Workflow
网络安全
icon
Search documents
HTTP强制弹窗警告,谷歌为上网冲浪操碎了心
3 6 Ke· 2025-11-10 23:24
"能力越大、责任越大"是《蜘蛛侠》中的经典台词,这个道理放在现实世界中也一样。如今作为浏览器 领域无可争议的霸主,谷歌的Chrome又双叒叕开始为用户上网冲浪的安全操心了。日前谷歌方面宣 布,从2026年10月发布的Chrome 154版本开始默认启用"始终使用安全连接策略",让用户不会在不知情 的情况下访问HTTP网站。 从Chrome 154版本开始,一旦用户尝试访问HTTP网站,Chrome就会立刻进行弹窗警告。除非选择"无 视风险,坚持访问",否则Chrome将拒绝加载。需要注意的是,一旦用户对某个HTTP网站放行,下次 访问时Chrome就会默认执行,只有用户在清除浏览器数据后才需要重新进行确认,从而避免误伤。 用弹窗的方式来提示用户效果确实显著,可代价着实也不小。毕竟对于用户而言,弹窗提醒和弹窗广告 其实并无本质的区别,都会在客观上中断上网冲浪的体验。久而久之,为了不被弹窗干扰,用户反而会 无脑选择同意,进而对隐私和安全提示脱敏。这也是为什么过去数年频频打出隐私牌的欧盟,最近却开 始着手降低"cookie弹窗确认"出现的频率。 既然如此,谷歌为何还要用弹窗来警告用户不要访问HTTP网站呢?是因为在 ...
Telos(TLS) - 2025 Q3 - Earnings Call Transcript
2025-11-10 15:30
Financial Data and Key Metrics Changes - Revenue grew 116% in Q3 2025 to $51.4 million, exceeding guidance of $44-$47 million [7] - GAAP gross margin was 39.9%, and cash gross margin was 44.8%, both above guidance and previous quarter margins [7] - Adjusted EBITDA was $10.1 million, surpassing guidance of $4-$5.7 million, with an adjusted EBITDA margin of 19.6% [8][10] - Free cash flow was $6.6 million, representing a 12.8% free cash flow margin [8] Business Line Data and Key Metrics Changes - Telos ID was a significant driver of revenue growth, contributing to the overall performance [5][15] - Adjusted operating expenses were approximately $500,000 better than guidance due to cost discipline [7] Market Data and Key Metrics Changes - The company achieved a cumulative revenue growth of 44% in the first nine months of 2025 [9] - Cash gross margin expanded by 30 basis points to 43% year-over-year [9] Company Strategy and Development Direction - The company plans to continue evolving its Xacta platform with increased automation and new features [11] - The TSA PreCheck program has reached 504 enrollment locations, with plans for further evaluation and improvement [12][13] - The company forecasts existing programs will generate approximately $180 million in revenue for 2026, driven by growth in Telos ID [14] Management's Comments on Operating Environment and Future Outlook - Management noted that the government shutdown has caused delays in awards and administrative processes, but the impact on P&L has been modest [18][19] - The company maintains a robust pipeline of opportunities, with several tens of millions of revenue expected from new business in 2026 [21][41] - Management expressed confidence in continued year-over-year growth into the fourth quarter and 2026 [15][68] Other Important Information - The company has a multi-billion dollar pipeline of new business opportunities, with expectations for significant awards in the coming months [21][41] - The company has deployed $7.6 million to repurchase 2.1 million shares at a weighted average price of $3.69 per share [10] Q&A Session Summary Question: Impact of government shutdown on award decisions - Management indicated that awards are stalled and generally delayed due to the government shutdown, but the impact on P&L has been modest [18][19] Question: Initial feedback on Xacta AI product - Management reported strong initial traction with one major enterprise deployment and positive customer feedback [22][29] Question: Growth plans for TSA PreCheck program - Management stated that they will continue to evaluate and expand the network of enrollment locations to serve travelers better [36][38] Question: Revenue potential from the pipeline for 2026 - Management confirmed that the pipeline remains robust, with several tens of millions of revenue expected from new business opportunities [41][56] Question: Upsell potential for existing Xacta customers - Management noted significant excitement among existing customers for Xacta AI, with plans to target the installed base first [44][45]
Top Stocks With Earnings This Week: Plug, Oklo, Circle And More
Benzinga· 2025-11-10 13:38
Earnings Reports Overview - The earnings season is slowing down, but several retail-favorite companies are set to report this week [1] - Key companies reporting include Barrick Mining Corp., Plug Power Inc., Oklo Inc., Cisco Systems Inc., Walt Disney Co., and Applied Materials Inc. [2][3][5][10][11] Company-Specific Insights - Barrick Mining Corp. reported its third-quarter results before the market opened on November 10 [2] - Plug Power Inc. is expected to report losses of 12 cents per share and revenue of $179.54 million, having missed earnings expectations for the last 18 quarters [3] - Oklo Inc. is anticipated to report losses of 13 cents per share and revenue of $17.01 billion, with stock volatility noted ahead of the report [5] - Cisco Systems Inc. is expected to be a focal point for investors, particularly regarding management's guidance and updates on AI and cybersecurity business momentum [10] - Walt Disney Co. and JD.com Inc. will release earnings reports before the market opens on November 13 [11] - Applied Materials Inc. is set to release its Q4 results after the market closes on November 13 [11] Additional Companies Reporting - Other companies reporting this week include Workhorse Group Inc., Beyond Meat Inc., Microvision Inc., and Virgin Galactic Holdings Inc. [4][6][12]
澳洲会计师公会调查:大多数港企已采用人工智能(AI)工具
Core Insights - The majority of Hong Kong enterprises have adopted AI tools to varying degrees, with 88% of respondents indicating usage in their work, reflecting a significant increase in AI application in the Asia-Pacific region [1] - Despite the high awareness of AI among Hong Kong businesses, many remain at the proof-of-concept stage, primarily using AI for productivity enhancement rather than fully leveraging its potential [2] AI Adoption and Impact - 89% of respondents in the Asia-Pacific region reported adopting AI in the past 12 months, a notable increase from 69% in the previous survey [1] - In Hong Kong, 65% of respondents mainly use third-party AI tools in specific business areas or occasionally [1] - AI is reshaping recruitment trends in accounting and finance, with 17% of respondents noting a reduction in hiring junior accounting and finance staff due to AI applications [2][3] Recruitment Trends - The use of AI in data analysis and research tasks traditionally handled by junior employees is evident, allowing these employees to focus on more strategic responsibilities [3] - There is a growing need for employees to possess skills that enable collaboration with AI, enhancing existing services and creating new ideas [3] Government Role and Support - The Hong Kong government is urged to provide policy support and collaborate with institutions to develop future skills in the workforce, including AI-centric training programs [3] - Initiatives such as funding for SMEs to trial AI technologies and internship programs for students are recommended to enhance practical AI application [3] Data Protection and Cybersecurity - 26% of respondents expressed concern over data protection and privacy issues related to AI applications, while 72% reported implementing cybersecurity measures in the past year [3] - The establishment of a Managed Security Operation Center (MSOC) and AI security measures are highlighted as emerging trends to address cybersecurity challenges [4] Ethical Use of AI - Companies are encouraged to create AI development roadmaps and governance guidelines to ensure ethical use of AI tools in the workplace [4] - Employee training is crucial for reducing data leakage risks, emphasizing the importance of understanding data authorization for AI usage [4]
吉大正元:未来公司将根据市场需求和自身发展规划进行业务合理布局
Core Viewpoint - The company, Jida Zhengyuan, is a leading cybersecurity firm in China, focusing on providing security services such as encryption, authentication, and digital signatures, particularly for major national projects in the context of the digital era [1]. Group 1: Business Expansion - The company's business has evolved from ensuring the security of information systems to safeguarding data elements throughout their entire lifecycle [1]. - Jida Zhengyuan has undertaken significant projects, including the National Integrated Industrial Big Data Shandong Cloud Center's regional sub-center data room project [1]. Group 2: Strategic Partnerships - The company is enhancing its service capabilities in foundational resources through collaborations with partners in areas such as servers, domestic operating systems, and storage [1]. Group 3: Future Outlook - The company plans to strategically allocate its business based on market demand and its development plans [1].
加密热潮伴随黑客盗窃频发,“冷钱包”硬件制造商业绩爆增
智通财经网· 2025-11-10 07:06
随着今年比特币及其他加密货币价格创下新高,犯罪活动激增。今年早些时候,朝鲜黑客从Bybit交易 所盗走约15亿美元,这是迄今为止最大的加密货币盗窃案。 TRM 实验室的Ari Redbord表示,合法的加密货币活动在增长,但黑客利用也在交易增加的机会进行犯 罪。 智通财经APP获悉,据媒体周日报道,加密货币盗窃案频发促使投资者转向离线存储数字资产的硬件钱 包。法国加密货币硬件钱包制造商Ledger表示 2025 年有望成为其业绩最强劲的一年。Ledger是一家总 部位于巴黎的生产类似 U 盘冷存储设备的制造商。其首席执行官Pascal Gauthier表示,公司营收已达"数 亿"规模,并补充说针对金融和加密账户的网络攻击愈发频繁,且不太可能放缓。 在假日季来临之前,Ledger 公司的设备越来越受欢迎,这些设备保障了约 1000 亿美元的客户资产。 Gauthier表示,该公司计划明年筹集新资金,并在纽约扩大业务,他指出,如今大多数加密货币资金都 在纽约,而非欧洲。 区块链分析公司 Chainalysis 估计,今年迄今约有 22 亿美元的加密货币被盗,已超过 2024 年的总额。 其中约四分之一的盗窃案针对 ...
以质量认证赋能消费电子产业高质量发展
Zhong Guo Jing Ji Wang· 2025-11-10 06:51
Group 1 - The 2025 Consumer Electronics Innovation Conference (CEIC2025) was held in Shenzhen from November 6 to 8, showcasing the development of the China Quality Certification Center and its various certification projects aimed at enhancing product quality and supporting high-quality industry development [1] - The China Quality Certification Center awarded several certifications to companies such as Honor, Vivo, and OPPO, focusing on aspects like battery life, waterproofing, visual health, and hearing friendliness, emphasizing the importance of quality assurance for consumer electronics [1] - The center's assistant general manager highlighted the dual drivers of "technological explosion" and "demand elevation," indicating that consumers are increasingly seeking reliable and trustworthy products in the rapidly evolving consumer electronics landscape [1] Group 2 - The global consumer electronics industry is at a crossroads of collaborative innovation and technological iteration, with quality certification serving as a crucial support mechanism for international cooperation and technological breakthroughs [2] - The China Quality Certification Center, as a national quality service organization, promotes international trust in certification and has launched various performance certification projects to empower the consumer electronics industry across multiple dimensions [2] - The center aims to drive high-quality industry development by focusing on innovation, technology leadership, standard reliance, and digital transformation in response to the reshaping of the consumer electronics industry by AI and digitalization [2]
中国联通张云勇:拥抱创新构建纵深安全防御体系
Core Viewpoint - The rapid development of AI technology has significantly improved production efficiency but has also led to exponential growth in cybersecurity risks. Innovative models such as AI empowerment, end-to-end collaboration, standardization, and cross-industry integration can provide new solutions to overcome challenges in the security industry [1][2]. Group 1: Current Challenges in Cybersecurity - The landscape of threat perception and the offense-defense game is undergoing profound changes, with issues such as inconsistent intelligence data quality and poor interoperability being prominent pain points [1]. - The core strategy of China Unicom to address these challenges includes fully leveraging data value to build a deeper and broader threat perception system and establishing a robust security foundation for the intelligent era [1]. Group 2: Innovative Approaches and Collaborations - Since May 2022, China Unicom has moved beyond a "lone wolf" approach by taking on the role of a chain leader in the modern cybersecurity industry chain, focusing on enhancing core technical capabilities, improving basic security capabilities, and maintaining national cybersecurity [2]. - The company is committed to building national-level technological innovation platforms to promote deep integration of technological and industrial innovation, ensuring communication security, and constructing a platform for efficient collaboration within the industry chain [2].
国安部披露:一国企员工长期访问境外反华网站,观看涉我政治谣言视频并下载传播,被依法逮捕
Xin Lang Cai Jing· 2025-11-10 03:13
诱发连锁违法风险。部分网民在毫无防备的情况下,极易受到欺诈信息、极端思想、政治谣言的侵蚀, 这可能让最初的"好奇浏览"发展为"主动参与",成为违法犯罪行为的受害者、帮凶,带来连锁违法风 险,陷入犯罪泥沼。某国企员工长期访问境外反华网站,观看涉我政治谣言视频并下载传播,被国家安 全机关依法逮捕。 11月10日,微信公众号"国家安全部"发文披露,某国企员工长期访问境外反华网站,观看涉我政治 谣言视频并下载传播,被国家安全机关依法逮捕。 全文如下: 在移动互联网时代,通过互联网获取信息资讯已成为我们了解外部世界的普遍方式,但个别网民法律和 风险防范意识淡薄,违法使用"翻墙"软件(俗称VPN或"梯子")访问境外网站、注册账号以及参与群组 聊天。贪图猎奇不仅可能带来个人信息安全风险,甚至影响国家安全和社会稳定。 "自由"背后的陷阱 个人隐私信息泄露。"翻墙"软件往往宣称保护用户隐私和数据安全。但事实上,"翻墙"服务提供商或外 部攻击者可能利用各种漏洞窃取用户浏览记录、账号密码等个人隐私数据,最终带来难以估量的损失。 某用户曾通过"翻墙"软件浏览境外网站并用信用卡向某机构支付资料费用,半年后信用卡被盗刷数千美 元。 境外 ...
境外间谍借“翻墙”窃密!警惕“自由”背后的陷阱
Yang Shi Xin Wen· 2025-11-10 01:44
Core Points - The article highlights the risks associated with the use of VPNs or "翻墙" software, emphasizing that while these services claim to protect user privacy, they can lead to significant personal and national security risks [1][2][3]. Group 1: Personal Privacy Risks - VPN services may exploit vulnerabilities to steal user data, including browsing history and credit card information, leading to substantial financial losses [2]. - A user experienced credit card fraud amounting to thousands of dollars after using a VPN to access foreign websites [2]. Group 2: National Security Risks - Some VPNs are controlled by foreign entities or intelligence agencies, which can implant malware to access personal information and sensitive data [3]. - An incident is cited where a staff member from a sensitive unit inadvertently installed a VPN developed by foreign intelligence, resulting in the theft of confidential research materials [3]. Group 3: Legal and Ethical Implications - The use of VPNs is illegal under national laws, and accessing unregulated content can expose users to various forms of misinformation and illegal activities [6][7]. - A case is mentioned where an employee of a state-owned enterprise was arrested for accessing and disseminating politically sensitive content from foreign websites [4]. Group 4: Recommendations for Safe Internet Use - Citizens, especially public officials, are urged to comply with national regulations and avoid using VPNs, opting instead for approved channels for legitimate international access [7]. - Users are advised to download applications only from official sources and remain cautious of software that claims to enhance internet access [8]. - Promoting healthy online habits, such as verifying information from official media and avoiding unverified foreign content, is encouraged [9].