近日,全国网络安全和信息化工作会议在京召开。指示鲜明强调网信工作“举旗帜聚民心、防风险保安全、强治理惠民生、增动能促发展、谋合作图共赢”的使命任务,明确“十个坚持”重要原则,把对网信工作的规律性认识提升到全新高度,并对网信工作提出要求,为新时代新征程网络强国建设提供了行动指南。
Recently, the National Workshop on Cybersecurity and Informatization was held in Kyoto. The directive placed a strong emphasis on the mission of the Network “to bring people together, to protect them from risk, to govern them well, to increase their energy for development and to work together to win” and defined the key principles of “ten adherences”, raised the regularity of the Network to a new level, and asked for it, providing operational guidelines for the building of a new era of network power.
网络安全和信息化,事关国家长治久安,事关经济社会可持续发展,事关人民群众福祉。建设网络强国,既要解决网络安全问题,也要推动信息化发展。没有网络安全就没有国家安全,没有信息化就没有现代化。网络安全,牵一发而动全身。网络安全已是国家重要战略问题,面对当今数字时代带来的网络安全挑战,筑牢网络安全防线是关键。
Cyber security and informatization are vital for the long-term sustainability of the country, for the sustainable development of the economy and society, and for the well-being of the population. Building a strong cyber-state that addresses both cybersecurity and informs development. There is no national security without cybersecurity, and there is no modernization without information.
近年来,数字化转型已是全球千行百业未来发展的主旋律,数字经济蓬勃发展的同时,也催生放大了新的网络安全风险。国际权威平台发布数据得出结果,2022年世界网络环境遭到了前所未有的安全威胁,且该状况正进一步恶化。
In recent years, the digital transformation has been the central theme of the future development of the world’s thousands of businesses, and the booming digital economy has also led to the exacerbation of new cybersecurity risks. The release of data from international authoritative platforms has led to an unprecedented security threat to the world’s network environment in 2022, and the situation is deteriorating further.
数字经济的可持续与高质量发展,离不开区块链技术等新基建的核心支撑。随着区块链在诸多领域应用落地的价值逐步获得认可,其应用带来的网络安全问题也日渐凸显,尤其在加密货币领域。
Sustainable and high-quality development of the digital economy is underpinned by new infrastructure, such as block chain technology. As the block chain is increasingly recognized for its value in many areas, the cybersecurity implications of its application are becoming increasingly evident, especially in the area of crypto-currency.
作为系统底层支持,虽然区块链集密码学、分布式存储等多项安全控制技术为核心原则进行运作,但其自身仍存在安全漏洞,数据泄漏、资金损失及系统运行故障等安全事件层出不穷。除去技术风险以外,区块链去中心化、匿名性、不可篡改、无国界等特性在有效保护用户隐私、为用户提供便捷的同时,也为网络犯罪等非法活动撑起强大“保护伞”。
As a bottom-of-the-system support, while many security control technologies, such as block chain cryptography, distributed storage, operate as core principles, there are security gaps of their own, and security incidents, such as data leaks, financial losses, and system malfunctions, persist. In addition to technological risks, the centralization of block chains, anonymity, non-frozenness, and borderless features also provide a powerful “protective umbrella” for illegal activities, such as cybercrime, while effectively protecting user privacy and providing easy access to users.
据中科链源SAFEIS安全研究院《2022年区块链安全白皮书》数据统计显示,2022年全球区块链安全事件中,涉事金额超过 10 万美元的事件多达204起。其中,漏洞攻击事件59 起,Rug Pull事件54 起,闪电贷攻击事件21起,涉虚拟币案件18起,数据泄露攻击事件14起,钓鱼攻击事件10起,加密骗局事件8起,前端攻击事件5起,价格操纵攻击事件4起,预言机攻击事件3起,套利攻击事件3起,重大崩盘事件2起,治理攻击事件2起,病毒攻击事件1起。
According to SAFEIS Security Research Institute White Paper 2022, as many as 204 incidents involving more than $100,000 in global block chain security incidents in 2022 were recorded. Of these, 59 were leaked attacks, 54 were Rug Pull incidents, 21 were flash loan attacks, 18 were cases involving virtual currency, 14 were leaked attacks, 10 were fishing attacks, 8 were encryption scams, 5 were front-end attacks, 4 were price-fixing attacks, 3 were forecast machine attacks, 3 were arbitrage attacks, 2 were major crashes, 2 were managed attacks and 1 was viral attacks.
2022年,全球区块链安全事件涉事总金额超过753亿美元,其中,重大崩盘事件超过600亿美元,涉虚拟货币案件约为112亿美元,漏洞攻击事件约24亿美元,数据泄漏攻击事件约8亿美元,加密骗局事件约3.4亿美元,闪电贷攻击事件约2.6亿美元,价格操纵攻击事件约1.3亿美元,Rug Pull事件约7684万美元,预言机攻击事件约 3736 万美元,套利攻击事件约1015万美元,钓鱼攻击事件约1110万美元,前端攻击事件约495万美元,治理攻击事件约220万美元,病毒攻击事件约120万美元。
In 2022, global block chain security incidents totalled over $75.3 billion, with major crashes exceeding $60 billion, virtual currency-related cases amounting to approximately $11.2 billion, porous attacks amounting to approximately $2.4 billion, data leak attacks amounting to approximately $800 million, encryption scams amounting to $340 million, flashlight attacks amounting to some $260 million, price manipulation attacks amounting to some $130 million, Rug Pull incidents amounting to approximately $76.84 million, predictive attacks amounting to approximately $37.36 million, arbitrage attacks amounting to approximately $10.15 million, fishing attacks amounting to approximately $4.1 million, front-end attacks amounting to $4.95 million, management attacks amounting to approximately $2.2 million, and viral attacks amounting to approximately $1.2 million.
结合涉事资金占比最高的“涉虚拟货币案件”侦破情况来看,仅在本月内,湖北荆门,全国“虚拟货币第一案”成功告破,该涉虚拟货币跨境网赌案件涉案流水达4000亿元,涉案人员逾5万人;山西晋城,沁水警方成功破获一起涉虚拟货币洗钱诈骗案件,抓获犯罪嫌疑人21人,涉案资产5480余万USDT,折合人民币约3.8亿余元;香港警方成功瓦解涉虚拟货币跨境洗钱集团,涉案资金逾亿元……可见,洗钱、诈骗、传销、网赌依旧是今年最常见以及危害最严重的四种虚拟货币犯罪形式。
In the context of the detection of the “virtual currency-related cases”, which account for the highest percentage of funds involved, the Hubei Gate, the national “virtual currency case” was successfully solved during the month alone. The case involving virtual currency cross-border gambling involved 400 billion yuan and over 50,000 people; Shanxi Jin City, the police successfully solved a case involving virtual currency money-laundering fraud and captured 21 suspects, with assets of more than 54.8 million USDT, corresponding to about 380 million yuan; Hong Kong police successfully dismantled the virtual currency-related cross-border money-laundering group, involving more than 100 million yuan; it is evident that money-laundering, fraud, distribution, net bets continue to be one of the four most common and most dangerous forms of virtual currency crime of this year.
区块链产业安全亟待重构防护盾牌。产业高质量发展的前提是,科技创新应用之路上,需要切实有效的安全措施与解决方案加持开路,以避免高速发展的过程中野蛮生长,不受控制,被恶意利用,在网络安全问题上造成严重的影响与危害。在人类社会的发展中,科技变革带来“双刃剑”效应,科技创新与暗藏风险必然相伴相生,相辅相成。网络安全既需全民参与,更需全民尽责,将防护之盾前置,防患于未然,全力守护科技之善,构建网络空间命运共同体,为建设安全的网络强国添砖加瓦,贡献每一份力量。
The industry’s high-quality development presupposes that effective security measures and solutions are needed on the path to technological and innovation applications in order to avoid rapid growth, uncontrolled growth, exploitation in bad faith, and serious impacts and hazards on cybersecurity. In human society’s development, technological change brings with it a “double-edged sword” effect, and that technological innovation and hidden risks are mutually reinforcing. Cyber security requires universal participation, greater national responsibility, prevention, full protection of technological well-being, and the building of a community of destiny in cyberspace, contributing every element to the building of a secure network of powerful nations.
注册有任何问题请添加 微信:MVIP619 拉你进入群
打开微信扫一扫
添加客服
进入交流群
发表评论