<tt id="6hsgl"><pre id="6hsgl"><pre id="6hsgl"></pre></pre></tt>
          <nav id="6hsgl"><th id="6hsgl"></th></nav>
          国产免费网站看v片元遮挡,一亚洲一区二区中文字幕,波多野结衣一区二区免费视频,天天色综网,久久综合给合久久狠狠狠,男人的天堂av一二三区,午夜福利看片在线观看,亚洲中文字幕在线无码一区二区

          IT giants should make cyber security a corporate social responsibility

          Updated: 2016-09-12 07:27

          By Lau Wing-cheong and Zhang Kehuan(HK Edition)

            Print Mail Large Medium  Small

          For a city that likes to see itself as modern and high-tech, public awareness about cyber security in Hong Kong has largely stayed at a rather basic level where people are told they should regularly change their passwords. Yet cyber security is very fragile, as was dramatically exposed in a recent controversial London art exhibition that featured images captured from unsecured webcams in homes and businesses in Hong Kong.

          Indeed, cyber security risks are latent in everyday online activity; they can be so dangerous because they are not well understood. For instance, single sign-on (SSO) services, which allow people to use one name and password across different platforms, are not without security loopholes, even if they have been widely adopted by mainstream identity providers (IdPs) such as Facebook, Google, Tencent and Sina, as well as their third-party application developers worldwide.

          Similarly, many users take it for granted that apps distributed on the platforms of IT giants are safe - to provide some context, an average of around 1,500 new apps appeared on Apple App and Google Play stores, respectively, every day between 2015 and 2016 - yet they should realize that not all of these apps are immune to viruses or malwares.

          For companies, even top IT brands, it is always a matter of priorities between ensuring the security or privacy of users and fulfilling other objectives. The reason is simple: Limited business resources require a trade-off between providing "visible" product characteristics such as affordable prices and advanced functionalities, and invisible security properties which are often sacrificed. For an app store, their priority is to provide a large set of timely and popular apps for download, rather than performing thorough security checks of the apps it hosts.

          IT giants should make cyber security a corporate social responsibility

          Equally, any requirements of third-party developers to guarantee the security of their apps will increase costs and ultimately deter supply. And the reality is that most app developers are not necessarily resourceful - even technically trained personnel or computer science majors may not have sufficient ability or even the awareness to take cyber security seriously. As Apple CEO Tim Cook starkly pointed out, even a 9-year-old can write an app today. Therefore, it cannot be expected that app developers, most of whom will have little reputation at stake, will get too exercised about security failings in their designs.

          One may therefore wonder if third-party independent checks of apps can represent a solution if neither companies nor developers can take care of the security of what they sell. However this is easier said than done. Security checks are a huge challenge for the technical community. For instance, how extensive should the checks be for them to be deemed satisfactory? Yet, it is a double-edged sword to put any inspection criteria up for public scrutiny because that would be an open invitation to hackers to find ways to circumvent the checks.

          Despite the apparent conundrum, there is scope for cyber-security protections to improve. For a start, consumers should not expose themselves to risks by shopping at unofficial app stores. At the same time, they should not expect there are no vulnerabilities in apps that are distributed on the most reputable platforms. If this security awareness is turned into consumer pressure, IT giants will be compelled to more robustly vet the security of the apps they put in their stores. Big companies such as Apple and Google have a corporate social responsibility to protect the privacy and security of their users. With recent reports that security loopholes fill 900 million Android devices, IT giants should do more to safeguard the security of everyday services and mobile applications.

          Locally, researchers are involved in efforts to provide new cyber-security solutions. For instance, academics at a key university in Hong Kong have been developing a technology that will enable IdPs to perform systematic security testing of their SSO services so that previously unknown vulnerabilities can be detected. Likewise, a tool is being designed to help both Android app developers and users evaluate and fix the risks of information leakage through shared storage.

          In the long run, if users become more informed about the importance of cyber security, companies will be able to market good security as a selling point of their products or services. And if the Hong Kong government harbors aspirations of making fintech a major industry, it will have to vastly increase the resources it puts into cyber security. Make your own turf safe if money is to be made.

          Professors Lau Wing-Cheong and his co-author Zhang Kehuan are with the Department of Information Engineering, Faculty of Engineering at the Chinese University of Hong Kong.

          (HK Edition 09/12/2016 page10)

          主站蜘蛛池模板: 国产午精品午夜福利757视频播放| 苍井空一区二区三区在线观看| 国产人碰人摸人爱视频| 亚洲日韩中文字幕在线播放| 亚洲女人天堂| 亚洲色在线无码国产精品| 国产系列高清精品第一页| 亚洲成av人片天堂网老年人 | 中文字幕AV伊人AV无码AV| 无码丰满人妻熟妇区| 欧美乱妇狂野欧美在线视频| 国内精品久久久久久影院中文字幕| 玩弄丰满少妇人妻视频| 亚洲成a人片在线观看中| 久热这里只国产精品视频| 国产欧美在线观看一区| 欧美丰满熟妇乱XXXXX网站| 亚洲欧美在线看片AI| 亚洲一区二区三区无码久久| 高清偷拍一区二区三区| www.狠狠| 97视频精品全国免费观看| 日本高清在线观看WWWWW色| 开心五月深深爱天天天操| 年轻女教师hd中字3| 久久久久青草线蕉亚洲| 俄罗斯少妇性XXXX另类| 黄床大片免费30分钟国产精品| 夜鲁鲁鲁夜夜综合视频| 大陆国产乱人伦| 亚洲a∨国产av综合av| 久久永久免费人妻精品下载| 色综合天天综合网天天看片| 双腿张开被5个男人调教电影| 欧美成年视频在线观看| 亚洲欧美中文字幕日韩一区二区| 国产欧美日韩一区二区三区视频| 国内精品一区二区不卡| 国内精品久久久久久影院中文字幕| 亚洲av午夜成人片| 中文字幕奈奈美被公侵犯|