EU pact criminalising security research?

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

NEWS
Meet the world's newest class of persecuted artists: computer hackers. European Union nations, and perhaps even the United States, are about to make nearly any form of hacking -- even security research -- illegal by treaty. The possibility scares European computer security experts gathered this week for Def Con Europe -- so much so that one hacker called it "the witch hunt of the 21st century". Use the term "computer hacker" and you've already touched off a battle of semantics that leaves many scratching their heads. That's part of the problem with The Council of Europe's draft Cybercrime Treaty, authored by the 41-nation body in consultation with the US Department of Justice. The pact could be signed as early as December. To computer scientists, "hacking" merely means research by disassembly. The end result of hacking is understanding how something works and occasionally suggesting an improvement. Using such knowledge to break into computers to steal information is, well, stealing -- not hacking -- according to purists. Computer hackers say the distinction was lost upon the Council of Europe earlier this year when it agreed in principal to the draft of the Cybercrime Treaty. The treaty makes it illegal to write or possess hacking software. Currently, both are legal in the United States. The treaty also includes aiding and abetting rules that appear to make the publishing of software vulnerabilities or "exploits" illegal, according to US cyberlaw expert Jennifer Granick. That could make vulnerability mailing lists, such as BugTraq and NTBugTraq -- both with well over 30,000 subscribers -- illegal, she said. "They are just afraid of things they don't understand, things that they cannot control," said Stefen Buerger, a Germany-based security professional. "Yes, we might end up chasing witches." At Def Con in Amsterdam, where experts are discussing technical computer security issues, Granick's discussion of the treaty drew a swift, emotional response. "This would have a terrible, chilling effect on security research," said Scott Blake, a Boston-based security professional. Blake belongs to a research group that sent letters of protest to the Council of Europe when the draft treaty was first released in April. A revised version of the treaty, which was to have included updates based on an open public comment period, was released last month with no changes on the hacking software issue. "They basically just ignored us," Blake said. It's hard to find an appropriate comparison to determine whether mere possession of software should be illegal. In the United States, possession of drug paraphernalia, even for novelty, is illegal in most states. Ownership of some kinds of lock-picking devices is illegal, whereas possession of bomb-making recipes is not. Take me to Pt II/ Illegal software possession Take me to Hackers To have your say online click on the TalkBack button and go to the ZDNet News forum. Let the editors know what you think in the Mailroom. And read what others have said.

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

BrownieBoy

> I'm told it's somewhat annoying when people have their Macs stolen > and Apple stores treat the thief as the owner, but there you go. Ouch,...

53 minutes ago by BrownieBoy on AMD Ultrathins to challenge Intel Ultrabooks
Moley

@kevinmchapman. OK, I acknowledge that 'most' was a gratuitous throwaway comment as an afterthought and too presumptuous. As to proof, as you...

5 hours ago by Moley on A tale of two distros: Ubuntu and Linux Mint
Jack Schofield

@BrownieBoy > Works really well for thieves.... >> Nice attempt to deflect the argument by tossing in a point that's totally >> irrelevant, even...

6 hours ago by Jack Schofield on AMD Ultrathins to challenge Intel Ultrabooks
raskolnikof

fantastic that the so called piracy bills have been withdrawn. however, these anti-democracy supporters are still in the shadows so lets be alert...

7 hours ago by raskolnikof on SOPA, Protect IP support wavers in face of online protest
Tony Douglas

Please God no; teach them anything you like - thinking rationally, the uses and misuses of data, what data is and what it's not - but leave the...

9 hours ago by Tony Douglas via Facebook on Kids are the future. Teach ’em to code.
BrownieBoy

@Jack, > Works really well for thieves.... Nice attempt to deflect the argument by tossing in a point that's totally irrelevant, even it were...

24 hours ago by BrownieBoy on AMD Ultrathins to challenge Intel Ultrabooks
bootlegger

Make that 13 people now - I got refused today at Manchester airport. I thought I was up to date on this legislation - I knew of the EU ruling from...

1 day ago by bootlegger on UK airport body scans will not be opt out
tinycg

Don't forget to check out apps like GoodReader or SlideShark either, they're indispensible for people on the go in presentation situations. Best...

1 day ago by tinycg on Four top iPad apps for people on the move
TerryRK

Well it seems there is something a number of us agree on. Why is the Ubuntu Unity launcher so ugly? I thought perhaps it was something to do with...

1 day ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
Freebies202

Duplicate comments are not made intentionally. Its very good to know that now you are keeping check on this problem because sometimes a commenter...

2 days ago by Freebies202 on Microsoft fixes blog comments, speeds up blogs with open source
kevinmchapman

"the very significant number of users" and "many (most) of us" - you have no evidence for these statements. It is a fact that most users are saying...

2 days ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
Marg Menzies Harrison

Another grammar faux pas is the improper use of "you". When sitting down down in a restaurant, for example, I get cringe when the waitress...

2 days ago by Marg Menzies Harrison via Facebook on 10 flagrant grammar mistakes that make you look stupid
zdnetukuser

And NOW, folks, for Canonical's next trick... Kubuntu is late. Here's a pencil. Draw your own conclusions. cf.:...

2 days ago by zdnetukuser on Linux Minterface
Moley

@kevinmchapman. The discussion here reflects the very significant number of users who really do like the traditional menu system and who wish to...

2 days ago by Moley on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

Er, no... It is an efficient means of finding the application/file/setting you need in one place. The icons are a simply a fallback for when you...

2 days ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

Isn't the provision of a text based search an admission by the developers that the mass of icons approach does not work? I don't need to use a...

2 days ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

"Unity and GNOME 3 both abandon the old text-based cascading menus in favour of a graphical icon-driven system." Point truly missed. Both use a...

2 days ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

whs001 - Thank you, I'm glad you liked the article. I absolutely agree with you on your first point. I should perhaps have made it clearer that...

2 days ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
Dennis Nilsson

If we allow corporate interest to dictate the way our government circumvents due process against foreign entities then we should accept the same...

3 days ago by Dennis Nilsson via Facebook on ACTA stumbles in Germany
GHar123

I totally dislike pirating of works, I fear that artists will be deterred from creating works if they think that they are going to get ripped off....

3 days ago by GHar123 on ACTA stumbles in Germany