Exploit Derivatives & National Security
نویسنده
چکیده
Critical infrastructures remain vulnerable to cyber attack despite a raft of post-9/l] legislation focused on cyber security in critical infrastructures. An emerging discipline known as the "economics of information security" may provide a partial solution in the form of a hypothetical market that trades "exploit derivatives, " a modified futures contract tied to cyber security events. This paper argues that such a market could serve to predict and prevent cyber attacks through the operation of the efficient capital market hypothesis, but only after changes to the present regulatory environment. Specifically, I argue that a statutory safe harbor would allow the creation of a pilot market focused on vulnerabilities in Internet protocol version six, an emerging communications standard that China hopes to deploy throughout its national network before the 2008 Olympics. Indeed, such a safe harbor would align the interests of military and civilian policymakers on the common goal of protecting critical infrastructure from a computer network attack originating in China, whether instigating by the People's Liberation Army or so-called "black-hat" hackers. * J.D., University of Colorado, 2007; LL.M. candidate, Peking University, 2009. The author served as Editor-in-Chief of the Journal on Telecommunications & High Technology Law and as communications director of the Silicon Flatirons Program. This article benefited from the comments of Gabriel Rosenberg and Chris Riley, as well as the help of Professors Paul Ohm, Scott Peppet, Doug Sicker, and Philip J. Weiser, but above all else from the advice and support of Katie Roenbaugh Schwalb. 1 SCHWALB: EXPLOIT DERIVATIVES & NATIONAL SECURITY Published by Yale Law School Legal Scholarship Repository, 2007 EXPLOIT DERIVATIVES & NATIONAL SECURITY
منابع مشابه
Structuring a Vulnerability Description for Comprehensive Single System Security Analysis
The National Vulnerability Database (NVD) provides unstructured descriptions of computer security vulnerabilities. These descriptions do not directly provide the information necessary to formally analyze how the user’s and the attacker’s actions lead to the exploit. Moreover, the descriptions vary in how they describe the vulnerabilities. In this paper, we describe a system for automatically ex...
متن کاملQuantitative Security Risk Evaluation using CVSS Metrics by Estimation of Frequency and Maturity of Exploit
The evaluation of network risk is a vital task. It is an essential step in securing any network. This evaluation can help security professionals in making optimal decisions about how to design security countermeasures in order to improve security. This paper proposes a risk estimation model that uses vulnerability database National Institute of Standards and Technology (NIST) National Vulnerabi...
متن کاملNational Security and Economic Growth
D uring the past few decades, national security plays a central role in the process of economic development. Also, foreign investment and trade have rapidly increased worldwide and have enhanced economic growth in developing countries. Although foreign investment and trade bring huge economic benefits, many developing countries fear that by opening up markets to competition and forei...
متن کاملNational Resilience As A Determinant Of National Security Of Ukraine
The purpose of this study is theoretical and methodological substantiation, deepening of conceptual provisions and development of scientific and practical recommendations for the formation of an integrated sector of national security and defense based on the principles of national resilience. The relevance of this study is due to the need to build national resilience to address the main problem...
متن کاملTrade and National Security: A Test for Best-Known Hypothesis
National security depends on soft power, the ability of a country to generate and use its economic power and to project its national values. It also depends on long-term factors that contribute to economic growth and increase the total resources base available not only for defense but to provide economic security in the form of income and business opportunities for individuals. The economic iss...
متن کامل