You are here: silicon.com > Management > Law & Policy

Law & Policy

UK MPs urge cybercrime revisions and tougher sentences

Time to update the Computer Misuse Act for today's breed of cybercriminals...

Tags: hackers, cyber crime, apig

By Will Sturgeon

Published: 30 June 2004 16:20 GMT

A group of UK MPs has recommended key amendments to the 1990 Computer Misuse Act, which should now include specific reference to crimes such as denial of service attacks and related fraud, they claim.

But the suggestions have not received a universal welcome, with many casting doubt on the value of such parliamentary posturing.

The All Party Internet Group presented a number of recommendations today at a press conference in Westminster. Included in the recommendations was the inclusion of a denial of service offence (DoS), particularly relevant given the recent spate of such attacks.

Also on the agenda was an increase in the sentence available to hand down to hackers - extending it from six months to two years and making it an extraditable offence.

Richard Allan MP, joint vice-chairman of APIG said: "If we are to promote increased use of the internet, then we must ensure it is a safe environment for everyone to use. This means taking firm action to deal with those who maliciously attack systems and compromise data."

This is the recommendation that will probably meet with the most enthusiastic approval.

Simon Janes, international operations manager at computer forensics specialist Ibas and former head of Scotland Yard's Computer Crime Unit, told silicon.com: "I applaud the recommendation to increase this sentence. A six-month sentence sent out a message that this wasn't that serious a crime and yet over the years I've seen enough people get hurt and enough companies virtually ruined by the actions of these criminals. In honesty I'd like to see it increase to five years, but this is still a very positive move."

There is also a recommended provision for companies to carry out private prosecutions against hackers and cybercriminals.

Derek Wyatt MP, chairman of APIG, admitted an updating of the current 14-year-old Act is long overdue. But there is little framework in the recommendations for ensuring changes in the law are made in conjunction with the introduction of resources to enforce them and guarantee prosecutions.

Janes added that the police are currently "woefully" under-resourced and are "a long way from effectively and efficiently investigating and solving computer crimes".

There are many in the industry who believe government posturing around the issue of cybercrime is as much about being seen to be acting as actually striving to make a difference.

For example, APIG believes a specific law concerning DoS attacks will deter criminals who hadn't previously realised they were breaking the law. But while such idealism is to be admired, many will mock such a suggestion - not least of all the DoS attackers themselves.

Keeping a more professional head on criticism, the Butler Group has said the recommendations represent a step in the right direction, "but only a small step".

Alan Lawson, research analyst at Butler Group, said: "Hardened criminals will continue to ignore legislation."

MessageLabs, which provided evidence to APIG during the consultation process on the recommendations, meanwhile has come out and repeated the widely held belief that technology, rather than legislation, will be key to combating cybercrime.

Mark Sunner, CTO of MessageLabs, said in a statement: "The legal framework is ultimately only going to be at best one layer of a total solution. Security threats are inherently a technology problem and the solution must continue to be technology-led."

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Mark Crichard Doing business with citizen developers: Beware the legal pitfalls Legal Eye: Make sure your business is protected from potential hazards

Tim Ferguson How CIOs can achieve post-recession success Q&A: McKinsey & Company on living in the 'new normal' business world


  • Jobs
Web Tester - Penetration Tester - Staffordshire West Midlands

Opportunities and complies fully with all relevant legislation Candidates must have thorough experience of web application penetration testing which ...

Complaints Handling Consultant

Complaints Handling Consultant, Public Sector, London Our Public Sector client requires a Complaints Handling Consultant to conduct a review of ...

Business Analyst- Senior/Six Sigma/Prince2- London

This will include documenting processes to make recommendations for improvements, identifying and analysing potential solutions and understanding the ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: