公司董事职务(原定任期为2024年10月11日至2027年10月10日)。 5月14日,*ST天喻公告,公司副总经理兼财务负责人张艳菊、副总经理兼董事会秘书万骏因个人原因辞职。 官网显示,公司成立于1999年8月,深交所创业板上市公司(股票代码300205),注册资本4.3亿元, ...