02.07.2014 Views

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

1151/2003/EC 130 ) was adopted in 2003, calling for a two-year extension <strong>of</strong> <strong>the</strong> IAP (through<br />

2004) and adapting its scope and implementation. The European Commission also adopted a<br />

proposal for a Council Framework Decision on attacks against information systems, 131 consistent<br />

with <strong>the</strong> CoE Convention on Cybercrime, to approximate criminal law for illegal access<br />

to and interference with information systems, and to ensure <strong>the</strong> greatest possible police<br />

and judicial cooperation in <strong>the</strong> area <strong>of</strong> criminal <strong>of</strong>fences related to attacks against information<br />

systems. This proposal for a decision was amended and approved by <strong>the</strong> European Parliament,<br />

and is now (as <strong>of</strong> this writing) waiting final decision and signature to be enacted. The<br />

European Commission’s Information Society Directorate-General has also commissioned and<br />

funded a CSIRT Handbook <strong>of</strong> Legislative Procedures, 132 to assist European CSIRTs with a<br />

guide that “matches technical descriptions <strong>of</strong> incidents to <strong>the</strong> legal framework <strong>of</strong> <strong>the</strong> country<br />

in question and details procedures for working with law enforcement to respond to incidents.”<br />

133 This handbook was published in paper form in September 2003. 134<br />

The “Group <strong>of</strong> 8” (G8) major industrial democracies 135 has held summits, meetings, and<br />

workshops and has proposed recommendations for <strong>the</strong> fight against high-tech and Internetbased<br />

crimes, which may influence <strong>the</strong> standardization <strong>of</strong> o<strong>the</strong>r laws in <strong>the</strong> future. The G8<br />

Lyon Group 136 (formerly <strong>the</strong> Senior Experts Group on Transnational Organized Crime) has<br />

worked on technical as well as legal issues (judicial cooperation, law enforcement projects,<br />

high-tech crime) to fight transnational organized crime, including <strong>the</strong> establishment <strong>of</strong> a network<br />

<strong>of</strong> 24-hour points <strong>of</strong> contact in many countries around <strong>the</strong> world. 137 Recent G8 meetings<br />

have focused on safety and confidence in cyber space, and on combating high-tech crime. 138<br />

In 2000, <strong>the</strong> United Nations (UN) General Assembly adopted <strong>the</strong> “United Nations Convention<br />

Against Transnational Organized Crime” 139 to promote cooperation to prevent and combat<br />

transnational organized crime more effectively. Although not specifically focused on cyber<br />

crimes, <strong>the</strong> articles in <strong>the</strong> Convention will apply to high-tech criminal investigations, by<br />

providing <strong>the</strong> legal framework to harmonize different legal systems and to overcome traditional<br />

problems associated with international cooperation and mutual assistance.<br />

130<br />

131<br />

132<br />

133<br />

134<br />

135<br />

136<br />

137<br />

138<br />

139<br />

<br />

<br />

<br />

. “Handbook <strong>of</strong> Legislative Procedures<br />

<strong>of</strong> <strong>Computer</strong> and Network Misuse in EU Countries for assisting <strong>Computer</strong> <strong>Security</strong> <strong>Incident</strong> <strong>Response</strong><br />

<strong>Teams</strong> (CSIRTs)”<br />

The handbook can be obtained from RAND Europe at <strong>the</strong> following address: RAND Europe - Leiden,<br />

Newtonweg 1, 2333 CP Leiden, The Ne<strong>the</strong>rlands. Tel. +31 71 524 5151; Fax +31 71 524 5191.<br />

. The G8 countries consist <strong>of</strong> Canada, France, Germany, Italy, Japan,<br />

Russia, <strong>the</strong> United Kingdom, and <strong>the</strong> United <strong>State</strong>s, plus representatives from <strong>the</strong> European Union.<br />

<br />

<br />

<br />

<br />

CMU/SEI-2003-TR-001 117

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!