
Lord we do, he's not wrong...
By Tom Espiner
Published: 21 June 2006 08:25 GMT
Sweeping changes to UK computer crime laws have been proposed by a Conservative peer.
Lord Northesk is seeking to amend the Computer Misuse Act (CMA) 1990 to give the police and judiciary greater "legal clarity" when dealing with computer crime.
The proposed changes would alter the law regarding launching denial of service attacks, the creation of tools that could be used for hacking, and bot attacks.
The UK government is currently trying to update the CMA through amendments in the Police and Justice Bill 2006, which will be debated in the House of Lords this week. Northesk has proposed amendments to the government's own amendments.
As it stands, paragraph 1b of Clause 41 of the Police and Justice Bill would make it an offence to release a computer tool that is "likely to be used" in a computer offence. As reported last month, experts are concerned the government's proposals would have criminalised IT and security professionals who make network monitoring tools publicly available or who disclose details of unpatched vulnerabilities.
Northesk's amendments would see this paragraph deleted, if passed. He believes it could even criminalise the police, if they create and distribute tools for forensic investigation.
Northesk is pushing for the concept of recklessness to be introduced into the updated CMA. He is seeking to amend Clause 40 of the Police and Justice Bill so malicious denial of service (DoS) attacks are criminalised by the CMA but legitimate political protests that slow down servers would not be.
Northesk said: "The key point in Clause 40 is the inclusion of recklessness and intention [in launching attacks]. With effective civil disobedience, a whole series of people petition online [which may cause servers to crash]. Under the current draft this form of legitimate protest may be denied.
"The purpose of the Clause 40 amendment is to address the fundamental issue that a lot of internet activity - such as electronic civil disobedience - currently comes under CMA."
By introducing the issue of recklessness, Lord Northesk also hopes to protect the police themselves from prosecution. "With [establishing] recklessness there is no bar on forensic hacking," he said.
Northesk has also proposed modifying Clause 39 of the Police and Justice Bill so that Trojan horse software which inserts itself onto a system, allowing remote access by hackers, will be specifically covered by the law.
The peer said he hopes the legislation will enable the police and judiciary to better tackle cyber crime, and provide the government with guidance in understanding it.
Northesk told silicon.com sister site ZDNet UK: "I'm a great believer in legal clarity. Too often within government it's not properly understood that which is trying to be achieved. In the desire to future-proof legislation, they tend not to address problems that are sitting there because they are seen as difficult to understand."
Tom Espiner writes for ZDNet UK
Our solutions address all market sectors, with leading clients spread across Legal, Criminal Justice, Defence, Public Sector marketplaces. Sharepoint ...
Being technically proficient in the design of heavy civil engineering structures associated with stations and other relevant infrastructure works. ...
An in depth knowledge of UK and European legislation and regulations relating to energy and carbon emissions is key to this position. Not only do ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Dell PowerVault DL2100 Powered by CommVault - Spec Sheet
Data Protection Strategies: Deduplication for More Efficient Backups
True Convergence Demands a Communication Service Provider that Embraces a Customer-Centric...
Learn how Performance Metrics for Telcomm Expense Management Drive new ROIs and SLAs
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Mark Crichard Doing business with citizen developers: Beware the legal pitfalls Legal Eye: Make sure your business is protected from potential hazards
Tim Ferguson How CIOs can achieve post-recession success Q&A: McKinsey & Company on living in the 'new normal' business world