国家安全机关近日发布提示,警示杀毒软件和病毒库过期更新不及时已成为网络安全防护的重要漏洞1。全球每年新出现的恶意软件数量呈指数级增长1,而过期的防护工具难以应对不断演变的网络威胁。
据通报,国家安全机关已掌握多起因杀毒软件停更、病毒库过期导致失泄密的典型案例1。其中,某科研单位因病毒库未及时更新遭黑客入侵,大量重要数据被窃取倒卖1;某机关单位办公终端未落实定期查杀措施,工作邮箱遭网络攻击1;某企业公网服务器在杀毒软件长期未更新的情况下"裸奔"运行,被植入病毒并遭远程控制1。
国家安全机关建议相关单位建立完善的运维管理制度、提升安全意识、强化科技防护手段1。《中华人民共和国网络安全法》明确规定,网络运营者应采取防范计算机病毒等技术措施1,定期更新病毒库是履行这一法律义务的重要内容。
China's national security authorities have issued a warning highlighting that outdated antivirus software and expired virus databases represent a critical vulnerability in network security defenses.1 The alert documents three major incidents in which organizations suffered data breaches and information leakage due to failure to maintain current virus database updates.1
The first case involved a research institution whose outdated virus database left it vulnerable to hacker infiltration, resulting in the theft and resale of substantial amounts of sensitive data.1 A government office in the second instance failed to implement regular malware scanning protocols on its workstations, leading to network attacks against its official email system.1 In the third case, an enterprise's public-facing server operated without adequate protection, with antivirus software left unpatched for extended periods, ultimately allowing malicious code injection and remote takeover.1
According to China's Cybersecurity Law, network operators are explicitly required to implement technical safeguards against computer viruses and related threats.1 The national security agency recommends that affected organizations establish comprehensive maintenance management systems, strengthen cybersecurity awareness, and enhance technological defense mechanisms. Globally, the volume of newly discovered malicious software continues to grow exponentially.1
评论
还没有评论,欢迎留下第一条。