2026年9月10日

Zhou Hongyi Claims 95%+ of Chinese PCs Run 360 as 360’s Annual Vulnerability Report Reveals 4,000+ Flaws per Month

Fast Technology reported on February 1 that Zhou Hongyi previously stated more than 95% of computers...

Fast Technology reported on February 1 that Zhou Hongyi previously stated more than 95% of computers in China have installed 360 Security Guard, 360 Antivirus, or 360 Endpoint Security Management.

So why do so many users choose 360? One clue may lie in the company’s latest official findings.

Recently, 360 Digital Security Group’s Vulnerability Research Institute released the “2025 Annual Cybersecurity Vulnerability Analysis Report.” The report notes that the global volume of security vulnerabilities showed a fluctuating upward trend in 2025, with an average of 4,283 newly disclosed vulnerabilities per month.

Notably, December saw a sharp surge, with the number of reported vulnerabilities jumping to 5,579, the highest monthly figure of the year—an increase of 68.55% month-on-month. This spike highlights the heightened, end-of-year risk of concentrated vulnerability disclosures and intensified cyberattacks.

In terms of severity, medium- and high-risk vulnerabilities dominated the threat landscape, accounting for a combined 81.11% of all findings. Medium-risk vulnerabilities made up 46.29% (23,788 cases), while high-risk vulnerabilities accounted for 34.82% (17,894 cases). Critical vulnerabilities represented 16.35% (8,405 cases), and low-risk issues were just 2.54%.

The report suggests this distribution indicates an expanding exposure surface for high-risk vulnerabilities across government and enterprise environments—raising the pressure on organizations to strengthen their security defenses.

Looking at vulnerability categories, web applications remain the most prominent risk area. Traditional high-impact issues such as cross-site scripting (XSS), improper privilege/permission management, and SQL injection continue to feature heavily.

Among them, XSS topped the list with 8,557 vulnerabilities (19.98%), followed by improper permission management with 5,755 vulnerabilities (13.44%). Combined with “other” vulnerability types, these categories account for more than 60% of the total.

The report’s overall message is clear: as the AI era accelerates, systems may face broader and faster-moving attack opportunities through vulnerabilities—and having essential security protection in place becomes increasingly important.

接著讀