Workflow
云原生安全
icon
Search documents
仅1–2人硬抗、致命Bug缠身,Ingress NGINX宣布4个月后“退役”,全球用户慌了:剩下的时间太短了
3 6 Ke· 2025-12-05 03:19
在刚结束不久的 KubeCon 北美大会后,大家都在讨论 eBPF、AI 原生基础设施、云原生安全的未来——然而,真正让整个社区心头一紧的,却是一个被 低调放出的消息: Kubernetes 宣布 Ingress NGINX 将于 2026 年 3 月正式退役,届时,Ingress NGINX 将彻底停止维护,即"不再修复 Bug、不再推出新版本,GitHub 仓库转 为只读"。 换句话说:这个被广泛部署在各类托管 Kubernetes 平台和自建集群、还有成千上万个集群在使用的 Ingress NGINX,4个月后就要彻底"退休"了。 Ingress NGINX 是什么,又为什么重要? 先简单介绍一下 Ingress NGINX。 Ingress 是 Kubernetes 最早的一种"用户友好型"流量入口方式,用于将外部网络请求导向集群内的应用(Gateway API 是更新的替代方式)。要让 Ingress 生效,你的集群中就必须运行一个 Ingress Controller。 而 Ingress NGINX 就是 Kubernetes 集群里最常用的 Ingress Controller 之一,负责根据 ...
腾讯云全栈安全能力亮剑国家网安周,筑牢数字时代“智能防线”
Sou Hu Cai Jing· 2025-10-15 08:55
Core Insights - Tencent Security showcased its advancements in AI security, cybersecurity, and domestic integration innovation at the 2025 National Cybersecurity Awareness Week in Kunming, Yunnan, emphasizing its commitment to building a "digital shield" for various industries [1][3]. AI Security - The rise of AI, particularly large models, presents new security challenges that traditional defense systems struggle to address, necessitating the construction of a robust defense line for the AI era [3]. - Tencent provides a comprehensive solution covering the entire lifecycle of large models, integrating years of practical experience into a structured risk governance framework [3][5]. Large Model Security - Tencent introduced the AI-SPM large model security posture management product to protect the operational environment of large models, enabling timely detection and handling of security risks [5]. - The LLM-WAF large model firewall was launched to offer full-link protection against various threats, including computational abuse and data leakage [5]. Data and Content Security - Tencent employs multiple technologies for end-to-end protection of data security and privacy throughout the lifecycle of large models, including data classification, encryption, and auditing [8]. - The Tencent Cloud Tianyu content risk control platform supports large model training and inference through a six-dimensional approach, ensuring effective content management [8]. Cloud Security - Tencent Cloud maintains over 1.5 million servers globally and has developed a "1+4+N" security defense system to address common and industry-specific security challenges faced by enterprises [10][12]. - The "1+4+N" defense system includes exposure management, data security, host security, web application firewalls, and cloud firewalls, providing a comprehensive security framework for cloud operations [12][14]. Cloud-Native Security - Tencent Cloud has established a cloud-native security system that adheres to principles such as security capability native integration and zero-trust architecture, ensuring the security of containerized applications throughout their lifecycle [15][17]. - The system includes capabilities for image security, runtime intrusion detection, and network security, addressing the unique risks associated with cloud-native architectures [15][17]. Mini Program Security - Tencent Cloud has launched an innovative security solution for mini programs, providing essential protections such as DDoS defense and web application security, ensuring a seamless user experience for retail businesses [18].
信安世纪(688201.SH):没有云原生安全产品
Ge Long Hui· 2025-09-18 10:42
Core Viewpoint - The company is actively advancing research and implementation of post-quantum cryptography and privacy computing solutions, targeting key industries such as banking, insurance, and telecommunications [1] Group 1: Post-Quantum Cryptography - The company is continuously progressing in post-quantum cryptography algorithm research, migration, and industry application [1] - The company has obtained relevant patents for key technologies in post-quantum cryptography [1] - Multiple core products support post-quantum cryptography algorithms, facilitating their replacement and migration in critical business scenarios for clients in banking, insurance, telecommunications, and securities [1] Group 2: Privacy Computing - The company has launched the NetPEC privacy computing platform and secured related technical patents [1] - The platform enables collaborative computing, data fusion, and joint modeling among multiple institutions, enhancing the ability to extract and utilize the immense value of data elements [1] - The company addresses two major issues: data silos and data privacy protection, promoting data security integration and shared circulation in finance, insurance, and government sectors [1] Group 3: Cloud Native Security - The company does not currently offer cloud-native security products, but its existing security products support cloud-native environments [1]
“一哥”也巨亏 网安公司入局AI找增量
Jing Ji Guan Cha Wang· 2025-05-16 07:38
Core Insights - The core viewpoint of the articles highlights the significant challenges faced by the cybersecurity industry, particularly the financial struggles of leading companies like Qihoo 360, which reported a loss exceeding 1.3 billion yuan in 2024, reflecting a saturated market and intense competition [1][4]. Group 1: Industry Challenges - The cybersecurity industry is experiencing a "red ocean" dilemma characterized by market saturation, price competition, and tightening customer budgets, leading to a decrease in project availability [1][3]. - Major cybersecurity firms are reporting substantial losses, with Qihoo 360's loss of over 1.3 billion yuan and other firms like Green Alliance Technology and Starry Stone Network also facing losses ranging from 100 million to 400 million yuan [4]. - The shift in client behavior is evident as enterprises are increasingly developing their own cybersecurity solutions, reducing reliance on external vendors [3][8]. Group 2: AI Integration and Future Opportunities - Leading cybersecurity firms are investing in AI technologies, launching products like Qihoo 360's "Q-GPT" and Green Alliance Technology's "Fengyunwei," indicating a strategic pivot towards AI-enhanced security solutions [2][7]. - The emergence of generative AI is reshaping the threat landscape, with attackers leveraging AI to enhance the efficiency of phishing attacks and other cyber threats, thus necessitating a rethinking of defense strategies [5][6]. - Three potential growth markets for cybersecurity firms in the AI era include compliance-driven service upgrades, vertical industry-specific demands, and cloud-native security solutions, with the latter expected to grow at a compound annual growth rate exceeding 30% [6][5]. Group 3: Challenges of AI in Cybersecurity - The integration of AI into cybersecurity presents a dual challenge, as both attackers and defenders utilize AI, leading to a "cat-and-mouse" dynamic where the effectiveness of AI security products against zero-day attacks remains insufficient [7][8]. - Current AI security products have a low interception rate for zero-day attacks, and issues such as high false positive rates due to model "hallucinations" pose additional challenges for cybersecurity firms [7][8]. - The industry's ability to balance technological innovation with risk management will be crucial for firms to gain a competitive edge in the evolving cybersecurity landscape [7].