200 likes | 222 Vues
Explore the key aspects of e-mail and internet security, including risks, regulations, prevention methods, and emerging alternatives. Gain insights into the importance of legislation and individual responsibilities in safeguarding online activities.
E N D
E-mail and Internet SecurityCindy van den BoogertEuropean CommissionInformation Society and Media DG Workshop on ICT Standards & Guidelines on ICT Security policy Tirana, Albania 17 March 2009 Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
The presentation… • The Internet • E-mail • Risks and security requirements • Legislation and regulation • Conclusions Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
The internet • What it says on the box: “A network of networks, a network of computer networks” Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
The internet • Some big networks… • Some very small networks • But very, very many networks • Operated by lots of different organisations and people Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
The internet • The pictures? • a cloud? • highways? • tubes? • more? • Participation as much as connection Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Internet • ISP’s? • Internet service providers? • Internet access • Internet services Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
E-mail • Ubiquitous • Useful • Important • Annoying • Dangerous Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
E-mail • Users • Very many • Multiple accounts • Service providers • Very many • Many styles Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
E-mail • Hotmail - 283 million e-mail users / accounts • Yahoo - 274 million • Google - 113 million • BBC - 24 February 2009 Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
E-mail • The European Commission –staff and functional mailboxes • Your department? • Big business • Small business • Universities and clubs and … Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
E-mail • Internet domain names? • 177 million Top Level Domain (TLD) Names in 2008 • dot.COM, dot.NET, dot.ORG • dot.DE, dot.UK, dot.EU • dot.CN, dot.US, …, dot.AL • E-mail?? • Bilateral contracts??? Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Risks • Crime and cybercrime • Social engineering • Phishing • Spam • Malware –direct and indirect Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Prevention • Different actors • Different roles • Different possibilities • Different responsibilities Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Prevention • Filters • “Signatures” • False positives and false negatives • Lists • White lists • Black lists Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Prevention • Education • Education • Education Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Alternatives • Instant messaging • Blogs • Social networks • Twitter • VoIP (Skype, Gtalk,…) • … Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Legislation and Regulation • General provisions • Criminal, civil, consumer law • E-commerce, e-signatures, … • Specific provisions • Cybercrime • Anti “spam” • Data retention Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
ENISA • A Centre of Expertise for the EU Member States and EU Institutions in Network and Information Security • Giving expert advice and recommendations • Is a switchboard of information for best practices • Facilitates contacts between the EU-institutions, the Members States and the private business & industry actors • http://www.enisa.europa.eu/ Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Conclusions • The Internet is a shared, cooperative environment • Different people have different roles, different responsibilities • Governments can also assign particular responsibilities. They need though to understand: • The actors and their possible choices • As well as the technology and its context Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security
Thank you! Questions? Cindy.van-den-Boogert@ec.europa.eu Cindy van den Boogert, Tirana, 17 March 2009 E-Mail and Internet security