Thu 4 Dec 2008
Panel: Chandrasekar , Chairman IGF India
Secretary: Markus
Panelist : Bertrand De La Chapelle
Michael Lewis , Qatar Tel. Cybersecurity Research
Marc Goodman , Director , International Cooperation
Patrik FaltStorm
Jayantha Fernando, ICT Head , Srilanka
Gulshan Rai - Head of CERT, India
Alexander Ntoko, Head Corporate Strategy , ITU
Internet is a two edged sword where one one hand there is a world of good that has been derived out of it but at the same time there is a silent dark force that creeps into our lives with renewed threats to our homes, businesses and the world of good. Its good time that we discuss about the forces of the dark thereby creating an awareness. The advent of Internet has made the world a global village. Organizations tend to increasingly move from a paper based environment to paperless environment. That necessitates organizations to go online. Cybercrime has a great challenge of the world having become a global village in a manner that a person sitting in one part of the globe is able to commit crime in a different part of the globe and there seems to be not proper framework, legislation, rules or procedures to bring such perpetrators to accountability. In a typical cybercrime we dont have a crime scene, criminal, weapon and the victim at the same geogrphic area . There needs to be a multi jurisdictional approach across governments, international organizations and businesses to curb such activities in this pervasive online world.
As devices seems to grow complex and compact so it the list of devices and tactics that are developed by the perpetrators. Nearly $ 2Bn is transacted daily online and this is at risk due to the dark forces. So financial incentives of cybercrime is increasingly lucrative business. There are great questions on whenever we are involved in a security breach what should be our response both formal and facilitated approach. There needs to be a clear defined mechanism that should clearly outline the systems of response that need to be invoke and the points of contact that need to be established between the organizational response centers and external security teams so on. There ought to be a strategy and you need to know who your friends are and with regular exercises fine tune the system to ward of probable incidents.
Traditional crime that has moved online is Cybercrime. Then there are newer crimes that are a result of the technology like phishing, DDOS , Botnet , crimes in virtual world. Then there are threats to existing networks and systems either by a disgruntled employee or someone who has better knowledge of the systems. Then there is online propaganda for terrorist activities or posting of videos that are capturing those moments. An organization follows this approach typically
Cyber threat >> Action >> Feedback >> Reaction >> Prevention
Yourself, Computer Incident Response team, Computer Emergency Response team are a few of the involved stakeholders in this system . Each of these take holders are proficient in only a set of activity. There needs to be interaction between each of the stakeholders and there needs to be a contiunuous dialogue between them. Whenever there is an attack to the system there needs to be a level of increasing transparency from the victim organization to divulge critical information to each of the stakeholders and different stages to effect a better tracking and prevention mechanism in place. Organizations need to have a balancing act beween the rights of users and the transparency of information to the stake holders external to the system.
Gulshan Rai the Head of CERT in India gave a clear outline of the online behavior of indian users in impacting the economic potential of India. His talk was towards increasing threats that the online world has faced . SPAM is increasingly becoming a common phenomenon in India. Increased cases of Phishing of the banking sites has come to the lime light. India was the 12th country to implement the IT Act at 2000. But there is a lot of evolution in terms of technology that has happened eversince and those things have been addressed in the update on the act as per the Draft 2006 that is yet to be approved. Data Security Council of India is a government initiative to educate the public servant and governmental offices in areas of incident management and areas of cyber security.
Alexander Ntoko insisted on the basic premise / understanding for a need of a uniform global response through an initiative called Global Cyber security agenda that clearly represent the common interests of all the stakeholders. Accordingly they were focussed on 5 major areas Legal Measures, Technical and procedural measures, Organizational structures, Capacity building and finally International cooperation.
Tags: cybersecurity, cybercrime, igf2008, hyderabad, internet, governance, technology, ddos, phishing, cert, csirt, spam, attack, botnet, protection, global, cyber, securit, agenda, ITU


When it comes to storage of personal medical records and data online and access anywhere, google stands at a better place for providing such services online. Marissa Mayer, Head of Search at Google was speaking on a recent Web 2.0 Summit at San Francisco outlining the huge plans of Google. She also reportedly said that Google’s healthcare initiative backed by her has currently developed a prototype that allows for storage of health records and related data online. The features and the application are currently put to test within a closed user group of beta testers . The Search giant also provide features like " Find a nearby doctor" facility for identifying professionals and expert resources locally. Online diet regimen features are also made available.This would also serve as a excellent platform for revenue to the giant. The objective of the entire exercise is to make the healthcare data portable and easier to access from anywhere anytime. Google is not the only company that has been working on this platform. Competitors yahoo and MSN have been busy acquiring 