See a webpage leak mobile phone number? Mobile visitor marketing into a black industry chain

Why can I leak a cellphone number when I see a web page?

'Mobile visitor marketing' has formed a black industry chain Everyday, endanger the privacy of millions of Internet users

Just read a page with a mobile phone, mobile phone number has not long been their target for a variety of harassing phone calls, in the end is how it happened? In fact, this is the 'mobile phone visitor marketing black industry chain in the mischief, the use of its operation Business system vulnerabilities, illegal access to citizen mobile numbers, and then resold the information for the so-called 'precision marketing'.

Use the mobile Internet to see a few news, after a few minutes off the assembly line junk message, harassing phone is not invited, netizens long overwhelmed .But they do not know, just in their inadvertently brush the phone screen , A new black chain of personal information trafficking has quietly started around.

According to statistics, 688 million Internet users in China were estimated to have caused economic losses of 91.5 billion yuan due to spam messages, fraud information and personal information disclosure between 2016 and 2017. According to Yao Tong, 360 Group's Assistant President, in the frequent cyber-security incidents, In the background, mobile fraud has also shown new trends of criminalization of criminal means, professional scale, loss of huge amounts, and information trafficking and industrialization. Therefore, the upgrade of mobile security technology is indispensable.

status quo

See a webpage with a mobile phone can also reveal personal information

Yesterday, Miss Deng's cell phone was pushed a news, she was curious point to browse a lot, then closed, but soon, used car advertising messages on the first 'bang' flew into the phone, then all kinds of harassing calls After all, can be received several times a day! "Ms. Deng complained .It is reported, from 2016 onwards, after all, A number of Internet users broke the news on the Internet mobile phone number, QQ number and other private information leak: 'I search on the phone, browse the web, quickly received the site's customer service phone sales, I did not register nor log in, the other is precisely Say what time I was, what keywords I used, which site I opened.

In response, most salespeople respond to the user's mobile phone number is provided by the search site. "The fact is that the use of blacksmith system operator loopholes in illegal access to citizen mobile phone number, the information resold to the medical, education and training , Finance and other institutions for the so-called 'precision marketing'.

Specific operational procedures, these agencies from the hands of the two agents monthly or annual purchase of this service, the 'mobile visitor marketing platform' to provide malicious code embedded in the page, when users click on the page, they can in the background Accounts see the user's cell phone number, cell phone models, search keywords and other information, and hired telephone customer service, accurate telephone marketing for visitors, so that many Internet users have to withstand these harassment.

Statistics show that 688 million Internet users in China have estimated economic losses of 91.5 billion yuan due to spam messages, fraud information and personal information disclosure between 2016 and 2017. In addition, data shows that there are over 1.5 million practitioners in China's "Internet blackmails" , And there is a further expansion trend.

survey

'Mobile visitor marketing' gang annual revenue of 100 million

In June this year, 'Haidian netizens' Zhang see online 'mobile phone number crawling service, please add QQ friends private chat' message.According to the other QQ tips, curious Zhang registered the site's members and Free trial crawl code for three days.After his own small site built before the test and found that the 'service' can browse the phone after the user, crawl to the phone number, model and other information.

Xiao Zhang was suddenly realized at this time, the original web site once received inexplicable Internet phone, even all black hand practitioners 'planning.' If not driven by curiosity, Xiao Zhang may never find this mobile visitors Marketing services have actually formed a mature industry chain of O2O-type production tools for black production tools, multi-level sales agents and black-product tools buyers, and the scale of interests behind them is huge. According to the annual membership fee of 8,000 yuan per site, The income of black production gangs has exceeded 300 million yuan.

According to Xiao Zhang's report, Haidian Branch Network Security Brigade and Baidu security technicians found that at present, grasping visitor phone number has formed a complete chain of interests and the black industry chain. The division of labor of black-collar workers is clear and covers most provinces in the country. Every day, endanger the privacy of millions of Internet users.

According to reports, 'mobile visitor marketing' black products have a strict hierarchy of division of labor. Data leakage source for the operator to return to the interface phone number, visitors phone number theft of technical service providers based on the interface to develop a 'mobile phone visitor marketing' platform, and this Class platform sales to an agent, an agent is responsible for the service platform for sale to a large number of two agents, two agents for mobile visitor marketing business distribution.

Hit

'Mobile visitor marketing' black dens have been end

Baidu security statistics found that about 40,000 sites have a similar situation, involving millions of Internet users privacy data.To this end, Baidu security and public security organs jointly launched a 'filter action' to form a task force to participate in the investigation of the case. , The task force lasted for 2 months to carry out verification work in 18 cities across the country and cracked down the first case of blackmail in China, the first privately-owned black product gang that infringed on users' privacy - "mobile visitor marketing" and initially captured 26 involved websites And a number of suspects and seized more than 100 million pieces of citizen information.After the case was uncovered, 33 such as the suspect, Liang Moumou, confessed to the act of "grasping the visitor's mobile number." At present, they have all been arrested by procuratorial organs according to law.

It is worth mentioning that, Baidu launched a special crackdown simultaneously, using AI technology to encircle the black. Baidu security using machine learning technology to detect illegal web pages, has launched a five targeted black confrontation, destroyed more than three months The existence of such a black-line website, netizens click to the number of malicious sites to reduce the number of 99.33%.

It is reported that, in addition to the 'filter action', Baidu in the past two years to block the production of heavy hammer .2016 July, arrested DDoS attack gangs; August 2016, research and development 'Skynet algorithm' targeted theft to steal users In September 2017, blacklists of black-chain products were cracked; blacklist of risk words intercepted 170 million times in the first half of 2017; in the first half of 2017, 'Nursing and Miao 2017' Clear pornographic information more than 22 million; October 2017, with the public security organs arrested pseudo-base station black chain all the industry chain.

View

Mobile security should be linked to the whole industry chain

It is noteworthy that the commercialization of information trafficking also provides a breeding ground for mobile fraud crime 360 ​​Group Assistant President Yao Tong believes that with the explosive growth of various types of mobile products in recent years and the Internet hot spots emerge in an endless stream for the criminals to provide A lot of opportunities for fraud, such as cash loan traps, or fake shared bike refund for fraud.Yao Tong that: 'The current fraud calls and text messages continue to rampant, tricks constantly refurbished, in this case, mobile security technology Upgrade indispensable.

He also pointed out that in recent years malware represented by ransomware has been gradually unfolded and threatened with tremendous damage, and similar imminent blue-chip incidents broke out on the mobile phone side, and the current security mechanism can not be stopped in time and its harm will be far higher. On the PC side, 'In the face of threats, we need to utilize scenario analysis and precision identification of big data and artificial intelligence technologies to track frauds and quickly block frauds based on situational awareness,' said Yao Tong.

According to the statistics, the number of pseudo-base station short messages in our country is very large and has become the main means of spreading telecom fraud and false advertising.According to the "2014 China Mobile Security Status Report" data, in 2014, 360 mobile guards blocked a total of 61.3 billion spam messages , Intercepting an average of 168 million spam messages a day, of which 3.27 billion messages were intercepted by various types of pseudo-base stations and an average of 11.89 million messages were intercepted per pseudo-base station messages on average every day.

Yao Tong said that the network security has entered the 'big security era,' and the mobile security situation is more complex and changeable.In the face of challenges, all parties in the industry chain should actively establish a three-dimensional protection system through technology sharing and information linkage. From a single type of defense to composite defense, from technology-based shift to the same technology awareness, from fighting each other to the whole industry chain linkage is the trend of the times.In Yao Tong, the systematic solution to the problem of anti-fraud, unilateral force alone Far from being enough, we must start from the whole industrial chain and need to build a multi-bit, full-link mobile network security protection system with multiple agencies, including competent agencies, handset manufacturers, operators, security vendors and research institutes.

It is reported that 360 has cooperated with the three major operators to provide services such as harassing phone identification, secondary number whitening, SMS interception of the whole network, interception and reminder of black-and-white websites, covering all provinces in the country and carrying out handset manufacturers such as Samsung and Huawei. Various types of technical cooperation; cooperate with local public security organs to crack down on crimes of fraud, etc. Text / reporter Zhao Xinpei

2016 GoodChinaBrand | ICP: 12011751 | China Exports