PulseAugur
实时 23:09:11
English(EN) Fortress and Gatekeeper: Theorizing Transitive Trust in Third-Party Cybersecurity Risk Governance

新框架探讨第三方网络安全风险中的传递性信任

本文在第三方网络安全风险治理的背景下引入了传递性信任的概念。它探讨了涉及供应商的安全事件(例如2025年11月的OpenAI-Mixpanel事件)如何为主要服务提供商造成问责问题。该研究提出了“堡垒与守门人”框架,以信任和数据流为基础解释网络安全治理,而非仅仅基于组织所有权,并对供应商管理和数据处理提出了启示。 AI

影响 该研究为理解和管理与AI供应商及其供应链相关的网络安全风险提供了一个框架。

排序理由 该集群包含一篇在arXiv上发表的学术论文。

在 arXiv cs.AI 阅读 →

AI 生成摘要 · Google Gemini · 来自 2 个来源。 我们如何撰写摘要 →

新框架探讨第三方网络安全风险中的传递性信任

报道来源 [2]

  1. arXiv cs.AI TIER_1 English(EN) · Yijun Chen, Misita Anwar ·

    堡垒与守门人:第三方网络安全风险治理中传递性信任的理论探讨

    arXiv:2606.26866v1 Announce Type: cross Abstract: Third-party vendors, such as analytics platforms, cloud services, identity providers, and software suppliers, are increasingly embedded in digital service delivery. While these arrangements enable scale and specialization, they al…

  2. arXiv cs.AI TIER_1 English(EN) · Misita Anwar ·

    堡垒与守门人:第三方网络安全风险治理中传递性信任的理论探讨

    Third-party vendors, such as analytics platforms, cloud services, identity providers, and software suppliers, are increasingly embedded in digital service delivery. While these arrangements enable scale and specialization, they also move customer data and security-relevant practi…