k 2023

Stuxnet vs WannaCry and Albania: The Cyber-Attribution on Trial

VOSTOUPAL, Jakub

Základní údaje

Originální název

Stuxnet vs WannaCry and Albania: The Cyber-Attribution on Trial

Vydání

Cyberspace 2023, 2023

Další údaje

Jazyk

angličtina

Typ výsledku

Prezentace na konferencích

Obor

50500 5.5 Law

Stát vydavatele

Česká republika

Utajení

není předmětem státního či obchodního tajemství

Organizační jednotka

Právnická fakulta

Klíčová slova česky

Kybernetická obrana, Kybernetická bezpečnost, Přičitatelnost, Mezinárodní obyčeje

Klíčová slova anglicky

Cybersecurity, Cyberdefence, Attribution, International Customary Law

Příznaky

Mezinárodní význam, Recenzováno
Změněno: 1. 12. 2023 13:50, Mgr. Jakub Vostoupal, Ph.D.

Anotace

V originále

In the intricate world of cyberspace, cyber-attribution, specifically the procedure of linking cyberattacks, the activities of non-state actors (e.g., hacker groups) and states’ orders and control remains one of the foremost challenges for modern international law. The procedure itself is a complex combination of technical, forensic and intelligence analyses with legal, strategical, geopolitical, and diplomatic requirements and aspects, fundamentally complicated due to the anonymous and often highly sophisticated nature of state-sponsored cyber-attacks. However, despite these challenges, we have witnessed an increase in the public attributions of cyber-attacks (let it be the attribution of WhisperGate and other Russian malicious cyber activities against Ukraine, WannaCry or the highly destructive cyber-attack against the Albanian Government). But what about Stuxnet? Strikingly, despite its far-reaching implications, the most famous cyber-operation remains officially unattributed. Therefore, in my talk, I shall delve deeper into the procedure of the cyber-attribution of the selected cyber-attacks and analyse and compare the relevant (and publicly available) details to try and identify the emerging state practice in the context of state responsibility and attribution standards. I shall also address the key considerations such as the technical evidence, geopolitical dynamics, intelligence-sharing mechanisms and international cooperation using the Egloff-Smeets Framework for public cyber-attributions.

Návaznosti

MUNI/A/1293/2022, interní kód MU
Název: Právo a technologie XI
Investor: Masarykova univerzita, Právo a technologie XI