Workflow
个人信息安全
icon
Search documents
保险公司客户遭精准“撬单”,牵出个人信息黑灰产团伙
Xin Jing Bao· 2025-09-11 07:16
Core Insights - The article highlights a significant issue of personal information leakage within the insurance industry, leading to targeted sales tactics by unauthorized parties [1][2] - A criminal group composed of former insurance employees and telemarketers was dismantled, resulting in the arrest of 24 individuals and the seizure of various electronic devices [1][2] Group 1: Incident Overview - A report was made by an insurance company in Shanghai regarding unauthorized companies targeting their clients with precise sales pitches, indicating a breach of customer data [1] - The investigation revealed that the criminal group utilized illegally purchased customer information to promote competing insurance products [1][2] Group 2: Criminal Activities - The group operated by selling personal insurance data at prices ranging from a few cents to several tens of yuan per entry, facilitating a layered resale process [2] - The police identified multiple individuals involved in the illegal acquisition and resale of data, many of whom had prior experience in the insurance sector [2] Group 3: Legal Actions and Recommendations - Eleven suspects have been formally arrested for violating personal information protection laws, while others are under various legal measures [2] - Authorities emphasize the importance of data security management within companies and encourage the public to be vigilant against unsolicited calls that reference personal information [2]
朴朴超市因APP违规被点名通报 CEO陈兴文会认真整改吗?
Sou Hu Cai Jing· 2025-08-25 09:13
Group 1 - The National Computer Virus Emergency Response Center detected 70 mobile applications, including "Pupu Supermarket," for illegal collection and use of personal information between July 2 and July 29, 2025 [1] - The specific version 5.6.4 of "Pupu Supermarket" was reported for not implementing necessary security measures such as encryption and de-identification [1] - The problematic version 5.6.4 is no longer available for download on the Huawei App Market, with the latest version 5.6.8 released on August 7 [2] Group 2 - "Pupu Supermarket" faced prior issues in 2020 for not clearly informing users about all privacy permissions requested [7] - In July 2023, the company was monitored by the Fuzhou Market Supervision Administration for pesticide residue exceeding safety standards in a product, but no legal action was taken due to sufficient traceability documentation provided by the company [7] - CEO Chen Xingwen, who has a background in advertising, founded "Pupu Supermarket" in 2016 after recognizing opportunities in the fresh e-commerce sector and is reportedly in talks with leading investment banks for a potential IPO in Hong Kong [8]
让技术迭代与治理升级同频共振
Ren Min Ri Bao· 2025-08-21 08:13
Core Viewpoint - The Ministry of Industry and Information Technology has initiated a pilot program for number protection services, introducing a dedicated 700 number segment to enhance the management of "privacy numbers" in China, which will help protect personal information and reduce the risk of data leakage [1][2]. Group 1: Privacy Number Service - The "privacy number," also known as the "intermediate number," is a temporary number assigned to users by internet platform companies to replace their real phone numbers, acting as a firewall to protect user privacy [2]. - Current daily order volume for number protection services in China is at least 350 million, indicating a significant demand for such services [2]. - The lack of unified technical standards and service norms has led to confusion among users, highlighting the need for a standardized approach to enhance the stability of privacy number services [2]. Group 2: Communication and Identification - Users will recognize that a call is using the number protection service when they see a 15-digit number starting with "700," which will help distinguish it from regular phone numbers [3]. - The introduction of this dedicated number segment is expected to meet the future demand for code resources in the delivery and ride-hailing sectors, which could reach trillions [3]. - Mobile numbers serve as a digital identity, linking personal identity, financial accounts, and social relationships, necessitating a robust protection network against information leakage [3]. Group 3: Industry Development and Regulation - The development of new technologies must be accompanied by enhanced governance to address emerging challenges, requiring continuous updates to technical tools and refined governance practices [4]. - Telecommunications operators and internet platforms are urged to take responsibility for providing a safer digital environment for users [4]. - The 10th anniversary of universal telecommunications services in China marks significant progress in making technology accessible, which is essential for economic development and improving people's livelihoods [4].
马蜂窝因涉及多项违规被点名通报 CEO陈罡会认真整改吗?
Sou Hu Cai Jing· 2025-08-19 06:02
运营商财经网 实习生郑永杰/文 运营商财经网发现,在此之前《马蜂窝》就有过多次被官方点名通报的经历。2019年10月,北京市消费 者协会发布互联网消费捆绑搭售问题调查结果,马蜂窝因涉嫌误导消费者在购买飞机票、景点门票时购 买保险而被点名通报。 无独有偶,2020年马蜂窝旅行因未建立并公布个人信息安全投诉、举报渠道,或未在承诺时限内受理并 处理,涉嫌隐私不合规而被通报。2022年,工信部通报84款存在侵害用户权益行为APP,马蜂窝旅游因 为违规收集个人信息而再一次被点名。 马蜂窝的CEO陈罡在接受采访时曾表示,马蜂窝的定位是中国最大的旅游社区,让爱旅游的人可以在上 面分享。不知道他有没有关注上述问题,会不会积极部属整改。 运营商财经(官方微信公众号yyscjrd)—— 主流财经网站,一家全面覆盖科技、金融、证券、汽车、 房产、食品、医药、日化、酒业及其他各种消费品网站。 近日,国家网络安全通报中心发布消息通报,经国家计算机病毒应急处理中心检测,68款移动应用存在 违法违规收集使用个人信息情况。 其中微信小程序4.6.19版本的《马蜂窝》涉及多项违规被点名通报。 《马蜂窝》涉及到的问题主要有以下几点:一、通过自动 ...
不让科技“偷走”隐私!网警发布AI伪造、智能设备风险防范指南
Huan Qiu Wang Zi Xun· 2025-08-17 02:06
Group 1 - The article highlights the increasing risks associated with AI technology, particularly in identity fraud and privacy breaches, emphasizing the need for personal information protection [1][2] - It provides practical guidelines for identifying and preventing AI-generated fraud, including action verification methods and voice detail analysis [2] - The importance of multi-channel identity verification is stressed, especially in sensitive transactions, to avoid falling victim to scams [2] Group 2 - The article discusses the risks posed by smart devices, such as cameras and speakers, which can become gateways for privacy breaches [3][4] - Recommendations include choosing reputable brands, using physical switches for security, setting strong passwords, and minimizing app permissions [4] - The article emphasizes the need for regular management and updates of smart device settings to enhance security [4] Group 3 - The police urge individuals to enhance their awareness of personal information security as the first line of defense [5] - In cases of suspected information leaks or fraud, it is advised to retain evidence and report to authorities promptly [5] - The article calls for collaboration between the police and the public to create a safer online environment [6]
网安协会:已组织菜鸟、马蜂窝等5款App更新升级
Huan Qiu Wang Zi Xun· 2025-08-04 08:45
Core Viewpoint - The China Cybersecurity Association has organized and guided the optimization of five apps in response to issues related to the collection and use of personal information, aiming to enhance compliance with relevant laws and regulations [1] Group 1: Regulatory Compliance - The initiative focuses on addressing problems such as excessive collection of personal information, overuse of sensitive permissions, inconvenient permission settings, and difficulties in account cancellation [1] - The optimization is in accordance with the Cybersecurity Law of the People's Republic of China, the Personal Information Protection Law, and regulations on necessary personal information for common types of mobile internet applications [1] Group 2: App Updates - Five app operators have released updated versions of their applications on app stores or official websites, committing to maintain compliance levels in future updates [1] - The list of optimized apps includes: 1. Cainiao (Mail and Express Delivery) - Version 8.10.715 2. Dongchedi (Used Car Trading) - Version 8.6.7 3. Yiche (Automobile Services) - Version 11.38.1 4. Mafengwo (Travel Services) - Version 11.3.3 5. Tuniu (Travel Services) - Version 11.44.0 [1]
违法违规收集使用个人信息!两款证券APP被通报
Xin Lang Cai Jing· 2025-07-31 08:19
Core Viewpoint - The National Cybersecurity Notification Center has reported that 68 mobile applications, including those from Yintai Securities and Caida Securities, are found to illegally collect and use personal information [1] Group 1: Regulatory Findings - The detection of the 68 mobile applications was conducted by the National Computer Virus Emergency Response Center [1] - The period of detection was from June 11 to July 1, 2025 [1] Group 2: Impact on Companies - Two brokerage apps, specifically from Yintai Securities and Caida Securities, are included in the list of applications violating personal information regulations [1]
“开盒挂人”致用户被网暴,社交平台因数据漏洞被判连带担责
Xin Jing Bao· 2025-07-24 14:43
Core Points - The case involves a social media platform where personal information of an individual, Zheng, was illegally collected and publicly shared, leading to online harassment [1][2] - The Beijing Internet Court ruled that both the user who published the infringing content and the platform that failed to ensure information security must bear liability for the infringement [4][7] Group 1: Incident Overview - Zheng's personal information, including account details and identification documents, was illegally collected and published due to differing opinions on a celebrity event [2][4] - The platform only took minimal actions, such as making the content private or deleting it, without further measures to protect user information [1][9] Group 2: Legal Proceedings - The technology company claimed it fulfilled its legal obligations as a network service provider and argued that the personal information leak was not possible due to their security measures [2][8] - The defendant, Zhang, denied using the social media platform and claimed the IP address of the infringing account was from a foreign country, but did not provide evidence of account theft [3][4] Group 3: Court Findings - The court determined that Zhang was the actual user of the infringing account and had violated Zheng's privacy and reputation by publicly sharing sensitive information [4][6] - The court highlighted that the technology company had data security management vulnerabilities and failed to take adequate measures to protect user information, leading to multiple users being similarly affected [8][9] Group 4: Implications for the Industry - The case illustrates the emerging trend of "opening boxes" as a form of online violence, combining doxxing and cyberbullying [10] - The court emphasized that online platforms must continuously improve their technical and management measures to fulfill their obligations in safeguarding personal information [10]
违法违规收集使用个人信息!两款证券APP被通报
新华网财经· 2025-07-13 05:02
Core Viewpoint - The National Cybersecurity Incident Response Center has identified 68 mobile applications that illegally collect and use personal information, including apps from two brokerage firms, Yintai Securities and Caida Securities [1][2]. Group 1: Violations Identified - The 68 mobile applications were found to have 13 types of violations, with three major issues highlighted: 1. Privacy policies not clearly listing the purposes, methods, and scope of personal information collection, affecting 30 applications [1]. 2. Failure to provide users with a way to withdraw consent for personal information collection, impacting 35 applications, including Caida Securities' app "Caida Financial Daily" (version 3.65) [1][2]. 3. Lack of appropriate security measures such as encryption and anonymization, affecting 31 applications [2]. Group 2: Specific Brokerage Apps - The identified brokerage applications include: - "Yintai Zhangyibao" (version 5.1.0) from Yintai Securities, which violated multiple regulations [2]. - "Caida Financial Daily" (version 3.65) from Caida Securities, which also failed to comply with several requirements [2][3]. Group 3: Previous Reports - Since 2025, the National Cybersecurity Incident Response Center has released eight lists of illegal mobile applications, with several brokerage apps being named in previous reports [3].
违规收集使用个人信息,两券商APP被通报
news flash· 2025-07-13 03:30
Core Viewpoint - The National Cybersecurity Notification Center has reported that 68 mobile applications, including those from Yintai Securities and Caida Securities, have been found to illegally collect and use personal information [1] Group 1: Violations and Impact - A total of 68 mobile applications were identified with 13 types of violations related to personal information collection and usage [1] - The applications span various categories, including dining, gaming, social networking, lifestyle services, and financial applications [1]