ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Compliance Toolkit

Lord battles government over cybercrime laws

Tom Espiner ZDNet.co.uk

Published: 20 Jun 2006 14:50 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Sweeping changes to UK computer crime laws have been proposed by a Conservative peer.

Lord Northesk is seeking to amend the Computer Misuse Act (CMA) 1990 to give the police and judiciary greater "legal clarity" when dealing with computer crime.

The proposed changes would alter the law regarding launching denial of service attacks, the creation of tools that could be used for hacking, and bot attacks.

The UK government is currently trying to update the CMA through amendments in the Police and Justice Bill 2006, which will be debated in the House of Lords this week. Northesk has proposed amendments to the government's own amendments.

As it stands, paragraph 1b of Clause 41 of the Police and Justice Bill would make it an offence to release a computer tool that is "likely to be used" in a computer offense. As reported last month, experts are concerned that the government's proposals would have criminalised IT and security professionals who make network monitoring tools publicly available or who disclose details of unpatched vulnerabilities.

Northesk's amendments, if passed, would see this paragraph deleted. He believes that it could even criminalise the police, if they create and distribute tools for forensic investigation.

Northesk is pushing for the concept of recklessness to be introduced into the updated CMA. He is seeking to amend Clause 40 of the Police and Justice Bill so that malicious denial of service (DoS) attacks are criminalised by the CMA but legitimate political protests that slow down servers would not be.

"The key point in Clause 40 is the inclusion of recklessness and intention [in launching attacks]. With effective civil disobedience, a whole series of people petition online [which may cause servers to crash]. Under the current draft this form of legitimate protest may be denied," said Northesk.

"The purpose of the Clause 40 amendment is to address the fundamental issue that a lot of Internet activity — such as electronic civil disobedience — currently comes under CMA."

By introducing the issue of recklessness, Lord Northesk also hopes to protect the police themselves from prosecution. "With [establishing] recklessness there is no bar on forensic hacking," he said.

Northesk has also proposed modifying Clause 39 of the Police and Justice Bill so that Trojan horse software that inserts itself onto a system, allowing remote access by hackers, will be specifically covered by the law.

"The current text of the CMA doesn't deal with bot attacks — inserting software onto a machine that allows remote attacks," said Northesk.

The peer said he hopes the legislation will enable the police and judiciary to better tackle cybercrime, and provide the government with guidance in understanding it.

"I'm a great believer in legal clarity. Too often within government it's not properly understood that which is trying to be achieved. In the desire to future-proof legislation, they tend not to address problems that are sitting there because they are seen as difficult to understand," Northesk told ZDNet UK.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
245 out of 319 people found this useful


Company/Topic Alerts

Create a new alert from the list below:



Related Jobs

Civil Engineer - Structural

Fantastic 6 month initial contract opportunity for an Independent Civil Engineer to assist with a Power Plant construction project. You must be a ...

Civil Engineering Manager, South Wales 30K- 35K

Role Description: The role will consist of about 60% straight design using AutoCAD 2D. Coming up with the required design after discussions with the ...

Business Development Manager - Market leaders in Civil Engineering

Business Development Manager - Market leaders in Civil Engineering South East - Offices in Weybridge, Surrey The Position: This is an excellent ...

Loading Video Player ....

Featured Talkback

There will be further activation issues to watch out for as Microsoft plans to offer a similar service to independent software vendors whereby they can "control" licensing through activation and other measures similar to the Software Protection Platform.

By: DefenceIT

Read full story:
Microsoft outage down to 'human error'

Sentry Posts Blog

Mobile Linux Better For Mobile Busines...

Mobile Linux Better For Mobile Business Apps? Author: Eric Everson, MyMobiSafe.com As mobile Linux is carving it’s footprint on the future of mobile application development, the... More

Post a comment

DWP downplays security breach

The Department for Work and Pensions (DWP) has admitted that some of its staff have been forwarding passwords with password protected material. An email that was leaked on the 'Dizzy... More

Post a comment

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment