Too many cyber attacks hushed up, US panel says

Jul 19, 2012
A server is displayed. US cybersecurity efforts are hampered by attacks that go unreported by victims unwilling to divulge confidential information, a research panel said Thursday.

US cybersecurity efforts are hampered by attacks that go unreported by victims unwilling to divulge confidential information, a research panel said Thursday.

The report by the Bipartisan Policy Center said the number of cyberattacks appears to be on the rise, along with .

It said that from October 2011 through February 2012, over 50,000 cyber attacks on private and were reported to the , including 86 attacks on " networks."

But it noted that these "represent only a small fraction of cyber attacks carried out in the United States."

The think tank's cybersecurity task force headed by former chief Michael Hayden and businessman Mortimer Zuckerman said more sharing of information would help bolster cybersecurity.

"Despite general agreement that we need to do it, cyber information sharing is not meeting our needs today," the report said.

It said many private firms keep the news of the attacks secret "because of fears, some justified, including harm to their reputations and potential loss of customers."

Some worry that the information could become part of the public record in a government database, and some "are concerned that they may be held liable for the threat information they share if it turns out to be inaccurate."

The report noted that current law does protect the confidentiality of certain data, but that this effort could be expanded. It said some industry groups which aggregate information on attacks have been threatened with lawsuits if they implicate certain entities in attacks.

It said some of these concerns can be addressed in cybersecurity legislation, which has been stalled in Congress.

"Some companies take the position that under current law, sharing communications with the government cannot be done without a subpoena," the report said.

"With the right privacy and civil liberties protections in place, there is no valid reason for cyber threat information not to be shared with the federal government and a subpoena requirement can often thwart information sharing to identify and stop underway.

"The law should be changed to explicitly permit such sharing, without a subpoena, under conditions that protect privacy and ."

Explore further: US NSA chief backs cybersecurity law

add to favorites email to friend print save as pdf

Related Stories

US NSA chief backs cybersecurity law

Jul 10, 2012

The head of the powerful National Security Agency, General Keith Alexander, said the US must adopt a law to protect the country from cyberattacks while insisting that it would respect privacy.

US bill seeks to improve cyber information-sharing

Nov 30, 2011

A bill intended to increase sharing of information about cybersecurity threats between government and the private sector was introduced in the US House of Representatives on Wednesday.

US senators call for cybersecurity czar

Apr 01, 2009

Two US senators introduced legislation on Wednesday aimed at creating a powerful national cybersecurity advisor who would report directly to the president.

US cybersecurity efforts trigger privacy concerns

Jan 27, 2012

(AP) -- The federal government's plan to expand computer security protections into critical parts of private industry is raising concerns that the move will threaten Americans' civil liberties.

House OKs cybersecurity bill despite veto threat

Apr 27, 2012

The House ignored Obama administration objections Thursday and approved legislation aimed at helping stop electronic attacks on critical U.S. infrastructure and private companies.

White House set to unveil cyber plan

May 12, 2011

The White House on Thursday is expected to unveil its proposal to enhance the nation's cybersecurity, laying out plans to require industry to better protect systems that run critical infrastructure like the electrical grid, ...

Recommended for you

Kim Dotcom slams Megaupload 'data massacre'

5 hours ago

Megaupload founder Kim Dotcom Thursday condemned a Dutch company's decision to delete million of files belonging to users of his defunct website, calling it "the largest data massacre in the history of the ...

States scramble to attract suddenly hot cybersecurity firms

14 hours ago

As data dragnets and information breaches dominate the news, states are scrambling to cash in on a rapidly expanding business sector by offering tax incentives to firms that protect sensitive information from outside attacks.

A year on, Assange stays put in Ecuadorean Embassy

20 hours ago

A year ago, Julian Assange skipped out on a date with Swedish justice. Rather than comply with a British order that he go to the Scandinavian country for questioning about sex crimes allegations, the WikiLeaks ...

Google asks US secret court to lift gag order (Update)

Jun 18, 2013

Google on Tuesday sharply challenged the U.S. government's gag order on its Internet surveillance program, citing what it described as a constitutional free speech right to divulge how many requests it receives ...

User comments : 0

More news stories

Multiview 3-D photography made simple

Computational photography is the use of clever light-gathering tricks and sophisticated algorithms to extract more information from the visual environment than traditional cameras can.

Microsoft mulled buying Nokia unit

Microsoft was in talks to boost its position in the mobile phone market by buying the devices business from Nokia but failed to seal a deal, the Wall Street Journal reported Wednesday.

LA to give every student an iPad; $30M order

Los Angeles' school system, the second largest in the United States, is ordering iPads for all its students, handing Apple a major success in its quest to make the tablet computer a replacement for textbooks.