跳到主要內容

Nato lays out cyberwar rules of engagement

 A new handbook created for NATO has set out 95 black-letter rules of cyber warfare that, among other recommendations, states that governments should refrain from launching attacks on civilians, hospitals, nuclear power stations, dams and dykes.

The handbook, which defines a cyber-attack as one that is “reasonably expected to cause injury or death to persons or damage or destruction to objects,” warns against all attacks on critical infrastructure, “even when [the targets] are military objectives,” due to the potential for widespread loss of life.

The manual’s main concern is that cyber-actions do have the potential to escalate into full-scale wars. It reads, “cyber operations alone might have the potential to cross the threshold of international armed conflict.” In light of that, civilian hacktivists are therefore legitimate targets in cyber-war.

“While to date, no international armed conflict has been publicly characterized as having been solely precipitated in cyberspace,” the guidelines include a provision for states to respond with conventional force if a cyber-attack results in death or significant damage to property. That force should take the form of "proportionate counter-measures" to an online attack.

It should be stressed that the handbook is not official NATO document or policy, but is rather an advisory manual, which is published by Cambridge University Press. The first attempt of its kind, the handbook is the product of a team of 20 legal experts working for NATO’s Co-operative Cyber Defence Centre of Excellence (CCDCOE) in Tallinn, Estonia. The CCDCOE – which Britain is expected to join later this year – was established in 2008 in response to a series of cyber-attacks on Estonia, thought to have originated from within Russia.

The move to codify rules of engagement is to be lauded, but the proof, as ever, will be in the pudding. The Geneva Convention it is not.

“While NATO’s move to implement a set of rules are to be advocated, the difficulty – as is always the case in cyber space – will be in enforcing and defending these protocols,” said Jason Steer, EMEA product manager at FireEye, in a comment to Infosecurity. “Cybercriminals have long been able to hide behind false identities and cover all trace of illegal activity. We have seen the level of sophistication of these cyber-attacks increase exponentially in recent times, and so it will prove a considerable challenge for NATO to defend its new set of regulations against the wave of next-generation hackers, who are now armed with highly advanced and targeted tools.”

He added that the handbook could become the basis for ongoing legislation over cyber-war, but that organizations should still lay down their own defenses when it comes to protecting infrastructure.

“While it appears that first and second world countries are starting to wake up to the realities of the evolving threat landscape and the issue of nation-state attacks, more is needed to be done to ensure that organizations across the board are robustly protected, as NATO’s attempts to lay down the law are likely to prove extremely difficult to enforce,” said Steer. “With this in mind, organizations, nations and particularly those with critical infrastructure to protect, must be mindful of the limitations of traditional security defenses as well as the emerging legislation designed to mitigate the threat."

from Infosecurity magazine

留言

這個網誌中的熱門文章

ES8311 and ES8388 codec IC

ES8388 audio codec module is one of the audio codec modules available that is supported by ESP32 and official ESP-ADF releases. The ES8388 module lets you have: Stereo microphone and line input Stereo headphone and line out Up to 96 kHz 24 bpp high quality audio This module is compatible with all MCUs that have I2C and I2S ports (like ESP32, ESP8266, STM32, i.MX6, Raspberry Pi, etc) ES8311 Maxgerhardt github PCBartist twblogs ESP32-A1S  (limited stock)Audio codec AC101 or ES8388 built-in. NB the pinouts and firmware are different! Arduino - ESP31-A1S instructable Phil Schatzmann and his github   Simple A2DP thaaraak github on ESP32-A1S github of Yveaux and  Marcel-licence ESP ADF   example:  Logitech PiCorePlayer squeeze lite squeezebox forum   ESP32-Audio-kit  (from AI thinker) based on ESP32-A1S, is simple and small. But upgrade-ability seems limited  Alex John Talbert mixer equalizer: can this be used as simple equalizer? how about proces...

sharpstar 150mm f/2.8 hyperbolic astrograph

to be launched in summer, 2019. spot diagram is now available, and connections diagram to camera is shown . list price RMB 13,000 ( USD 1900 approx) comparing this with Takahashi epsilon-180ED: spot diagram: connections: the focuser is 2.5 inch, and threads are M48 x 0.75mm   cloudynights first impression threads   some nice photo review from skypoint   Astrofotoblog review  c

越南香草

Ngo ~ "N-gaw" Mui ~ "Moo-ee" Ngo ~ "N-gaw" Mui ~ "Moo-ee" Ngo ~ "N-gaw" Mui ~ "Moo-ee" Ngo (N-gaw) ,  Mui  (Moo-ee )  Cilantro Coriandrum sativum, chinese parsley  Ngo Gai (N-gaw guy), Mui Tau (Moo-ee Tao), Ngo Tau (N-gaw Tao)   Mexican Coriander,  Sawtooth Coriander, Cilantro Eryngium foetidum    娥女帝(拼音), 刺芹   特徵:娥女帝是短株形的植物,氣味清淡,葉邊呈鋸齒形,十分容易辨認。來源地:越南。 功效:和白夏差不多,娥女帝亦有祛濕、解毒及驅風的療效。建議食法: Pho,  (Bánh Xeò) 越南煎餅, 炒菜,湯,咖哩 Ngo Gai ~ "N-gaw guy" Mui Tau ~ "Moo-ee Tao" Ngo Tau ~ "N-gaw Tao" - See more at: http://vietworldkitchen.typepad.com/blog/vietnamese-herb-primer.html#sthash.I9rzkzwI.dpuf Rau Ram (Rau Rahm) Vietnam Coriander, Laksa Leaf, "Vietnamese mint(actually not a mint)". Polygonum leaf Polygonum odoratum Peppery, quite spicy. In salad, soup Hung (Hoong), , Hung Lang (Hoong Lang) Spearmint.  Vietnamese coriander Hung Lui (Hoong Lou-ee), Hung ...