Workflow
网络安全
icon
Search documents
“AI换脸”骗局防不胜防,金融行业开打“反深伪”攻防战
Nan Fang Du Shi Bao· 2025-10-19 07:14
Core Insights - The rise of AI-generated fraud, particularly deepfake scams, poses significant risks to the financial sector, prompting regulatory and technological responses [1][4][9] Group 1: AI Fraud Trends - The Hong Kong Monetary Authority (HKMA) has launched the second phase of its Generative AI sandbox, focusing on risk management and anti-fraud measures in the banking sector [3][10] - A report from Qihoo 360 indicates a staggering 3000% increase in AI-based deepfake fraud in 2023, alongside a 1000% rise in AI-generated phishing emails [4][8] - The financial sector has seen direct economic losses exceeding 1.8 billion yuan due to AI-related scams from 2022 to early 2024 [8] Group 2: Case Studies and Impact - A notable case involved a Hong Kong employee losing 200 million HKD in a video conference scam where participants were deepfake representations [6][7] - The Beijing Financial Regulatory Bureau reported numerous cases of "AI face-swapping" scams, highlighting the vulnerability of individuals to such frauds [5][6] Group 3: Technological Responses - Financial institutions are developing AI-driven solutions to combat AI-generated fraud, such as the Anti-Fraud Strategy Platform, which boasts over 99% detection accuracy for deepfake images [10][11] - Regulatory measures are being implemented, including a new identification system for AI-generated content set to take effect in September 2025 [9][10] - The industry is exploring the use of AI to identify and counteract AI-generated fraud, emphasizing the need for advanced technological defenses [9][11]
玉渊谭天丨美方为何攻击中国国家授时中心?一图看懂“分秒不差”的重要性
Xin Lang Cai Jing· 2025-10-19 05:24
Core Points - The U.S. National Security Agency has been accused of cyberattacks on China's National Time Service Center, with evidence of infiltration and data theft from staff mobile devices since 2022 [1][10] - From August 2023 to June 2024, the U.S. is reported to have deployed 42 specialized cyberattack tools to conduct large-scale attacks on the National Time Service Center, aiming to penetrate high-precision ground timing systems [1][10] Summary by Relevant Sections Cybersecurity Threats - The U.S. has exploited vulnerabilities in a foreign brand's mobile SMS service to gain unauthorized access to the mobile devices of multiple staff members at the National Time Service Center [1][10] - The attacks are characterized as being conducted with national-level intensity, indicating a significant threat to China's timing infrastructure [1][10] Importance of the National Time Service Center - The National Time Service Center is crucial for maintaining the national standard time, which is aligned with Coordinated Universal Time (UTC) [3] - It is located in Xi'an, Shaanxi Province, chosen for its stable geological structure and ability to cover signals nationwide [3][4] Implications of Timing Errors - Even a one-second deviation in time can lead to significant disruptions, such as power outages due to timing errors in power stations [5] - A microsecond error could result in billions in changes in international stock market transactions [6] - Timing inaccuracies can also affect the precision of satellite positioning systems like BeiDou, leading to location errors of up to 30 centimeters [6][7]
掌上新书Vol123 | “多面”区块链:是学术利器,还是过载的喧嚣?
Sou Hu Cai Jing· 2025-10-18 08:58
Core Insights - Blockchain technology has transcended the financial sector, impacting areas such as law, management, supply chain, and public governance, promising a new paradigm of trust through decentralized consensus [1] - The proliferation of blockchain-related projects has led to a conceptual and value confusion, challenging scholars to discern genuine academic value amidst the noise [1] - A systematic understanding of the technology's essence is essential for identifying worthwhile academic directions in blockchain research [1] Group 1: Academic Resources - "Research on Chinese Strategies for Developing Blockchain Payment Systems" focuses on China's strategic development of blockchain payment systems, providing a theoretical framework based on three major economic theories: the "trilemma theory," "free currency theory," and "transaction cost theory" [2][5] - "International Handbook of Blockchain Law" offers an in-depth analysis of blockchain technology principles, regulatory policies, smart contracts, data privacy, capital markets, and crypto-assets, serving as a crucial reference for legal practitioners and scholars [2][7] - "Convergence of Blockchain, Internet of Everything, and Federated Learning for Security" explores the integration of blockchain with IoE and federated learning to enhance digital ecosystem security, emphasizing its importance in modern digital environments [2][10] Group 2: Practical Guides - "Blockchain Technology for the Engineering and Service Sectors" serves as a guide for leveraging blockchain technology to drive cross-industry innovation and efficiency, discussing current challenges and future prospects [2][12] - "Hands-On Blockchain for Python Developers" is a practical guide for Python developers, detailing how to build decentralized applications using Python and related frameworks, covering essential topics like smart contracts and secure content storage [2][15]
亚信安全科技股份有限公司关于公司核心技术人员变动的公告
Core Points - Xu Yeli, a core technical personnel of AsiaInfo Security Technology Co., Ltd., has recently left the company and will no longer be recognized as core technical personnel [2][3] - Xu Yeli has signed a confidentiality agreement and has obligations to maintain confidentiality. All patents he participated in during his tenure belong to the company, with no disputes regarding patent ownership [2][5] - The company confirms that Xu Yeli's departure will not have a significant adverse impact on its overall research and development work or its technological advantages and core competitiveness [2][9] Details of Departure - Xu Yeli has completed the handover of his responsibilities and will not hold any position in the company [3] - He has a background in computer applications and has held various positions in technology and research roles before joining the company in March 2016 [4] Patent and Ownership Situation - All patents applied for by Xu Yeli during his tenure are considered work-related achievements, and their ownership belongs to the company, with no potential disputes [5] Shareholding Information - As of the announcement date, Xu Yeli does not directly hold any shares in the company but indirectly holds approximately 290,000 shares through the employee stock ownership platform [6] Confidentiality Obligations - Xu Yeli is committed to adhering to confidentiality obligations as per the agreement signed with the company, and there have been no reported violations of these obligations [8] Impact on Company Operations - The company emphasizes its strong research and development capabilities and has established a complete R&D system. The existing R&D team is well-structured and capable of supporting ongoing technological development [9] - The company expresses gratitude for Xu Yeli's contributions during his tenure and plans to enhance the recruitment and training of technical personnel to improve innovation capabilities [9]
亚信安全核心技术人员徐业礼离任
Xin Lang Cai Jing· 2025-10-17 16:11
Core Points - Xu Yeli, a key technical personnel at AsiaInfo Security, has resigned from his position [1] - The average age of the board and senior management at AsiaInfo Security is 48 years, with a median age of 49 years [2] - The total compensation for the board and senior management in 2024 is 12.97 million yuan, with an average salary of 983,700 yuan [2][3] - The total compensation for board and senior management decreased by 20.28% from 2022 to 2024 [3] - AsiaInfo Security's stock price increased by 7.82% from the end of 2022 to the end of 2024 [4] - There have been six changes in the board and senior management in the past year [4] - The new financial director, Peng Xiaomin, has extensive experience in financial management and team leadership [7] - Xu Yeli's resignation may have implications for the company, which will be monitored by the media [8]
报告发布!全国网安产业规模超两千亿,AI等“新蓝海”涌现
Nan Fang Du Shi Bao· 2025-10-17 11:41
Core Insights - The report highlights the importance of advanced cybersecurity technology and a robust cybersecurity industry for maintaining national cybersecurity [1] - The current scale of China's cybersecurity industry has reached nearly 220 billion yuan, but it still faces challenges such as fragmentation and slowing revenue growth among listed companies [1] - Emerging fields like industrial internet, artificial intelligence, and data security are creating new opportunities for industry development, driving a shift towards more integrated and capability-driven security products and services [1] - Generative artificial intelligence is described as a "double-edged sword," enhancing intelligent defense while lowering the barriers for cyberattacks, complicating security regulation [1] Industry Outlook - Despite being in the early stages of development, the Chinese cybersecurity industry has significant growth potential, driven by ongoing optimization of top-level design, deep integration of technologies, and innovation in service models [2] - The industry is expected to achieve leapfrog development in response to major power competition and digital challenges [2]
中新赛克:2025年前三季度净利润约-1063万元
Mei Ri Jing Ji Xin Wen· 2025-10-17 11:16
每经头条(nbdtoutiao)——"我还在!"林园硬气回应牛市亏钱,"接下来,我还会在!"坚持白酒是"快 乐需求",科技股买了"愁得睡不着" 每经AI快讯,中新赛克10月17日晚间发布三季度业绩公告称,2025年前三季度营收约4.13亿元,同比增 加13.93%;归属于上市公司股东的净利润亏损约1063万元;基本每股收益亏损0.06元。 (记者 张明双) ...
中新赛克:第三季度归母净利润5651.5万元,同比增长19.09%
Xin Lang Cai Jing· 2025-10-17 11:11
中新赛克10月17日公告,2025年第三季度实现营业收入1.87亿元,同比下降4.12%;归属于上市公司股 东的净利润5651.5万元,同比增长19.09%;基本每股收益0.33元。前三季度实现营业收入4.13亿元,同 比增长13.93%;归属于上市公司股东的净利润亏损1063.07万元。 ...
网络安全等级保护测评过程指南助您轻松通过测评,避免整改风险!
Sou Hu Cai Jing· 2025-10-17 09:01
Core Insights - The article emphasizes the importance of a comprehensive approach to cybersecurity assessment, highlighting that both technical and management aspects are crucial for successful compliance with security standards [1][4][6] Group 1: Cybersecurity Assessment Process - Cybersecurity level protection assessment is a thorough evaluation of an enterprise's security system, covering physical, network, host, application, and data security [1] - Common pitfalls include relying solely on technology or focusing only on document compliance; a balanced approach is necessary [1][4] - Collaborating with professional service providers can enhance remediation efficiency and mitigate risks associated with last-minute preparations [1][9] Group 2: Company Overview - Chuangyun Technology, established in 2015 and headquartered in Guangzhou, is a leading one-stop service provider for cybersecurity level protection assessments and cloud security in China [2] - The company operates in over 90 cities across 34 provincial-level administrative regions, serving more than 1,500 clients [2] - Chuangyun Technology's team consists of experienced security assessors, penetration engineers, and project managers, ensuring high-quality service across various industries [2] Group 3: Common Misunderstandings in Assessment - Many organizations, especially smaller ones, misunderstand the assessment process, often viewing it as a mere formality rather than a comprehensive evaluation of their security posture [4][6] - The assessment is not just about having firewalls or antivirus software; it requires a holistic view of compliance across multiple security domains [6][10] Group 4: Compliance Challenges - Organizations often struggle with the balance between technical compliance and documentation compliance, with many failing to recognize the importance of maintaining accurate management records [7][10] - The assessment process has become stricter, and both technical measures and management systems must be aligned to avoid penalties [7][11] Group 5: Remediation Strategies - Not all remediation suggestions need to be implemented immediately; organizations can prioritize high-risk items and develop phased plans for less critical improvements [8][15] - Effective communication and coordination among departments are essential for successful remediation, as delays can hinder compliance efforts [8][9] Group 6: Industry Insights - The article highlights common concerns across various sectors, such as the healthcare industry's fear of operational disruptions during remediation [12][14] - It stresses that the essence of cybersecurity assessments is to evaluate the robustness of an enterprise's security framework against potential threats, rather than merely achieving compliance [12][13]
永信至诚扣非连亏一年半 2022年上市国信证券保荐
Zhong Guo Jing Ji Wang· 2025-10-17 01:56
永信至诚发行费用共计6,985.43万元,国信证券股份有限公司获得保荐承销费用4,400.00万元。 (责任编辑:华青剑) | 主要会计数据 | 本报告期 (1-6月) | 上年同期 | 本报告期比上年 同期增减(%) | | --- | --- | --- | --- | | 营业收入 | 85,280,070.97 | 100,161,010.72 | -14.86 | | 利润总额 | -42,395,983.27 | -21,073,987.53 | 不适用 | | 归属于上市公司股东的净利润 | -42,052,667.53 | -18.467.087.02 | 不适用 | | 归属于上市公司股东的扣除非经常 | -45,718,742.27 | -23,578,350.97 | 不适用 | | 性损益的净利润 | | | | | 经营活动产生的现金流量净额 | -43.297.439.64 | -67.890.867.49 | 不适用 | 2024年,永信至诚实现营业收入35,632.63万元,同比下降9.99%;归属于上市公司股东的净利润848.22万 元,同比下降72.73%;归属于上市公司股 ...