内生安全体系
Search documents
齐向东聚焦“三个认识” 解析“十五五”期间的网络安全变局
Jin Rong Jie· 2026-01-30 07:32
在2026年网络安全等级保护技术学术交流活动上,全国政协委员、全国工商联副主席、奇安信集团董事长齐向东发表主题演讲指出,面向"十五五",要提高 三个认识、建设四个平台、划定五条红线,加快网络安全升级改造。他特别强调,提高对漏洞、攻击者与损失的"三个认识"是实现精准防御、有效应对"十 五五"期间各类新型威胁的首要逻辑前提。 齐向东首先详尽拆解了对漏洞的认识。他指出,网络安全问题的核心是漏洞。软件漏洞、硬件漏洞、机器漏洞、人性漏洞、体系漏洞、运营漏洞六大方面的 安全风险不容忽视。他特别指出,机器漏洞是综合性的,随着场景延伸而持续泛化。 比如,无人机后台管理系统的漏洞,一旦被敌对势力控制,可以非法入侵敏感空域、用于定向监控,甚至实施恶意操控引发重大公共安全事件。智能汽车的 车厂云平台、终端服务器、汽车主机三个环节的漏洞也不容忽视。奇安信对国内主流汽车厂商的云平台进行了分析,93.3%的厂商云平台存在安全漏洞,其 中76.7%的厂商云平台存在超危或高危级漏洞,直接危害车企和用户数据安全、车辆安全。 更值得警惕的是"人性漏洞",贪婪、仇恨与急难等本能弱点,极易被黑灰产或境外情报机构精准利用,成为撬动整个防御体系的支点。 ...
奇安信董事长齐向东出席2025网安周山东省活动开幕仪式
Qi Lu Wan Bao· 2025-09-15 08:52
Core Viewpoint - The 2025 National Cybersecurity Awareness Week emphasizes the importance of building an internal security system to enhance cybersecurity capabilities during the "14th Five-Year Plan" period, addressing new challenges and evolving threats in the digital age [1][4]. Group 1: New Transitions in Cybersecurity - Three major new transitions are reshaping the traditional security landscape: the application of artificial intelligence, the concentration of data, and the deepening of digital transformation, which collectively create systemic security demands [2][4]. - The evolution of security capabilities must outpace technological applications and industrial development to prevent vulnerabilities [2]. Group 2: Security Challenges - Four significant security challenges hinder the advancement of cybersecurity during the "14th Five-Year Plan": - The first challenge is the invisibility of advanced threats, with organized digital groups targeting critical national infrastructure and core enterprise data [3]. - The second challenge is the inability to defend weak links, as disparate systems and lack of unified response hinder effective security management [3]. - The third challenge involves the management of data flow, where internal threats pose significant risks, especially in the context of AI applications [5]. - The fourth challenge is the lagging security measures in various scenarios, particularly in industries like energy and finance, where traditional security solutions fail to adapt [5]. Group 3: Solutions for Cybersecurity Enhancement - To address these challenges, a focus on internal security is proposed through six dimensions: - Breaking down data silos to enhance security system implementation [6]. - Empowering security systems with AI to improve operational efficiency [7]. - Integrating security capabilities across endpoints, networks, clouds, and data to combat multi-faceted attacks [8]. - Establishing a "zero trust" framework to mitigate internal threats [9]. - Strengthening application security defenses tailored to AI scenarios [9]. - Unifying security protection barriers through a coordinated platform to enhance operational effectiveness [10]. Group 4: Commitment to Cybersecurity - The company expresses its commitment to collaborating with various stakeholders to enhance cybersecurity capabilities, ensuring national security and public welfare during the critical phase of the "14th Five-Year Plan" [10].