<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>netdefences &#187; internet security governance</title>
	<atom:link href="http://netdefences.com/tag/internet-security-governance/feed/" rel="self" type="application/rss+xml" />
	<link>http://netdefences.com</link>
	<description>internet security, research and politics</description>
	<lastBuildDate>Wed, 16 Jun 2010 13:23:59 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>The security risk of bad security-provisioning design</title>
		<link>http://netdefences.com/2010/06/the-security-risk-of-bad-security-provisioning-design/</link>
		<comments>http://netdefences.com/2010/06/the-security-risk-of-bad-security-provisioning-design/#comments</comments>
		<pubDate>Thu, 10 Jun 2010 16:28:44 +0000</pubDate>
		<dc:creator>Andreas Schmidt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[internet security governance]]></category>
		<category><![CDATA[openness]]></category>
		<category><![CDATA[secrecy]]></category>

		<guid isPermaLink="false">http://netdefences.com/2010/06/the-security-risk-of-bad-security-provisioning-design/</guid>
		<description><![CDATA[I&#8217;ve pointed out earlier some of the research questions for social scientific internet governance research. The main issues I described there are:

There is a lack of empirical analysis undertaken by social scientists, who are not affiliated with biased agencies engaged in turf-wars or the fear-mongering security industry, about the scale, quality and impact of internet [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve pointed out <a href="http://netdefences.com/2010/04/nagging-questions-in-cybersecurity-research/">earlier</a> some of the research questions for social scientific internet governance research. The main issues I described there are:</p>
<ol>
<li>There is a lack of empirical analysis undertaken by social scientists, who are not affiliated with biased agencies engaged in turf-wars or the fear-mongering security industry, about the scale, quality and impact of internet security issues. Furthermore, existing institutions have hardly been researched.</li>
<li>Ongoing debates in the political sphere often refer to an lack-of-enforceability argument. More often than not, these arguments fail to be backed by scientific findings.</li>
<li>The geopolitical dimension of internet security is under-researched.</li>
<li>The potentially disruptive impact of internet-based collaboration on traditional security provisioning processes is to be explored. We can observe these discourses about new forms of distributed collaboration everywhere, but not in the field internet security governance.</li>
</ol>
<p>The main issue for social sciences however to provide guidance for institutional and organisation design for internet security governance.</p>
<p><img src="http://netdefences.com/wp-content/uploads/IMG_0390.jpg" width="360" height="480" alt="IMG_0390.jpg" style="padding-right:8px;" /></p>
<p><i><font size="3"><span style="font-size: 13px;">Ad-hoc defense system protecting railway embankment against Danube flood</span></font></i></p>
<p><span id="more-131"></span>
<p>The goal is to overcome the “problem of discovering workable political institutions for a community … that was created by a formidable revolution in technology; … and many of its common problems are beyond the power of nation states to solve.” This is a quote from the 1958 book, <i>World Peace through World Law,</i> by Grenville Clark and Louis B. Sohn. The community they refer to is nothing less than humanity or the community of world citizens that had been turned from a diverse, distributed, unconnected set of ethnics, tribes and nations into one community facing the fate of extinction by the invention of nuclear and hydrogen bombs. One can very well argue whether assured mutual destruction was the wisest answer humanity could have found for this problem.</p>
<p>Luckily, internet security problems aren&#8217;t that grim as the security problem caused by military use of nuclear technology — despite all that cyberwar/cyber-terror/cyber-Pearl Harbour/cyber-9/11/cyber-Katrina rhetoric. Societal risks are not only caused by internet security problems. The political reactions to them, the emergent institutional design and patterns of internet security governance can pose as grave a problem. The underlying threat for, well, relatively and somewhat open societies is that the responsibility for the security of the communicational nerve system is transferred to political, administrative and bureaucratic bodies which are characterised by secrecy, clandestiness, non-transparency and national egoisms. Traditionally, security-provisioning was owned by agencies that have just these characteristics. If, however, societies do not want to pass control of the internet to such institutions, the options are the following:</p>
<ul>
<li>Security institutions are substantially changed by adding transparency, openness, attributability and direct more direct involvement of citizens.</li>
<li>Responsibility for internet security is distributed over complex, multiple layers with daunting attribution and legitimacy challenges. Responsibilities will be divided along criteria such as geography, jurisdictions, scale and scope of impact, ownership of resources and infrastructures, locus of expertise.</li>
</ul>
<div id="ectocontent">
  <br />
  <img src="http://netdefences.com/wp-content/uploads/IMG_03792.jpg" width="360" height="480" alt="Mumus Bar, Budapest" />
</div>
<p>The risk inherent in internet security governance is to end up with governance institutions that are neither transparent, legitimate, far from citizens&#8217; influence, non-inclusive or separatistic and do not allow for clear attribution. Which would equate to: insecurity through internet security institutions.</p>
]]></content:encoded>
			<wfw:commentRss>http://netdefences.com/2010/06/the-security-risk-of-bad-security-provisioning-design/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The emergence of internet security governance as a research field in social sciences</title>
		<link>http://netdefences.com/2010/06/the-emergence-of-internet-security-governance-as-a-research-field-in-social-sciences/</link>
		<comments>http://netdefences.com/2010/06/the-emergence-of-internet-security-governance-as-a-research-field-in-social-sciences/#comments</comments>
		<pubDate>Thu, 10 Jun 2010 16:10:09 +0000</pubDate>
		<dc:creator>Andreas Schmidt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[internet security governance]]></category>
		<category><![CDATA[research]]></category>

		<guid isPermaLink="false">http://netdefences.com/2010/06/the-emergence-of-internet-security-governance-as-a-research-field-in-social-sciences/</guid>
		<description><![CDATA[It&#8217;s finally happening. After an abysmally long time of politicians, military, and the security industry coming up with streams of innovative policy tangle in the name of internet security or cybersecurity, a critical mass of social scientists and research interested practitioners has teamed up to start deepening our knowledge of internet security and its governance. [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s finally happening. After an abysmally long time of politicians, military, and the security industry coming up with streams of innovative policy tangle in the name of internet security or cybersecurity, a critical mass of social scientists and research interested practitioners has teamed up to start deepening our knowledge of internet security and its governance. While Hungary was having difficult times by <a href="http://news.bbc.co.uk/2/hi/europe/707398.stm">floods</a> and <a href="http://www.budapesttimes.hu/index.php?option=com_content&amp;task=view&amp;id=14665&amp;Itemid=220">economic turmoils</a>, Budapest couldn&#8217;t have been a more lovely and welcoming place in the last couple of days.</p>
<p>
<img src="http://netdefences.com/wp-content/uploads/IMG_03491.jpg" width="480" height="360" alt="IMG_0349.JPG" /></p>
<p><span id="more-127"></span>
<p>Two intense days of <a href="http://cmcs.ceu.hu/cybersecurity/main">workshopping</a> at the Central European University produced a stunningly long list of open questions and &#8211; as Rummy would have called &#8211; things that we now know we don&#8217;t know. Things decision makers however should know before jumping to conclusions in the delicate area of internet security, surveillance, filtering and what else. One of the well-connected participants with intimate knowledge about cybersecurity circles estimated that some 90 percent of knowledge about cybersecurity had been developed by brains sitting in the Pentagon or it&#8217;s contractors offices. For the sake of societal values such as openness and transparence, time is ripe to look at internet security from a decisively different angle.</p>
<p>It speaks volumes about the state of European internet research, that roughly half the number of the workshop participants were flown in over the Atlantic. Necessarily so, as the workshop organisers pointed out, given the lack of European social scientist studying internet security governance especially in Eastern European countries.</p>
<p>Anyhow, it&#8217;s going to be very interesting to see where this thing is heading to once, if at all, the <a href="http://www.esf.org/">European Science Foundation</a> will pour some drops out of its funding buckets onto this promising undertaking.</p>
]]></content:encoded>
			<wfw:commentRss>http://netdefences.com/2010/06/the-emergence-of-internet-security-governance-as-a-research-field-in-social-sciences/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>A follow-up on the German botnet-center</title>
		<link>http://netdefences.com/2009/12/a-follow-up-on-the-german-botnet-center/</link>
		<comments>http://netdefences.com/2009/12/a-follow-up-on-the-german-botnet-center/#comments</comments>
		<pubDate>Fri, 18 Dec 2009 16:11:07 +0000</pubDate>
		<dc:creator>Andreas Schmidt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[Germany]]></category>
		<category><![CDATA[internet security governance]]></category>

		<guid isPermaLink="false">http://netdefences.com/2009/12/a-follow-up-on-the-german-botnet-center/</guid>
		<description><![CDATA[I&#8217;ve written a quick analysis of the recent anti-botnet politics in Germany. Kind crew behind netzpolitik.org has published it on this blockbuster blog. It&#8217;s written in German, though, but you could alternatively give Google Translator a moment of embarrassment.
]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve written a quick analysis of the recent anti-botnet politics in Germany. Kind crew behind <a href="http://www.netzpolitik.org/about-this-blog/">netzpolitik.org</a> has <a href="http://www.netzpolitik.org/2009/botnets-internetanbieter-und-politik-auf-sanften-sohlen-zu-neuen-nationalen-strukturen-der-internet-regulierung/#comment-362434">published it</a> on this blockbuster blog. It&#8217;s written in German, though, but you could alternatively give <a href="http://translate.google.com/translate?hl=de&amp;sl=auto&amp;tl=en&amp;u=http%3A%2F%2Fwww.netzpolitik.org%2F2009%2Fbotnets-internetanbieter-und-politik-auf-sanften-sohlen-zu-neuen-nationalen-strukturen-der-internet-regulierung%2F">Google Translator</a> a moment of embarrassment.</p>
]]></content:encoded>
			<wfw:commentRss>http://netdefences.com/2009/12/a-follow-up-on-the-german-botnet-center/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Shadowserver Foundation publishes Conficker botnet stats</title>
		<link>http://netdefences.com/2009/12/shadowserver-foundation-publishes-conficker-botnet-stats/</link>
		<comments>http://netdefences.com/2009/12/shadowserver-foundation-publishes-conficker-botnet-stats/#comments</comments>
		<pubDate>Wed, 16 Dec 2009 17:55:13 +0000</pubDate>
		<dc:creator>Andreas Schmidt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[internet security governance]]></category>

		<guid isPermaLink="false">http://netdefences.com/2009/12/shadowserver-foundation-publishes-conficker-botnet-stats/</guid>
		<description><![CDATA[This is going to be an interesting experiment in internet security governance. Scientists have argued for years that internet security problems are as much caused by a misalignment of incentives as they are by technological flaws in software and hardware. One obvious recipe to call ISPs for action against botnets is one that has helped [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.shadowserver.org/wiki/pmwiki.php/Stats/Conficker">This</a> is going to be an interesting experiment in internet security governance. Scientists have argued for years that internet security problems are as much caused by a misalignment of incentives as they are by technological flaws in software and hardware. One obvious recipe to call ISPs for action against botnets is one that has helped to increase software vendors&#8217; activities in increasing software robustness.</p>
<p>Gathered under the umbrella of the <a href="http://www.shadowserver.org/wiki/">Shadowserver Foundation</a>, a group of engineers and scientists have scrupulously gathered evidence and background information about the activities of the Conficker botnet. They have known for months that millions of machines worldwide had been infected with Conficker malware. Yet, no one reacted, only shoulders were shrugged. At <a href="http://www.govcert.nl/render.html?it=41">govcert.nl</a> in October, many were contemplating how to proceed with Conficker.</p>
<p>Starting today, <a href="http://www.shadowserver.org/wiki/pmwiki.php/Calendar/20091216">Shadowserver let&#8217;s everyone know</a> where these Conficker-infected machines are. The move is a valuable contribution to increase global transparency about the somewhat obscure botnet problem.</p>
<p>An <a href="http://www.shadowserver.org/wiki/pmwiki.php/Infections/Conficker-DE">interesting example from Germany</a> immediately sticks out. 1&amp;1, a big hosting and medium-sized accessed provider, had initiated an internal initiative against botnet-infected customer systems earlier this year. Today, only ten IP addresses and 0% of their routed space are assigned to infected machines. For customers of Deutsche Telekom, which hasn&#8217;t announced a similar program, things look worse: 0.1% of all IP addresses or more than 32,000 IP addresses belong to a Conficker-infected machine.</p>
]]></content:encoded>
			<wfw:commentRss>http://netdefences.com/2009/12/shadowserver-foundation-publishes-conficker-botnet-stats/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Germany will get a private-public botnet center</title>
		<link>http://netdefences.com/2009/12/the-announcement-of-a-german-botnet-center/</link>
		<comments>http://netdefences.com/2009/12/the-announcement-of-a-german-botnet-center/#comments</comments>
		<pubDate>Wed, 09 Dec 2009 08:31:26 +0000</pubDate>
		<dc:creator>Andreas Schmidt</dc:creator>
				<category><![CDATA[organisational forms]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[Germany]]></category>
		<category><![CDATA[internet security governance]]></category>

		<guid isPermaLink="false">http://netdefences.com/2009/12/the-announcement-of-a-german-botnet-center/</guid>
		<description><![CDATA[Yersterday, press reports about an alleged joint venture of national ISPs and the national IT security agency to build a national botnet center stirred some scepticism and perplexety in Germany. After heise online brougth the news, the hacker association CCC informed that this rather is a hoax.
However, the German national ICT security agency (Bundesamt für [...]]]></description>
			<content:encoded><![CDATA[<p>Yersterday, press reports about an alleged joint venture of national ISPs and the national IT security agency to build a national botnet center stirred some scepticism and <a href="http://www.netzpolitik.org/2009/grosses-it-gipfel-projekt-war-wohl-eine-ente/">perplexety</a> in Germany. After heise online brougth the <a href="http://www.heise.de/newsticker/meldung/Deutschland-Zentrale-gegen-Botnetze-geplant-879580.html">news</a>, the hacker association CCC <a href="http://blog.fefe.de/?ts=b5e0747e">informed</a> that this rather is a hoax.</p>
<p>However, the German national ICT security agency (Bundesamt für Sicherheit in der Informationstechnik, BSI) and the association of the German internet business, eco (Verband der deutschen Internetwirtschaft), have cooperated on botnet issues at least since October 2008.</p>
<p>A <a href="http://www.eco.de/veranstaltungen/2807_5784.htm">workshop on botnets in early February 2009</a> addressed topics such as data-exchange between ISP regarding information from systems such as honeypots, abuse systems, spam traps (email analysis), DNS analysis, IDS/IAS (anomalie detection) or harmful websites. This information provided by ISPs could then be complemented with external data sources. Given the lack of published data, it is not clear which techniques ISPs actually use to exchange data today.</p>
<p>Another <a href="http://www.eco.de/veranstaltungen/1164_5733.htm">workshop</a> on botnets, obviously organized by eco, took place in early February 2009. One of the speakers was Frank Ackermann, senior legal counsel to eco, who <a href="http://www.eco.de/dokumente/090204_Ackermann_eco.pdf">talked</a> about judicial aspects of botnet fighting. According to Ackermann, &#8220;ISPs are interested in moderate filtering&#8221; of spam. Thus, politics should be discouraged from strict anti-spam regulation.</p>
<p>The programme of <a href="http://www.eco.de/veranstaltungen/1161_6216.htm">another joint eco-BSI workshop</a>, the 7th German Anti Spam Summit mid-September 2009 on conficker, has sessions like &#8220;Status Quo central botnet disinfection call center DE&#8221; and &#8220;Legal Guide on Technical Approaches against Botnets&#8221; listed. According to the programme, Dr. Lothar Eßer, Head of Division Internet Security of BSI, also attended this session.</p>
<p>In late November 2009, eco mentioned in a summary of their IGF09 activities that it is going to build a &#8220;Botnet Disinfection Center&#8221; in a joint effort with BIS and several providers.</p>
<p>So, Germany will get it&#8217;s public-private anti-botnet center. According to <a href="http://www.eco.de/verband/202_7263.htm">eco&#8217;s press release</a>, eco and BSI will establish a user-support center. ISPs will forward customers with infected machines to a website which provides tools and descriptions for removing malicious software from their machines. In addition, users with infected computers can call a special hotline with experts assisting users in removing harmful software.</p>
<p>&#8212;-</p>
<p>Upd. 9.12.; 16.12: changed headline, added the paragraph with eco&#8217;s press release; corrected typos</p>
]]></content:encoded>
			<wfw:commentRss>http://netdefences.com/2009/12/the-announcement-of-a-german-botnet-center/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Links on states&#8217; recent activities in internet security</title>
		<link>http://netdefences.com/2009/11/links-on-states-recent-activities-in-internet-security/</link>
		<comments>http://netdefences.com/2009/11/links-on-states-recent-activities-in-internet-security/#comments</comments>
		<pubDate>Sun, 29 Nov 2009 15:35:29 +0000</pubDate>
		<dc:creator>Andreas Schmidt</dc:creator>
				<category><![CDATA[internet security]]></category>
		<category><![CDATA[cyberwar]]></category>
		<category><![CDATA[internet security governance]]></category>
		<category><![CDATA[links]]></category>

		<guid isPermaLink="false">http://netdefences.com/2009/11/links-on-states-recent-activities-in-internet-security/</guid>
		<description><![CDATA[UK
UK cybersecurity centre starting operations in March &#8211; ZDNet.co.uk
Administered by Cabinet Office; staff partly to be recruited from GCHQ, should have hacker mentality; &#8220;primarily … a defensive role &#8220;, cyberattack as &#8220;last resort&#8221;.UK also has an Office of Cyber Security (OCS), set up last summer. UK launches dedicated cybersecurity agency &#8211; ZDNet.co.uk Gordon Brown: &#8220;we [...]]]></description>
			<content:encoded><![CDATA[<p><strong>UK</strong><br />
<a href="http://news.zdnet.co.uk/security/0,1000000189,39877965,00.htm">UK cybersecurity centre starting operations in March &#8211; ZDNet.co.uk</a><br />
Administered by Cabinet Office; staff partly to be recruited from GCHQ, should have hacker mentality; &#8220;primarily … a defensive role &#8220;, cyberattack as &#8220;last resort&#8221;.UK also has an Office of Cyber Security (OCS), set up last summer. <a href="http://news.zdnet.co.uk/security/0,1000000189,39667231,00.htm">UK launches dedicated cybersecurity agency &#8211; ZDNet.co.uk</a> Gordon Brown: &#8220;we … have to secure our position in cyberspace in order to give people and businesses the confidence they need to operate safely there&#8221;<br />
As UK is at it: Digital Economy Bill passed:</p>
<p><a href="http://www.boingboing.net/2009/11/20/britains-new-interne.html">Britain&#8217;s new Internet law &#8212; as bad as everyone&#8217;s been saying, and worse. Much, much worse. &#8211; Boing Boing</a> Including 3-strikes, stricter video-game ratings, ISPs forced to deliver data with content industry, business secretary gets carte blanche to come up with stricter regulations.<br />
&#8220;It&#8217;s a declaration of war by the entertainment industry and their captured regulators against the principles of free speech, privacy, freedom of assembly, the presumption of innocence, and competition.&#8221; (<a href="http://www.boingboing.net/2009/11/19/breaking-leaked-uk-g.html#previouspost">BoingBoing</a>)</p>
<p><strong>US</strong><br />
<a href="http://www.nextgov.com/nextgov/ng_20091113_1728.php">The cyberwar plan, not just a defensive game &#8211; Nextgov<br />
</a>Stupid headline – who would think that cyber-warfare is about defense only.<br />
„Computerized tools to penetrate an enemy’s phone system“, „computer viruses and malicious software programs that can disable electrical power systems, corrupt financial data, or hijack air traffic control systems“, „cyber-intruders have probed our electrical grid“ (no, not the <a href="http://notionscapital.wordpress.com/2009/10/24/terrorists-strike-u-s-infrastructure/">squirrel terrorists</a>), &#8220;we&#8217;d have cadres of people who&#8217;d know how to do that&#8221;, &#8220;Military forces fight for the ownership of that domain [cyber-battlefield]&#8220;, &#8220;Defense Department graduates only about 80 students per year from schools devoted to teaching cyber-warfare&#8221;, &#8221; proposed building a military &#8220;botnet,&#8221; an army of centrally controlled computers to launch coordinated attacks on other machines&#8221;. &#8220;The risk of losing control of a weapon provides a powerful incentive not to use it&#8221;</p>
<p>See also: <a href="http://www.nationaljournal.com/njmagazine/cs_20091114_3145.php">National Journal Magazine &#8211; The Cyberwar Plan</a></p>
<p><a href="http://www.nybooks.com/articles/23231">Who&#8217;s in Big Brother&#8217;s Database? &#8211; The New York Review of Books</a><br />
Degree of surveillance measured in electricity bills: 70 millions per year http://bit.ly/3DwW49</p>
<p><a href="http://seclists.org/isn/2009/Nov/92">Information Security News: NIST Drafts Cybersecurity Guidance</a><br />
&#8220;tackling criticism that federal cybersecurity regulations have placed too much weight on periodic compliance audits&#8221;; &#8220;more onus on applying risk management throughout the lifecycle of IT systems&#8221;. Yawn.</p>
<p><a href="http://www.infosecnews.org/pipermail/isn/2009-November/018503.html">[ISN] Inside the Ring &#8211; Chinese, Russian cyberwarfare</a><br />
Like nuke-counting in the eighties.<br />
Noteworthy: a new Cyber Security Alliance <a href="http://gcn.com/articles/2009/11/12/tech-firms-form-cybersecurity-alliance.aspx#">14 tech firms form cybersecurity alliance for government &#8212; Government Computer News</a></p>
<p><strong>Australia</strong><br />
<a href="http://www.goldsteinreport.com/article.php?article=9695">Australian government overhauls national cyber security arrangements &#8211; Government &amp; Policy</a> &#8220;against increasing online espionage and attacks on critical infrastructure&#8221;, new CERT Australia, Cyber Security Operations Centre (CSOC), details undisclosed</p>
<p><strong>EU</strong><br />
<a href="http://blog.security4all.be/2009/10/automated-social-networking.html?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+Security4all+%28Security4all%29">Automated Social Networking Surveillance Systems</a> <a href="http://www.statebook.co.uk/">Statebook</a> is going to be developed!?</p>
<p>====<br />
<a href="http://2010.newsweek.com/essay/a-decade-of-destruction.html">How the Internet Ruined Newspapers, TV, Music, Movies, Microsoft &#8211; Newsweek 2010</a>, <a href="http://www.goldsteinreport.com/article.php?article=9614">The Internet: A Decade of Destruction &#8211; Internet Use/New Technologies</a> „wherever companies were profiting by a lack of transparency or a lack of competition, wherever friction could be polished out of the system, those industries suffered“ – What about national political institutions (in the wider sense) then?</p>
]]></content:encoded>
			<wfw:commentRss>http://netdefences.com/2009/11/links-on-states-recent-activities-in-internet-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>blog, research, interests</title>
		<link>http://netdefences.com/2009/11/blog-research-interests/</link>
		<comments>http://netdefences.com/2009/11/blog-research-interests/#comments</comments>
		<pubDate>Mon, 23 Nov 2009 14:28:27 +0000</pubDate>
		<dc:creator>Andreas Schmidt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[internet security governance]]></category>
		<category><![CDATA[research]]></category>

		<guid isPermaLink="false">http://netdefences.com/?p=13</guid>
		<description><![CDATA[Security of the internet isn’t provided by a hierarchical, secretive and central organisation. There is no global internet police, and there is no internet defence corps. Internet security is the result of the collaboration of diverse types of actors such as internet service providers, technical experts, police and law enforcement, governments and academics. These actors [...]]]></description>
			<content:encoded><![CDATA[<p>Security of the internet isn’t provided by a hierarchical, secretive and central organisation. There is no global internet police, and there is no internet defence corps. Internet security is the result of the collaboration of diverse types of actors such as internet service providers, technical experts, police and law enforcement, governments and academics. These actors make a dense, highly complex internet security governance network in which each type of actor is characterized by its own organisational idiosyncrasies while at the same time being part of the overall governance structure.</p>
<p>My focus currently is on bottom-up processes to provide internet security, like task-forces and working groups that are set up in an ad-hoc manner to tackle with the lates security phenomenon. Academics, engineers, experts and geeks from all over the world collaborate to provide. The way in which they are addressing security problems resembles what could be called peer production of internet security. My interest is to learn to what extent this mode of security provisioning is used, the settings in which we can observe it and whether this mode is sustainable or not. And how this all relates to internet security and the overall structure of internet security in general.</p>
<p>The internet is a tool that already has fundamentally changed business processes and business models. It is too early to tell what its long-term impact on societies and politics will be. Debates about ‘freedom’ on the internet have been going on for a while, such as if and how the internet fosters freedom of expression, or how authoritarian internet governance approaches could suppress individuals’ rights. The practices of internet security provisioning will have decisive consequences for the shape of ‘freedom’ on the internet.</p>
]]></content:encoded>
			<wfw:commentRss>http://netdefences.com/2009/11/blog-research-interests/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
