Workflow
个人信息保护
icon
Search documents
中国国家互联网信息办公室副主任王京涛应约会见韩国个人信息保护委员会副委员长崔壮赫
news flash· 2025-05-28 13:27
据"网信中国"微信公众号,2025年5月28日,中国国家互联网信息办公室副主任王京涛在京应约会见韩 国个人信息保护委员会副委员长崔壮赫一行,双方围绕个人信息保护、数据跨境流动、人工智能治理等 议题进行深入交流。 ...
唤醒平台治理责任,斩断网络“开盒”黑手
Core Viewpoint - The Chinese internet is facing significant challenges from the "open box" black and gray industry, which has evolved from "human flesh search" in the era of big data, prompting the Central Cyberspace Administration to implement a comprehensive strategy to combat this issue. Group 1: Regulatory Measures - The Central Cyberspace Administration has issued a notice to block the spread of "open box" information, improve early warning mechanisms, increase punitive measures, optimize protective measures, and enhance public awareness [1] - Platforms are urged to abandon the "traffic is king" mentality and eliminate toxic traffic, as their ambiguous positioning has contributed to the problem [2] Group 2: Platform Responsibilities - Platforms must take responsibility for regulating the dissemination of personal information, as many incidents of "open box" occur on foreign social media platforms, highlighting the need for domestic platforms to close loopholes [3] - Transparency in personal information protection practices among platform companies needs to be improved, as many leading apps have not published dedicated reports on personal information protection [3] Group 3: Enforcement and Accountability - The current approach of platforms, which focuses on limiting traffic and banning IDs rather than holding actual users accountable, is insufficient [4] - Regulatory bodies are committed to enhancing the enforcement of laws against the leakage, theft, and sale of personal information, utilizing technology to ensure that such activities are effectively addressed [4]
个人信息保护如何跳出“猫鼠游戏”(人民时评)
Ren Min Ri Bao· 2025-05-27 22:40
Core Viewpoint - The article highlights the increasing risks of personal information leakage in the digital age, emphasizing the need for proactive measures and regulatory improvements to protect consumer data [1][2][3]. Group 1: Current Situation of Personal Information Protection - Personal information leakage has become a pressing issue, with cases like the recent Shanghai incident revealing how easily sensitive data can be sold and misused [1]. - The challenges in personal information protection have shifted from overt rights violations to more covert technological abuses, often linked to new business models [2]. Group 2: Regulatory and Technological Responses - New regulations, such as the "Facial Recognition Technology Application Safety Management Measures," have been introduced to prevent the misuse of technology and protect personal information rights [3]. - Companies are encouraged to adopt proactive measures, such as allowing users to revoke historical data authorizations and employing privacy-preserving technologies to enhance data security [3]. Group 3: Future Directions - There is a call for a more refined governance approach that balances development and security, aiming to create a comprehensive governance system that integrates rules, technology, and social collaboration [3].
新闻1+1丨以“零容忍”态度坚决打击“开盒”乱象 具体怎么做?
Yang Shi Wang· 2025-05-27 22:33
Core Viewpoint - The central government is taking a "zero tolerance" approach to combat the "open box" phenomenon, which involves the illegal collection and dissemination of personal information online, emphasizing the need for stricter regulations and platform accountability [1][4]. Group 1: Definition and Impact of "Open Box" - "Open box" refers to a new form of online violence where individuals illegally gather and publish personal information such as names, photos, ID numbers, and contact details [2]. - Victims of "open box" often face online harassment, including insults, defamation, and real-life disturbances like incessant calls and messages from strangers [3]. Group 2: Regulatory Measures and Responsibilities - The Central Cyberspace Administration of China has already penalized three major online platforms, signaling that all platforms, regardless of size, must comply with laws protecting personal information [4]. - The emphasis on punishing large platforms is due to their greater technical capabilities and user bases, which impose a higher legal and social responsibility to monitor and prevent personal information leaks [4]. Group 3: Future Actions and Expected Outcomes - The next steps include blocking dissemination channels, enhancing protective measures, and increasing punitive actions against violators [7]. - If these measures are effectively implemented, they could significantly reduce the illegal collection and misuse of personal information, thereby enhancing the protection of individual rights [7]. Group 4: Systematic Approach and Collaboration - Addressing the "open box" issue requires a coordinated effort among various government departments, including the Ministry of Industry and Information Technology, the State Administration for Market Regulation, and the Ministry of Public Security [8]. - The irreversible nature of personal information leaks necessitates a focus on preventing new incidents from occurring at the source [8]. Group 5: Vulnerabilities in Personal Information Security - The primary vulnerability in personal information security is the ease and prevalence of obtaining personal data, often required for various online services [9]. - The frequent sharing of personal information increases the likelihood of it being illegally accessed [9]. Group 6: Legal Framework and Enforcement - China has a comprehensive legal framework for protecting personal information, including laws like the Cybersecurity Law, Data Security Law, and Personal Information Protection Law, along with relevant provisions in the Civil Code and Criminal Law [11]. - In 2024, law enforcement agencies have already cracked over 7,000 cases related to the infringement of personal information rights, indicating active measures are being taken to address these issues [11].
【西街观察】莫让“开盒”继续狂欢
Bei Jing Shang Bao· 2025-05-27 15:24
Core Viewpoint - The article emphasizes the urgent need for enhanced regulation and legal frameworks to address the growing issue of personal information leakage and the phenomenon known as "opening boxes" which exposes individuals' private information online [1][2][3]. Group 1: Regulatory Response - The Central Cyberspace Administration has issued a notice to strengthen the management of "opening boxes" by blocking information dissemination, improving early warning mechanisms, increasing punitive measures, and optimizing protective measures [1]. - There is a societal expectation for stronger regulations to combat the rampant issue of personal information leakage and the associated risks of online violence [1][2]. Group 2: Nature of the Problem - "Opening boxes" refers to the online exposure of personal privacy, which has escalated fears regarding information leakage, with the severity of such leaks surpassing public awareness [2]. - The prevalence of app-based over-collection of personal data, harassment calls, and targeted telecom fraud highlights the pervasive nature of personal information collection [2][3]. Group 3: Legal Framework and Challenges - Current laws protecting personal biometric information are fragmented across various legal texts, making enforcement challenging [4]. - Despite the introduction of guidelines to punish online violence, many cases remain unresolved due to insufficient evidence and difficulties in cross-platform evidence collection [4]. - There is a pressing need for clearer legal standards regarding the punishment of information misuse and for establishing a cross-platform defense mechanism to enhance personal information protection [4].
“开盒”明码标价 网信办点名多平台要求“零容忍”
Bei Jing Shang Bao· 2025-05-27 10:58
Core Viewpoint - The rise of "open box" behavior, a new form of online violence and illegal activity, has prompted regulatory bodies to take action to combat this issue, emphasizing the need for stricter measures and enhanced protection for personal information [1][7][11]. Group 1: Regulatory Actions - The Central Cyberspace Administration of China has issued a notice outlining requirements to combat "open box" issues, including blocking information dissemination, improving early warning mechanisms, increasing punitive measures, and enhancing protective measures [1][11]. - Major platforms such as Weibo, Tencent, Douyin, Kuaishou, Baidu, Xiaohongshu, Zhihu, Bilibili, and Douban have been instructed to implement these requirements and take responsibility for curbing "open box" activities [7][11]. - Three large websites have been penalized for failing to comply with regulations regarding "open box" behavior, highlighting the government's zero-tolerance approach [7]. Group 2: Nature of "Open Box" Behavior - "Open box" behavior involves maliciously disclosing personal information such as names, ID numbers, phone numbers, and addresses, inciting online harassment and abuse [2][8]. - Investigations revealed that illegal services for obtaining personal information are still prevalent on various online platforms, with some sites openly advertising their services [2][4][6]. - The pricing for these illegal services ranges from hundreds to thousands of yuan, depending on the sensitivity of the information requested [2][6]. Group 3: Legal Framework and Consequences - Recent guidelines from the "Two Highs and One Department" emphasize the legal repercussions for organizing "human flesh searches" and illegally collecting and disseminating personal information, which can lead to severe penalties under criminal law [10]. - The Civil Code affirms individuals' rights to privacy, making unauthorized disclosure of personal information a violation that can result in legal action [10]. - Legal experts warn that the consequences of "open box" behavior can include civil liability for damages and potential criminal charges for severe violations [8][10]. Group 4: Future Measures and Recommendations - The Central Cyberspace Administration plans to continue its high-intensity crackdown on "open box" issues while enhancing protective measures for personal information [11]. - Recommendations include improving data collection and usage boundaries on platforms, implementing desensitization of sensitive information, and utilizing AI to identify malicious content [10][11]. - Users are encouraged to increase their awareness of "open box" risks and take proactive steps to protect their personal information [11].
中央网信办部署进一步加强“开盒”整治!南都曾推出重磅调查
Nan Fang Du Shi Bao· 2025-05-27 04:17
5月27日,"网信中国"发文称,中央网信办部署进一步加强"开盒"问题整治工作。此前,南都、N视频重 磅推出《"人肉开盒"再调查:网络灰产隐秘升级,记者买到自己的秘密》,警方第一时间介入调查,稿 件被超过200家媒体和自媒体大V转载报道、跟进评论,中国记协多个栏目接连推荐这一作品,全网关 注度破亿。 南都此前报道。 近日,中央网信办专门印发通知,从阻断"开盒"信息传播、完善预警机制、加大惩治力度、优化保护措 施、加强宣传引导等多个维度明确工作要求,督促各地网信部门、各网站平台进一步强化"开盒"问题整 治工作。同时,召开专题部署会议,要求微博、腾讯、抖音、快手、百度、小红书、知乎、哔哩哔哩、 豆瓣等多家重点网站平台,对照通知抓好各项任务落实,切实履行主体责任,以"零容忍"态度坚决打 击"开盒"乱象。 中央网信办表示,"开盒"问题直接关系人民群众切身利益,近段时间以来,网信部门结合职责,深入开 展整治工作,全面清理各类涉"开盒"违法违规信息,从严处置传播相关内容的账号和群组,依法按程序 处罚3家大型网站平台,组织重点网站平台定期发布治理公告,公布典型案例,并向公安机关通报违法 犯罪线索。 中央网信办强调,利用"开盒 ...
全球四分之一岗位可能受生成式人工智能影响|南财合规周报(第191期)
21世纪经济报道见习记者 章驰 北京报道 1、算法治理阶段性成果发布 抖音、小红书等平台优化多项功能 据网信办官网,"清朗·网络平台算法典型问题治理"专项行动开展以来,中央网信办督促指导重点平台 针对性优化信息推荐算法功能、调整信息推荐算法规则。重点平台积极响应,重点平台开发上线"茧房 评估""一键破茧"等创新功能。 2、个人信息防泄露!我国将推广应用国家网络身份认证公共服务 5月23日,公安部、国家网信办等六部门联合公布《国家网络身份认证公共服务管理办法》,自7月15日 起施行。与去年7月发布的《征求意见稿》相比,《管理办法》有多处重要改动,包括更强调网号网证 使用的自愿性,注重对未成年人、老年人群体的保护等。目前,"国家网络身份认证公共服务平台"移动 端版本"国家网络身份认证"App已对接400余款App,但不同App使用相关服务的业务场景有差异。 3、《网络交易平台收费行为合规指南》面向社会征求意见 5月25日,市场监管总局发布《网络交易平台收费行为合规指南(征求意见稿)》。明确平台要合理制 定收费标准,健全收费规则、收费公示等制度机制,严格履行减收、免收费用承诺,审慎评估收取保证 金必要性,按照平等自 ...
公安部有关部门负责人就《国家网络身份认证 公共服务管理办法》答记者问
Yang Shi Wang· 2025-05-23 10:24
Core Viewpoint - The introduction of the "National Network Identity Authentication Public Service Management Measures" aims to establish a reliable digital identity system to enhance personal information protection and support the development of the digital economy, effective from July 15, 2025 [1][2][3]. Background - The rapid growth of the internet and digital economy has led to an increased demand for reliable personal identity authentication services, highlighting issues such as unauthorized data collection and the need for a trustworthy digital identity framework [2]. - The Chinese government emphasizes the importance of personal information protection and the establishment of a digital identity management system in various national policies and plans [2]. Legal Basis - The management measures are supported by several laws, including the Cybersecurity Law, Personal Information Protection Law, and Anti-Telecom Fraud Law, which advocate for the development of secure electronic identity authentication technologies [4]. Main Content of the Management Measures - The management measures consist of 16 articles covering four main areas: definitions and application of national network identity authentication services, responsibilities of platforms regarding data security and personal information protection, and special provisions for minors [5]. Data Protection and Information Handling - The management measures stipulate that internet platforms must minimize the collection of personal information and only gather data necessary for identity verification, adhering to the principle of "minimum necessity" [7]. - The measures require that personal information processing must comply with legal obligations, including obtaining user consent for sensitive data handling [7][8]. Data Security Regulations - The management measures mandate that public service platforms implement robust security management systems and technical safeguards to protect data and personal information [8]. - Important data must be stored domestically, and any international data transfer must undergo security assessments [8]. Public Feedback and Revisions - The public consultation period received over 17,000 suggestions, indicating strong public support for the management measures, with significant increases in app downloads and service applications during this time [10][11]. Advantages of National Network Identity Authentication Service - The service offers several advantages over existing authentication methods, including authority based on official identification, enhanced security through anonymization, and convenience for users [13][14]. - It is designed to be a public service, providing free access to businesses for legally required identity verification, thus reducing costs and improving user experience [14]. Data Security Measures - The platform has established a comprehensive security framework that includes data classification, lifecycle protection, and strict access controls to ensure data security [15]. - Regular security drills and assessments are conducted to maintain a proactive defense against potential data breaches [15].
六部门联合公布《国家网络身份认证公共服务管理办法》
news flash· 2025-05-23 10:06
Core Points - The article discusses the implementation of the "National Network Identity Authentication Public Service Management Measures," which will take effect on July 15, 2025, aimed at enhancing digital identity security and supporting the digital economy [1][2][9] Group 1: Public Service Framework - The public service refers to a national platform that provides services such as applying for network numbers and certificates, and verifying identity based on legal identification documents [2][3] - The network number is a non-explicit identity symbol composed of letters and numbers, while the network certificate carries the network number and non-explicit identity information [2][3] Group 2: User Participation and Rights - Individuals with valid legal identification can voluntarily apply for a network number and certificate, with parental consent required for minors [3][4] - Internet platforms must ensure equal service for users who do not use network numbers or certificates but have verified their identity through other means [4] Group 3: Data Protection and Privacy - Internet platforms are prohibited from requiring users to provide explicit identity information if they have verified their identity using network numbers or certificates, except as required by law or with user consent [4][5] - The public service platform is limited to collecting only the information necessary for identity authentication and must inform users about data processing practices [5][6] Group 4: Security and Compliance - The public service platform must implement security measures to protect data and personal information, ensuring that important data is stored domestically [7][8] - Violations of the management measures can lead to penalties under relevant laws, and responsible parties may face legal consequences [8][9]