数据保护
Search documents
突发!谷歌被罚 27 亿
程序员的那些事· 2025-09-04 08:02
Core Viewpoint - Google has been fined €325 million (approximately ¥2.7 billion) by the French National Commission on Informatics and Liberty (CNIL) for violating the French Data Protection Act by not obtaining valid consent from users [3][5]. Group 1: Reasons for the Fine - The fine is substantial due to the large number of French users affected by Google's actions [7]. - CNIL has given Google a six-month period to rectify the situation, failing which Google and its Irish subsidiary will incur a daily fine of €100,000 [8]. Group 2: Google's Response - A Google spokesperson stated that users have control over the ads they see in the company's products and that the company is evaluating the CNIL's penalty [9]. Group 3: Related Incidents - Shein's Irish subsidiary has also been fined €150 million (approximately ¥1.25 billion) for similar violations, including setting cookies without user consent and not adequately informing users [10][12].
因未经用户同意在Gmail插广告,谷歌被法国罚款3.25亿欧元
Huan Qiu Wang· 2025-09-04 04:15
Core Points - The French National Commission on Informatics and Liberty (CNIL) has imposed a fine of €325 million (approximately ¥2.706 billion) on Google for violating French data protection laws [1][4] - The violations include sending ads to Gmail users without their consent and improperly using cookies related to advertising [1][4] Group 1 - Google Ireland Limited and Google LLC were found to have inserted ads into Gmail's "Promotions" and "Social" tabs without prior user consent [4] - During the account creation process, users were misled into selecting cookies related to personalized ads over general ads, without clear information that storing cookies for advertising purposes was a condition for using Google services [4][5] Group 2 - The CNIL's ruling includes a fine distribution of €200 million for Google LLC and €125 million for Google Ireland Limited, along with a six-month deadline for compliance [5] - If Google fails to comply within the specified timeframe, it will incur a daily penalty of €100,000 [5] - The cookie-related violations affected over 74 million Google accounts, with 53 million users having seen the improperly inserted ads in their Gmail [5]
跨境电商希音被法国罚款1.5亿欧元 回应:坚决反对、将上诉
Sou Hu Cai Jing· 2025-09-04 00:22
Core Points - Shein has been fined €150 million (approximately ¥1.25 billion) by the French data protection authority for improper use of cookies [2] - The French National Commission on Informatics and Liberty (CNIL) found that Shein's website did not comply with regulations by collecting consumer data without consent [2] - Shein plans to appeal the decision, arguing that the fine is disproportionate given their compliance efforts and corrective measures taken since August 2023 [2] Regulatory Compliance - CNIL conducted tests in August 2023 and discovered that some cookies were still installed on users' computers even after they opted out [2] - Cookies are small files that allow websites and advertisers to identify individual users and track their browsing habits [2] Company Response - Shein firmly opposes CNIL's decision and claims the fine appears to be politically motivated rather than a result of fair enforcement [2] - The company asserts that it has been fully cooperating with CNIL and has strengthened data protection practices across all areas since August 2023 [2]
法国监管机构对谷歌公司处以3.25亿欧元罚款
Zhong Guo Xin Wen Wang· 2025-09-03 23:41
Core Points - France's National Commission on Informatics and Liberty has imposed a fine of €325 million on Google for violating user consent regulations regarding advertising in its email service [1] - The investigation was initiated after receiving complaints in August 2022, concluding that Google displayed ads without effective consent from users and placed cookies without proper agreement [1] - The fine reflects the large number of affected users, with 74 million accounts involved in cookie violations and 53 million accounts receiving ads without consent [1] Summary by Sections - **Regulatory Action** - France has levied a significant fine of €325 million against Google for non-compliance with user consent laws [1] - The fine is based on violations related to advertising practices in Google's email service [1] - **Investigation Findings** - The investigation began in August 2022 following complaints about Google's practices [1] - Findings indicated that Google failed to obtain valid consent from users for displaying ads and for cookie placement [1] - **User Impact** - The regulatory body highlighted the extensive impact on users, noting that 74 million accounts were involved in cookie-related violations and 53 million accounts had ads displayed without consent [1] - **Company Response** - A Google spokesperson stated that the company is reviewing the penalty and emphasized that users have control over the ads they see [1]
AUS GLOBAL:金融监管环境下的安全交易实践
Sou Hu Cai Jing· 2025-08-26 14:56
Core Insights - AUS GLOBAL is committed to providing secure trading practices within a complex financial regulatory environment, ensuring the safety of client funds and information [7][9][19] - The company employs advanced technology and rigorous risk management measures to enhance trading security and compliance [4][11][20] Risk Management and Data Analysis - Multi-layered risk management and data analysis ensure trading security [5][8] - A dedicated risk management team conducts regular internal audits and compliance checks to maintain the effectiveness of strategies [8][9] Technological Innovation - Technological innovations enhance trading transparency and security, including the use of blockchain and artificial intelligence [11][22] - Advanced encryption methods and multi-layered authentication mechanisms strengthen the reliability of trading technology tools [9][14] Compliance and Regulatory Challenges - The increasing complexity of financial regulations necessitates that financial institutions adjust their operational strategies to ensure compliance and sustainable growth [5][19] - Compliance requirements are becoming stricter, posing significant challenges for financial institutions in maintaining effective internal controls and risk management [6][16] Data Protection and Privacy Strategies - AUS GLOBAL implements stringent privacy policies and advanced data encryption methods to protect sensitive user information [14][15] - Access control and user information management are critical components of the company's overall security strategy [15][17] Investor Education and Risk Awareness - Effective investor education strategies are essential for enhancing investor understanding of market dynamics and improving decision-making capabilities [18][19] - The company emphasizes the importance of cultivating risk awareness among investors through systematic training and simulated investment scenarios [18][19] Future Development Directions - AUS GLOBAL must establish clear future development directions to maintain competitiveness in the global market, focusing on market expansion strategies and technological innovation [20][21] - Understanding customer demand trends is crucial for developing effective market strategies, particularly in a rapidly changing financial environment [21][22]
企业合规第121期 | 中国证券业协会修订发布《证券公司履行社会责任专项评价办法》
Sou Hu Cai Jing· 2025-08-22 15:10
Group 1 - The "Corporate Compliance" column will provide major compliance-related legislative and enforcement alerts for state-owned enterprises in Shenzhen, enhancing their ability to mitigate compliance risks and support their international expansion [2] Group 2 - The China Securities Association revised and published the "Special Evaluation Measures for Securities Companies' Social Responsibility," which includes 18 articles and 13 evaluation indicators focusing on rural revitalization, investor education, social welfare, and industry ecological construction [3] - Securities companies are advised to align their annual social responsibility plans with the evaluation measures and actively disclose their social responsibility performance through various channels [3] Group 3 - The Ministry of Transport announced the revised "Management Measures for Survey and Design of Railway Construction Projects," which includes 10 chapters and 56 articles outlining compliance obligations throughout the railway construction process [4] - Railway construction companies are encouraged to strengthen compliance management and ensure quality control throughout the entire process [4] Group 4 - Six departments, including the National Intellectual Property Administration, jointly issued the "Guidelines for the Construction and Operation of Patent Pools," aimed at guiding high-quality patent pool development and promoting patent resource integration [5] - High-tech and patent-intensive companies are advised to establish clear standards for patent pool entry and optimize licensing mechanisms to ensure fair conditions [5] Group 5 - A company in Hainan was penalized for concealing over 200 million yuan in unbilled sales revenue, resulting in a total penalty of approximately 29 million yuan [7] - Companies are advised to maintain accurate accounting records and ensure all transactions are conducted through official accounts to avoid tax evasion [7] Group 6 - Two insurance companies had their business licenses revoked due to multiple violations, including discrepancies in governance reports and unauthorized transactions [8][9] - Insurance companies are recommended to establish mechanisms for verifying the accuracy of reports submitted to regulators and to ensure compliance with governance standards [9] Group 7 - The State Administration for Market Regulation published ten typical cases of illegal advertising across various sectors, highlighting issues in internet advertising [10] - Companies are urged to conduct thorough advertising reviews to prevent false claims and ensure compliance with advertising regulations [10] Group 8 - The U.S. Department of Justice released new guidelines for the Foreign Corrupt Practices Act (FCPA), focusing on reducing burdens on U.S. companies operating overseas while targeting corruption [12] - Companies are advised to stay informed about these guidelines to ensure compliance in international operations [12] Group 9 - The European Data Protection Board issued guidelines on data transfer to third countries under GDPR, emphasizing the need for legal bases and safety measures [12][13] - Companies should evaluate the legality of data transfers and ensure compliance with GDPR requirements when responding to data requests from third countries [13] Group 10 - The UK Parliament passed the Data Use and Access Bill, which aims to balance data innovation with privacy protection [15] - Companies should be aware of the new data protection principles and the requirements for data sharing under this legislation [15]
80万条公民个人信息泄露,源于快递公司“内鬼”
第一财经· 2025-08-22 12:12
Core Viewpoint - The article discusses a case of personal information leakage involving 800,000 records in Gansu Province, highlighting the vulnerabilities in the e-commerce and logistics sectors due to internal management issues and the rise of "decryption intermediaries" in response to data protection laws [4][5]. Group 1: Incident Overview - A case was revealed involving the leakage of 800,000 personal information records, initiated by a scam targeting a truck driver in Gansu [4]. - The scam involved a "no inventory e-commerce" model where orders were transferred between merchants, leading to the creation of a "decryption intermediary" industry due to the encryption of customer order information [4]. Group 2: Criminal Methodology - The criminal operation was facilitated by insiders from courier companies who provided access to internal platforms, allowing for the decryption of order information [5]. - The decryption of information was reported to be relatively easy due to the cooperation between courier companies and e-commerce platforms, despite encryption measures [5]. Group 3: Industry Implications - The case illustrates a common issue in the industry where internal management chaos and inadequate control over permissions lead to data leaks [5]. - The reliance on third-party vendors in a layered subcontracting model increases the risk of information leakage, as smaller companies may lack robust security measures [5]. Group 4: Recommendations for Improvement - Experts suggest that enhancing legal frameworks and increasing the cost of crime at the national level, along with greater emphasis on data protection by companies, are essential for addressing these vulnerabilities [5].
数据显示:欧洲四成手机盗窃案发生在英国,其中超四成集中在伦敦
Huan Qiu Shi Bao· 2025-07-27 22:46
Group 1 - The UK has become a hotspot for mobile phone theft in Europe, with 39% of thefts occurring in the country, and 42% of those in London [1][2] - Since June 2021, claims related to mobile phone theft in the UK have surged by 425%, indicating a significant increase in the issue [1] - Approximately 80,000 mobile phones were reported stolen in London last year, with a total black market value of around £20 million [1] Group 2 - The UK police are urging tech companies to cut off cloud services for stolen phones to reduce their resale value and deter theft [2] - Representatives from Google and Apple have responded to the issue, with Google emphasizing the stability of their systems, while Apple has invested "hundreds of millions" to enhance data protection measures [2] - Apple acknowledged the risks of data breaches from stolen phones but is actively working to mitigate these risks for customers [2]
德国一机构要求苹果谷歌下架DeepSeek,中方多次表态:反对将经贸科技问题政治化
Huan Qiu Shi Bao· 2025-06-29 22:37
Core Points - The German data protection commissioner, Meck Kamp, has requested Apple and Google to remove the Chinese startup application "DeepSeek" from their stores due to alleged violations of EU data protection laws [1][3] - DeepSeek is accused of illegally transferring user personal data to China without proving that German user data is protected to the same extent as under EU regulations [3] - The request for removal is coordinated with data protection authorities from Baden-Württemberg, Rhineland-Palatinate, and Bremen, as DeepSeek has no branches in Europe [3][4] Group 1 - The action against DeepSeek is based on the EU's General Data Protection Regulation (GDPR), which allows for fines up to 4% of global revenue for illegal service operators [4] - If Apple and Google comply with the data protection authority's assessment, DeepSeek will be removed from their app stores, although the German authorities cannot enforce this removal [3][4] - The browser version of DeepSeek will not be affected by this potential ban [3] Group 2 - Other countries, including Italy, South Korea, and Australia, are also investigating DeepSeek for potential data protection violations [4] - The Italian data protection authority is examining whether DeepSeek violates GDPR, while South Korea previously suspended downloads of the app due to data protection concerns [4] - The Chinese government has stated that it values data privacy and security, denying any requests for illegal data collection or storage [4]
德国对DeepSeek下手
Guan Cha Zhe Wang· 2025-06-28 12:11
Group 1 - German data protection commissioner has requested Apple and Google to remove the DeepSeek app from their app stores due to concerns over data protection [1] - The commissioner claims that DeepSeek illegally transmits user personal data to China, and Apple and Google need to review this request [1] - Google has acknowledged the notification and is currently assessing it, while Apple has not yet responded [1] Group 2 - Italy has already banned DeepSeek from its app store, while the Netherlands has prohibited its use on government devices [2] - Belgium has advised government officials against using DeepSeek, with ongoing evaluations to determine appropriate responses [2] - China's Ministry of Foreign Affairs has emphasized its commitment to data privacy and security, denying any illegal data collection requests from the government [2]