
Time to update the Computer Misuse Act for today's breed of cybercriminals...
Published: 30 June 2004 16:20 BST
A group of UK MPs has recommended key amendments to the 1990 Computer Misuse Act, which should now include specific reference to crimes such as denial of service attacks and related fraud, they claim.
But the suggestions have not received a universal welcome, with many casting doubt on the value of such parliamentary posturing.
The All Party Internet Group presented a number of recommendations today at a press conference in Westminster. Included in the recommendations was the inclusion of a denial of service offence (DoS), particularly relevant given the recent spate of such attacks.
Also on the agenda was an increase in the sentence available to hand down to hackers - extending it from six months to two years and making it an extraditable offence.
Richard Allan MP, joint vice-chairman of APIG said: "If we are to promote increased use of the internet, then we must ensure it is a safe environment for everyone to use. This means taking firm action to deal with those who maliciously attack systems and compromise data."
This is the recommendation that will probably meet with the most enthusiastic approval.
Simon Janes, international operations manager at computer forensics specialist Ibas and former head of Scotland Yard's Computer Crime Unit, told silicon.com: "I applaud the recommendation to increase this sentence. A six-month sentence sent out a message that this wasn't that serious a crime and yet over the years I've seen enough people get hurt and enough companies virtually ruined by the actions of these criminals. In honesty I'd like to see it increase to five years, but this is still a very positive move."
There is also a recommended provision for companies to carry out private prosecutions against hackers and cybercriminals.
Derek Wyatt MP, chairman of APIG, admitted an updating of the current 14-year-old Act is long overdue. But there is little framework in the recommendations for ensuring changes in the law are made in conjunction with the introduction of resources to enforce them and guarantee prosecutions.
Janes added that the police are currently "woefully" under-resourced and are "a long way from effectively and efficiently investigating and solving computer crimes".
There are many in the industry who believe government posturing around the issue of cybercrime is as much about being seen to be acting as actually striving to make a difference.
For example, APIG believes a specific law concerning DoS attacks will deter criminals who hadn't previously realised they were breaking the law. But while such idealism is to be admired, many will mock such a suggestion - not least of all the DoS attackers themselves.
Keeping a more professional head on criticism, the Butler Group has said the recommendations represent a step in the right direction, "but only a small step".
Alan Lawson, research analyst at Butler Group, said: "Hardened criminals will continue to ignore legislation."
MessageLabs, which provided evidence to APIG during the consultation process on the recommendations, meanwhile has come out and repeated the widely held belief that technology, rather than legislation, will be key to combating cybercrime.
Mark Sunner, CTO of MessageLabs, said in a statement: "The legal framework is ultimately only going to be at best one layer of a total solution. Security threats are inherently a technology problem and the solution must continue to be technology-led."
It is about time we had more than a police force t...
Anonymous
There is another aspect of the Computer Misuse Act...
Geoffrey Darnton
The current CMA is long overdue for a revision and...
Mike Alexander
It seems daft to have more legislation which only ...
Anonymous
Statistical Modelling The role; To lead and develop a team to ensure that Basel II Expected Loss models are world class, meet the requirements of all ...
In this growing area, youll have every opportunity to use your technical skills at the sharp end of our operations supporting intelligence and ...
Experience of managing server administration and network infrastructure services If you are interested in our Senior Systems Support Analyst ...
CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.
July 10th: Just MASH Marketing: The Customer Reference Mashup
TechNet Webcast: How Microsoft Does IT: Management and Operations in Windows Server...
Mashing it up with Support: Automate, Coordinate and Collaborate with the Incident...
Ensure Virtualization is Meeting Your Needs--Read this New White Paper
Stories from the web...
Copyright ©1995-2008 CNET Networks, Inc. All rights reserved. Top of page
silicon.com Dear silicon.com: Tech teacher shortage, Kangaroo and phones on planes Reader Comments of the Week
Mike Barrett From CIO to consultant: Project manager or salesman? Hard lessons from the coalface…