This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies.  > Find out more here

 
All the latest UK technology news, reviews and analysis

Security experts question EC's cyber attack disclosure plans

by Alastair Stevenson
06 Nov 2012
View Comments
  • Tweet this
Hacker

The European Commission's (EC) proposals that companies be forced to reveal information on security attacks will cause more harm than good and cause ill-advised knee-jerk reactions to attacks, according to leading security vendors.

EC vice president for the digital agenda, Neelie Kroes, revealed that the body is considering forcing private sector firms hit by attacks to report the incidents, during a speech on Sunday.

The policy is an escalation of the EC's previous plans to force businesses to report any data breaches to affected parties - as is currently the case in the telecoms sector.

If implemented the legislation would force companies to report incidents to a number of undisclosed "relevant authorities" after every attack.

The policy is reportedly designed to help strengthen the region's cyber security information sharing culture giving businesses and governments more information about what the biggest active threats are.

However, speaking to V3, Trend Micro security director Rik Ferguson highlighted that such a policy would likely have the opposite effect, forcing businesses to take ill-conceived, knee-jerk reactions to attacks.

"Exposing whatever knowledge a victim has of attacks which are being perpetrated against it, particularly at too early a stage, could seriously hinder investigative efforts by alerting attackers to the fact that they have been discovered," Ferguson told V3.

"Any legislation in this area, as in all crime, should be on the side of the victim whether that be an international corporation or an individual whose personal data has been compromised.

"Both of these are best served by allowing an investigation to properly determine the truth and extent of events before any notification takes place."

Do you agree
blog comments powered by Disqus
Poll

Apple iOS 7 redesign poll

Will you be updating your iPhone to the new version of the operating system unveiled by Apple?
18%
2%
7%
2%
71%

Popular Threads

Powered by Disqus
HTC One vs Apple iPhone 5 head to head review

iPhone 5 v HTC One head to head video review

V3 pits top devices against one another ahead of Samsung Galaxy S4 launch

Updating your subscription status Loading
Connect with V3.co.uk

Sign up to our daily or weekly newsletters

newsletter sign-up button
mimecast

Postini migration – 5 easy steps

The clock is ticking for Postini users that don't want to move their email management to Google Apps.

acquia

How to keep up with the speed of the web through open source

Build great digital experiences at the speed of the web

Java Developer J2EE / JEE Agile

Java Developer / Java JEE Software Engineer / Programmer...

SAP Financials - FI/CO Consultant

Our client is currently looking to hire a SAP Financials...

SAP FICO

SAP FI COMy established client in Germany is looking...

SQL Application Support Analyst / C# / Manchester

SQL Application Support Analyst / C# / Manchester...
To send to more than one email address, simply separate each address with a comma.