ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Education, not legislation will reduce e-crimes

Munir Kotadia ZDNet.co.uk

Published: 11 Dec 2003 17:40 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Legislating against electronic crimes such as spam and ID fraud will not reduce the problem; instead, education for small businesses and consumers and cooperation between countries is the answer, according to two major industry groups, who launched a consultation paper on the subject on Thursday.

The paper, published by e-commerce lobby group EURIM, and think tank The Institute for Public Policy Research (IPPR), argues that although some legislation is required to fight Internet-based crimes, alone, it will make no difference unless backed up by corporation between international law enforcement agencies and education for computer users.

Philip Virgo, secretary general of EURIM, said that as long as people are so easily fooled by scammers, no amount of legislation will solve the problem of phishing, where fake emails are sent to online banking users asking them to "confirm" their password and username: "Under no circumstances are you supposed to reveal the whole password -- nobody at the bank will ask for more than a few random letters from it -- and yet people have been giving the complete phrase to the phishers," he said.

This was backed up by Brian White, MP for North East Milton Keynes, who said that legislation on its own can never solve problems. "You also need education, particularly of the users. There are lots of users of computers that are prime targets for open relays because they don't know they have left the gate open," he said.

White said that Internet crimes were quickly becoming a good source of revenue for organised crime gangs that have adopted the new technology to spread fear and generate income. He explained that traditionally, organised crime made money from extortion, by going to a shopkeeper and demanding money in return for protection. This type of crime has now been transferred to the virtual world: "Offering protection from denial of service attacks is making them [organised criminals] money. Organised crime is adapting to the Internet world and it is something we need to be quite serious about," he said.

Virgo added that there is already plenty of legislation to address many of the crimes committed using computers and the Internet: "The fraud scams come under the fraud laws, the vast bulk of pornography can be dealt with under the obscenity laws in the UK, the US and Canada -- and in each of those countries they are extraditable offences," he said.

Richard Starnes, director of incident response and managed security services at Cable and Wireless, argues that in e-crime, technology issues are only a small proportion of the problem. "User education and awareness is absolutely vital. This is definitely not a technology problem -- it is maybe 20 percent a technology issue but it is an 80 percent people issue," he said.

White added that although companies should be responsible in ensuring their technology "keeps ahead of the game," any single measure to tackle the e-crime problem would fail: "It is a combination of all those issues -- any one on its own will not achieve the result."

 

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
79 out of 133 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:














Related Jobs

Editorial Team Leader Medical Communications, London 50k upwards

Provide consultancy advice in areas of expertise within and across departments and divisions * Contribute to the development, manage the delivery and ...

PRINCIPAL CONSULTANT - Prince 2 management methodology - West Midlands

This role is multi- faceted and requires a person with a strong customer focus, excellent interpersonal skills and the ability to solve business ...

Computer Forensic Senior Manager

It investigates financial crime (including fraud, money laundering and false accounting) and provides litigation support to clients involved in ...

Sentry Posts Blog

Mobile Linux Better For Mobile Busines...

Mobile Linux Better For Mobile Business Apps? Author: Eric Everson, MyMobiSafe.com As mobile Linux is carving it’s footprint on the future of mobile application development, the... More

Post a comment

DWP downplays security breach

The Department for Work and Pensions (DWP) has admitted that some of its staff have been forwarding passwords with password protected material. An email that was leaked on the 'Dizzy... More

Post a comment

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation