Workflow
网络安全
icon
Search documents
成人玩具出现漏洞 可被远程控制/操作
猿大侠· 2025-08-01 04:10
Core Viewpoint - Lovense, a Singapore-based adult toy manufacturer with over 20 million users globally, is facing significant security vulnerabilities that allow unauthorized access to user accounts and personal information [1][2]. Group 1: Security Vulnerabilities - A security researcher named BobHacker discovered two critical vulnerabilities in Lovense's system, which were publicly disclosed after the company requested an unusually long 14-month period for fixes [2][7]. - The first vulnerability allows users' real email addresses to be exposed through network analysis tools, as Lovense associates usernames with email addresses, making it easy for others to identify users [4][6]. - The second vulnerability enables attackers to take over Lovense accounts by creating authentication tokens without needing passwords, allowing remote control of connected sex toys, posing potential real-world harm [5][6]. Group 2: Company Response and Timeline - Lovense has acknowledged the issue with the account takeover vulnerability and claims it has been fixed, while the email leakage vulnerability is still under repair, with an update expected to be released soon [7]. - The company has not clarified why it initially estimated a 14-month timeline for fixing the vulnerabilities, which has raised concerns among security researchers [7].
美方利用微软Exchange漏洞攻击我军工企业,窃取企业高层的邮件!详情披露
Mei Ri Jing Ji Xin Wen· 2025-08-01 03:29
Core Viewpoint - The article highlights the increasing frequency and sophistication of cyberattacks by U.S. intelligence agencies targeting China's high-tech military and defense sectors, posing significant threats to national security and research production safety [1][4]. Group 1: Cyberattack Incidents - In a notable incident from July 2022 to July 2023, U.S. intelligence exploited a zero-day vulnerability in Microsoft Exchange to attack a major military enterprise, gaining control of its email server for nearly a year and compromising over 50 critical devices [1][2]. - The attackers utilized multiple foreign IP addresses from countries such as Germany, Finland, South Korea, and Singapore to execute over 40 attacks, stealing emails from 11 individuals, including high-ranking officials, related to military product designs and core system parameters [2]. - Another incident from July to November 2024 involved attacks on a military communications and satellite internet enterprise, where attackers exploited unauthorized access and SQL injection vulnerabilities to implant backdoor programs and malware, compromising over 300 devices and targeting sensitive data [3]. Group 2: Threat Landscape - In 2024 alone, there were over 600 cyberattack incidents against important Chinese entities by foreign state-level APT organizations, with the defense and military sectors being the primary targets [4]. - U.S. intelligence-backed hacker organizations are characterized by their structured attack teams, extensive engineering support systems, and advanced vulnerability analysis capabilities, posing severe threats to China's critical information infrastructure and key personnel [4].
保障成都世运会网络安全 多家单位联合开展应急演练
Si Chuan Ri Bao· 2025-08-01 03:12
Core Viewpoint - The "Tianfu Casting Network - 2025" emergency drill for network security assurance during the Chengdu Universiade was conducted, involving various provincial departments and telecom operators to enhance cybersecurity capabilities [1] Group 1: Event Overview - The drill was organized by multiple provincial authorities including the Provincial Internet Information Office, the Provincial Communication Administration, the Economic and Information Technology Department, and the Public Security Department [1] - Participants included local telecom operators, industrial internet companies, and cybersecurity institutions such as China Academy of Information and Communications Technology and Aisino Security [1] Group 2: Focus Areas - The exercise focused on typical scenarios related to network security for the Chengdu Universiade, addressing threats such as cross-province denial-of-service attacks, webpage tampering, data leakage, and industrial internet security [1] - Emphasis was placed on real-world scenarios, collaborative defense, and the use of AI agents to assist in attack and defense decision-making [1] Group 3: Outcomes and Future Actions - The drill served as a comprehensive review of the network security assurance efforts for the Chengdu Universiade, with participating units effectively responding to simulated emergencies [1] - Relevant departments will summarize experiences, optimize emergency plans, enhance capability building, and improve practical response abilities to complex network attacks [1]
X @外汇交易员
外汇交易员· 2025-08-01 02:52
英伟达发言人声明表示,“网络安全对我们至关重要。英伟达的芯片中不存在‘后门’,不会让任何人通过远程方式访问或控制芯片。” ...
中国网络空间安全协会:美情报机构频繁对我国防军工领域实施网络攻击窃密
Xin Jing Bao· 2025-08-01 02:17
Core Insights - The article highlights the increasing focus of U.S. intelligence agencies on cyberattacks targeting China's high-tech military and defense sectors, posing significant threats to national security and research production safety [1] Group 1: Cyberattack Incidents - From July 2022 to July 2023, U.S. intelligence agencies exploited a zero-day vulnerability in Microsoft Exchange to attack a major military enterprise, controlling its email server for nearly a year and compromising over 50 critical devices [2] - The attackers utilized multiple foreign IP addresses to launch over 40 network attacks, stealing emails from 11 individuals, including senior executives, related to military product designs and core system parameters [2] - From July to November 2024, another cyberattack targeted a military enterprise in the communication and satellite internet sector, where attackers exploited unauthorized access and SQL injection vulnerabilities to implant backdoor programs and malware [3] Group 2: Statistics and Trends - In 2024, there were over 600 cyberattack incidents against important units in China, with the defense and military sector being the primary target, particularly from U.S.-backed hacker organizations [4] - These attacks are characterized by the use of organized cyberattack teams, extensive support engineering systems, and sophisticated attack tools, reflecting a serious threat to China's cybersecurity [4]
汽车早餐 | 兵器装备集团原副总经理刘卫东被双开;英伟达公司被约谈;印度对美关税措施失望称将维护利益
Domestic News - The National Internet Information Office of China has interviewed NVIDIA regarding the security risks associated with the H20 computing chip, which has been reported to have serious vulnerabilities [2] - In the first half of 2025, the export volume of new energy commercial vehicles from China increased by 230% year-on-year, with an estimated total sales of around 450,000 units outside China this year [3] - The growth of charging infrastructure in China saw a 99.2% year-on-year increase in the first half of 2025, with a total of 3.282 million new charging points added [4] - Beijing's government has introduced measures to support multi-child families in obtaining small car licenses, enhancing transportation guarantees [5] International News - India expressed disappointment over the U.S. decision to impose a 25% tariff on Indian goods, stating it will take necessary measures to protect its national interests [6] Corporate News - Rolls-Royce reported a 50% increase in operating profit for the first half of the year, reaching £1.7 billion, and raised its full-year profit guidance to between £3.1 billion and £3.2 billion [7] - BMW's second-quarter sales fell by 8.2% year-on-year to €33.93 billion, with a pre-tax profit decline of 31% [8] - Renault appointed Francois Provost as the new CEO, effective July 31, 2025, succeeding the interim CEO Duncan Minto [10] - Nissan China and Dongfeng Group have entered a public consultation period for a new joint venture focused on vehicle and parts exports [11] - Liu Weidong, former deputy general manager of China Weaponry Equipment Group, was expelled from the party and public office due to serious violations [12] - BYD reported a total sales figure of 2,145,954 vehicles in the first half of 2025, with overseas sales of passenger cars and pickups reaching 470,086 units [13] - Leap Motor announced the production of its 10,000th unit of the B01 model, which was launched on July 24, 2025 [14] - Avita Technology plans to launch its first co-created product with Huawei in the second half of next year, with a total of 17 new products planned by 2030 [15] - Lantu Automotive has completed the acquisition of the Wuhan Yunfeng factory for 723 million yuan, which has a production capacity of 150,000 units per year [16]
中原期货晨会纪要-20250801
Zhong Yuan Qi Huo· 2025-08-01 01:04
1. Report Industry Investment Rating There is no information about the industry investment rating in the provided report. 2. Core Viewpoints of the Report - The report presents the latest price changes of various commodities, including chemical and agricultural products, and analyzes the market trends of different sectors such as agriculture, energy - chemical, industrial metals, and option finance [4][13][14]. - It also covers macro - economic news, including policy changes, international trade policies, and economic data, which have an impact on the commodity and financial markets [7][8][9]. 3. Summary by Relevant Catalogs 3.1 Chemical and Agricultural Product Price Changes - **Chemical Products**: On August 1, 2025, compared with July 31, 2025, prices of some chemical products like coking coal increased (9.326% increase), while others such as natural rubber decreased (-0.172% decrease) [4]. - **Agricultural Products**: For agricultural products, the price of yellow soybean No.1 increased by 0.048%, and the price of rapeseed meal decreased by 0.815% [4]. 3.2 Macro - Economic News - **Regulatory and Policy News**: The National Cyberspace Administration of China interviewed NVIDIA regarding the security risks of its H20 computing chips. New regulations such as the "Stablecoin Ordinance" in Hong Kong came into effect on August 1, 2025 [7][8]. - **International Trade News**: The US will resume collecting so - called "reciprocal tariffs" on August 1, 2025, and is still in negotiation with multiple economies [8]. - **Economic Data**: The core PCE price index in the US rose 2.8% year - on - year in June, higher than the expected 2.7%. In 2024, China's "Three New" economic added value was 24.29 trillion yuan, with a year - on - year increase of 6.7% [8][9]. 3.3 Main Commodity Market Analysis 3.3.1 Agricultural Products - **Peanuts**: The peanut market is in a pattern of weak supply and demand, with prices expected to be in a narrow - range shock. It may be strongly shocked in the short - term but will not change the downward trend [13]. - **Oils and Fats**: The oils and fats market lacks driving forces and is expected to be weakly shocked [13]. - **Sugar**: The domestic sugar price is supported by low inventory, but attention should be paid to the supply pressure brought by the concentrated arrival of processed sugar in August. The international raw sugar lacks directional driving forces [13]. - **Corn**: The price of corn has broken through the lower edge of the previous shock range. It is recommended to short at high prices in the short - term, but beware of the rebound risk caused by policy support and weather speculation [13]. - **Pigs**: The pig market is in a situation of supply exceeding demand, and the price is expected to be in a range - bound shock [15]. - **Eggs**: After the price correction, the possibility of a sharp decline in egg prices is not high. For the 08 contract in the delivery month, it is recommended to avoid long positions and try short positions [15]. - **Cotton**: The cotton price has fallen recently due to the lack of fundamental support and capital promotion, as well as the cautious market sentiment. It is recommended to observe the support level at 13,350 yuan/ton in the short - term [15]. 3.3.2 Energy and Chemical Products - **Urea**: The supply of urea is in a state of phased reduction, and the demand is mixed. The futures price may continue to be weakly shocked in the short - term, but there is an improvement expectation for autumn fertilizers and export demand [15]. - **Caustic Soda**: The caustic soda has strong support below. It is recommended to pay attention to the 9 - 11 reverse spread [17]. - **Coking Coal and Coke**: The coking coal and coke are under short - term pressure and are running weakly [17]. 3.3.3 Industrial Metals - **Copper and Aluminum**: The copper price is under pressure due to the US tariff policy and the Fed's interest - rate decision. The aluminum price is expected to continue the high - level adjustment due to factors such as supply increase and consumption off - season [17]. - **Alumina**: The alumina market is in an oversupply pattern, but the spot price is relatively firm. Pay attention to the impact of macro - sentiment [17]. - **Steel Products**: The steel market is affected by factors such as macro - sentiment cooling and raw material price decline, and the price is expected to continue the weak trend in the short - term [19]. - **Ferroalloys**: The ferroalloy market is mainly affected by macro - expectations. It is recommended to operate with a shock - range mentality [19]. - **Lithium Carbonate**: The lithium carbonate market is in a pattern of strong supply and weak demand. It is recommended to hold short positions but beware of the support at 67,000 yuan/ton [19]. 3.3.4 Option Finance - **Options**: On July 31, the A - share market declined, and the volatility of options increased. Trend investors can pay attention to the strength - weakness arbitrage opportunities between varieties, and volatility investors can buy straddles to bet on increased volatility [20].
暑假生活丰富多彩
Group 1 - The event "e一起护网·共筑网络安全防线" was conducted by the Jiangsu Province Huai'an City Hongze District Internet Information Office in collaboration with the local police to promote online safety awareness among students [2] - Activities included interactive Q&A sessions, distribution of the "Minor's Online Safety Knowledge" handbook, and viewing online safety videos to educate students on protecting personal information [2] - The initiative aims to enhance students' awareness of online safety and ensure they have a safe and enjoyable summer vacation [2] Group 2 - Children in Hunan Province experienced scientific equipment at the Hunan Science and Technology Museum, enriching their summer activities and engaging with technology [2]
天融信取得代码处理业务相关专利
Sou Hu Cai Jing· 2025-08-01 00:37
Group 1 - The State Intellectual Property Office of China granted a patent to multiple companies under the name "Code Processing, Business Response Method and Device, Computer Equipment, Storage Medium" with the announcement number CN113986224B, applied for on November 2021 [1] - Hubei Tianrongxin Network Security Technology Co., Ltd. was established in 2000 in Wuhan, focusing on software and information technology services, with a registered capital of 30 million RMB [1] - Beijing Tianrongxin Network Security Technology Co., Ltd. was founded in 1995 in Beijing, also focusing on software and information technology services, with a registered capital of 350 million RMB [1] Group 2 - Beijing Tianrongxin Technology Co., Ltd. was established in 2003 in Beijing, primarily engaged in technology promotion and application services, with a registered capital of approximately 75.76 million RMB [2] - Beijing Tianrongxin Software Co., Ltd. was founded in 2012 in Beijing, focusing on software and information technology services, with a registered capital of 50 million RMB [2] - The companies have participated in numerous bidding projects, with Beijing Tianrongxin Network Security Technology Co., Ltd. involved in 5000 projects and Hubei Tianrongxin Network Security Technology Co., Ltd. in 19 projects [1][2]
WTO:一季度全球服贸增长放缓,但AI和旅游需求在发力
Di Yi Cai Jing Zi Xun· 2025-07-31 23:50
Core Insights - The World Trade Organization (WTO) reported a slowdown in global service trade growth to 5% year-on-year in Q1 2025, which is about half of the growth rates seen in 2024 and 2023 [2] - The slowdown is attributed to the appreciation of the US dollar against the euro and other currencies, along with increased economic uncertainty [2] - Service exports from Europe and North America grew only 3% year-on-year in Q1 2025, compared to 8% and 11% in Q1 2024, while Asia maintained a strong growth rate of 9% [2] Service Trade Slowdown Reasons - The primary reason for the overall slowdown in global service trade is the "other business services" category, which includes a wide range of services delivered mainly in a digital format [4] - In 2024, "other business services" accounted for approximately 60% of global service trade, with Europe contributing 40% of the exports [5] Sector-Specific Performance - In Q1 2025, the growth of sub-sectors within "other business services" slowed compared to the same period in 2024, with US exports growing by 4% versus 8% previously [6] - Financial services exports grew only 3% year-on-year, reflecting reduced investment activity due to global economic uncertainty, with EU and US exports growing by just 2% [6] - Global intellectual property-related services grew by 4% in Q1 2025, down from 7% in 2024, with the EU and US accounting for nearly 70% of 2024 exports [6] AI and Tourism Demand - Computer services exports were only slightly affected by the overall economic slowdown, driven by strong demand for AI, digital transformation, and cybersecurity solutions [7] - In Q1 2025, international travel grew by 5% year-on-year, with Asia seeing a 13% increase in tourism revenue, particularly driven by China (+96%) and other countries in the region [8] Regional Trade Performance - In the first five months of 2025, China's service trade grew steadily, with total service trade amounting to 32,543.6 billion yuan, a year-on-year increase of 7.7% [9] - The US service exports grew by 5%, while Canada experienced a decline of 6%, indicating divergent trends in North America [9]