Search This Blog

Powered by Blogger.

Blog Archive

Labels

Showing posts with label Digital ID. Show all posts

China’s National Digital ID System Trials Begin Across 80 Internet Service Applications

 

China has initiated trials for its new national digital identification system across more than 80 internet service applications. This move follows the release of draft rules on July 26, with a public review and comment period open until August 25. The proposed system marks a significant step toward enhancing digital security and privacy for Chinese internet users. Internet users can now apply for their national digital ID by logging onto a mobile app called National Web Identification Pilot Version, developed by China’s Ministry of Public Security (MPS). 

This digital ID, which displays the user’s name, a “web number,” and a QR code, requires users to complete several verification steps, including national ID card verification and facial recognition. The digital ID can currently be used on 81 different applications, encompassing 10 public service platforms and 71 commercial apps. Notable platforms participating in the trial include the popular social media provider WeChat, the online shopping service Taobao, and the online recruitment platform Zhaopin. This broad implementation aims to test the ID’s functionality across a diverse range of services, highlighting its potential to streamline user identification and enhance security across various online activities. 

The proposed digital ID, detailed in a draft provision released by the MPS and the Cyberspace Administration of China (CAC), aims to reduce the amount of personal information that internet platforms can collect from their users. The draft rules state that applying for the digital ID is voluntary, offering users the choice to opt-in to this new system. This initiative is part of a broader effort to address privacy concerns and reduce the risk of data leaks, which have been exacerbated by the misuse of the current real-name registration system by some internet platforms. The current real-name registration system has allowed internet platforms to accumulate excessive amounts of personal information, leading to heightened privacy risks. The proposed digital ID system seeks to mitigate these risks by limiting the data collected by platforms. 

By requiring only essential information for verification, the digital ID aims to provide a more secure and privacy-conscious way for users to interact online. In addition to improving privacy, the digital ID system also promises to enhance convenience for users. With a single digital ID, users can seamlessly access multiple services without repeatedly providing personal information. This streamlined process not only simplifies the user experience but also reduces the opportunities for data to be misused or leaked. The trial of the national digital ID system represents a significant step towards addressing privacy issues while streamlining the process of user identification online. By implementing a digital ID, China aims to create a more secure and privacy-conscious internet environment for its users. 

This initiative reflects a growing recognition of the need for robust digital security measures in an increasingly interconnected world. As the public review and comment period progresses, feedback from users and stakeholders will be crucial in refining the digital ID system. The insights gained from this trial will help shape the final implementation, ensuring that the system effectively balances security, privacy, and user convenience. China’s commitment to enhancing digital security and privacy through this national digital ID system sets a precedent that could influence similar initiatives worldwide.

Law Enforcement Faces Unprecedented Cyber Threat as Hackers Swipe Police Officer Data

 


In a cyber-attack that has struck two of Britain's most well-known police forces, an expert has warned of a high probability that the personal details of tens of thousands of public sector workers may have been compromised. 

Last month, the Metropolitan Police (Met) was also hacked similar to that which hit Greater Manchester Police (GMP) on Thursday. The hacking also affected nearly 12,500 officers and staff of Met last month. 

A third-party supplier used by both police forces is believed to have been compromised by the ransomware attack that stole the information contained on the warrant cards of officers – including their names, ranks, photos and serial numbers – at the time. 

There was a breach at a Stockport-based company, Digital ID, that produces identity cards and lanyards for several UK organizations, including several NHS trusts and universities, which the National Crime Agency said has been the subject of a criminal investigation. 

According to the message, the attack 'includes data of personnel that work for the public sector and other organisations throughout the UK including GMP and the Metropolitan Police', and the attack also violated the security of several other organisations. 

As a result of the investigation, investigators have begun making conclusions about the possibility of names, ranks, photos, and serial numbers being accessed from the badges. There was a massive security breach of the Met Police last month, causing officers and staff to be hacked in an unprecedented manner. 

In the wake of a cyber crook's breach of the IT systems of a contractor printing warrant cards and staff passes, all 47,000 military members were warned of the possibility their photos, names and ranks been stolen. 

After becoming aware of the incident last month, Digital ID said it notified cyber experts who notified the company. According to the company, most of its clients purchase its printers and produce ID cards at their own offices, which means that there is no need to transfer huge amounts of employee data to third parties, as most clients buy its printers and print ID cards on-site. 

Some clients, however, are still providing employee data to Digital ID so that it can print employee cards for them. It is understood that these customers include the Metropolitan Police as well as the General Medical Council. 

According to a source, most of these identity cards were inactive when they left Digital ID's headquarters, which is where they were created. Despite such clearly visible security measures, it appears that cyber-attackers have somehow managed to access the data produced by the system. 

The highly sensitive nature of the work conducted within the policing system at both forces will lead to serious security concerns due to the high number of officers and staff employed by both forces, which have the most active counter-terrorism units in the country. 

Scotland Yard was alarmed once again last month after a massive breach of security that exposed the names, pictures, and other personal information of officers. It has been revealed that 10,000 people belonging to the Northern Ireland police service had their personal data mistakenly disclosed earlier in August.

Hackers are believed to have stolen the names and photographs of police officers in a massive security breach at the Met at Scotland Yard. After hackers successfully penetrated the IT systems of the contractor printing the warrant cards and staff passes for the force, 47,000 employees were notified of the data leak. 

It was also feared that the information taken may include information regarding the vetting process and identification numbers. The NCA issued a report about the possibility of terrorists or organised gangs using the stolen data for their malicious purposes.

According to reports, the National Crime Agency was contacted over concerns that terrorists or organised gangs may be able to use the stolen data to commit acts of terrorism. Levels of vetting, as well as ID information, were feared to have been among the information taken.