The Register® — Biting the hand that feeds IT

Feeds

Commission proposes new EU cybercrime law

Unified botnet bamboozle

What you need to know about cloud backup

The European Commission wants to harmonise the laws of EU member states dealing with cyber-attacks. It wants to create a new Directive on attacks on information systems, it said in a statement.

The European Commission adopted a 'framework decision' in 2005 that attempted to coordinate laws across Europe on hacking, viruses and denial of service attacks.

It has now said that an increase in the sophistication of these attacks and a change in the legal structure of the EU following the passing of the Lisbon Treaty means that that framework decision should be replaced by a Directive.

"[The framework decision] currently in force was a first step towards addressing the issue of attacks against IT systems. Technological advances and new methods employed by perpetrators call for an improvement of EU rules," said a Commission statement.

"In addition, the entry into force of the Lisbon Treaty on 1 December 2009 provides considerable advantages for new legislation to be adopted in the field of Justice and Home Affairs from now on," it said. "Legislation will no longer need to be approved unanimously by the EU Council of Minsters (which represents national governments). Instead, it will be adopted by a majority of Member States at the Council together with the European Parliament. A single country will not be able to block a proposal."

Cyber-attackers are increasingly using massed ranks of hijacked computers, called botnets, to conduct attacks. Groups opposed to anti-piracy legislation and enforcement, for example, are thought to be behind recent denial of service attacks on various legal and institutional websites that are likely to have used botnets.

The Commission said that it wanted to create a new Directive so that it could ensure that laws in all of the EU member states were adequate to deal with what it said were increasingly dangerous threats.

"Implementation at national level will ... be improved," it said. "The Commission will now be able to monitor how Member States apply EU legislation. If it finds that EU countries violate the rules, it will be in a position to refer the case to the European Court of Justice. These considerations add to the justification for the new proposed Directive."

Like the framework decision, the planned Directive will outlaw gaining illegal access to systems; and interference with systems and data. In addition it will penalise the use of botnets and other 'tools' for those purposes; and make police forces respond faster to problems and collect more data on cyber offences.

The Directive would also increase the penalties for those found guilty of offences under it.

"The proposed Directive raises the level of criminal penalties to a maximum term of imprisonment of at least two years. Instigation, aiding, abetting and attempt of those offences will become penalised as well," said the statement. "Once adopted, the Directive raises the level of criminal penalties of offences committed under aggravating circumstances to a maximum term of imprisonment of at least five years (instead of two years, as foreseen by [the framework decision]).

Those aggravating circumstances would be that the offences were committed by someone acting as part of a criminal organisation; by someone using a tool such as a botnet; or by someone concealing their own identity or using someone else's.

Agentless Backup is Not a Myth

Latest Comments

Indeed wishful thinking of me...

How stupid of me! It's much easier of course to just introduce new laws. And while your at it to change all the internet protocols to make the internet centrally controlled by governments.

That's much easier than to let Microsoft make Windows more secure so cybercrime would become much more difficult. Why create a cure, when you can fight the symptoms?!

0
0

Good Luck with that Desperate Exercise in Applied Futility and Losers' Knee Jerk Reactionary Panic

Door horse bolted stable......... ages ago

Don't you think that Earthling Efforts to Police and Control Command of CyberSpace with ITs Unifying Phorms and Phishes/Lode Veins and Node Mines of Rich IntelAIgent Information for Sources InterNetworking Superior Intellectual Support, with their own pathetically slow/dumbed down SCADA Systems, which would be in competition with, or even trying to oppose a Beta HyperRadioProActive Virtual Operating System, with the InterNet and its Global Information Grids as its Personal Quantum Computer and Communications Control System for Global Operating Devices, is a tad pretentious and unrealistically hopeful/hopelessly ambitious?

Why reinvent the wheel?

0
0
Anonymous Coward

Was good until...

This sounds about reasonable, up until the point of making it an aggravating factor for someone to conceal their own identity. I find it hard to imagine that this will mean much in the majority of cases. How many criminals don't make efforts to conceal there identity... besides the abundance of innocent people that do so. It would have to be an unusual case for that to make sense, or I am missing something. Most of all I worry that it could move from being a factor in establishing sentencing to a criminalised activity.

0
0

More from The Register

SCO vs. IBM battle resumes over ownership of Unix
Zombie lawsuit back and wants to suck the brains out of Linux
 breaking news
NSA whistleblower to tech firms, Obama: 'Grow a pair!'
Ed Snowden: Email tracking grabs 'IPs, raw data, content, headers, attachments, everything'
 breaking news
Ecuador: All right, Julian, you CAN stay on our sofa - it's your human right
Minister and Wikileaker share cosy chat in tiny London flat
Google flings another £1m at online child sex abuse vid CRACKDOWN
See, see, we're trying, ad giant tells Daily Mail UK.gov
 breaking news
NSA PRISM-gate: Relax, GCHQ spooks 'keep us safe', says Cameron
Whatever they are up to, it's all above board, we're told
 breaking news
BBC lied to Parliament about doomed £100m IT monster, thunder MPs
Axed DMI ballooned and burst while watchdogs sang Kumbaya
PRISM snitch claims NSA hacked Chinese targets since 2009
Snowden suddenly looks safer in Hong Kong after revelations
 breaking news
US chief spook: Look, we only want to spy on 6.66 BEELLLION of you
Americans assured they are not in the NSA's sights