Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
The Failures of Internet Governance
Newest First  |  Oldest First  |  Threaded View
vikramsoori
50%
50%
vikramsoori,
User Rank: Apprentice
4/23/2015 | 8:14:04 AM
Re: Biggest fears about Internet governance trends?
nice post thank you
RetiredUser
50%
50%
RetiredUser,
User Rank: Ninja
5/22/2014 | 4:21:07 AM
Human Rights vs Nice to Haves
Infrastructure of any kind can be changed at any time once it has become solely regulated by a Government, unless you live in an overly successful democracy.  This fight right now is a proposal, however, and not a fight for our "freedom" or "right" to the Internet.  Just as Americans had to fight "to be free" when we came here to North America, we will have to fight "to have a free Internet".  Dmitri Alperovitch is right in that we can't assume we're going to have the same Internet in the near future that we've grown accostomed to.  Some countries - UN members and otherwise - are using Edward Snowden as an indicator it is time to take control of the Internet, even create their own Internet that silos off other countries, particularly the United States, and they have every right to do that, just as we do.  Because, unfortunately, the Internet being freely available isn't directly a human rights issue.  Freedom of speech and accessibility to forums that allow us to be heard globally are human rights issues, I believe, but how we get that done is another story.  So, we need to be realistic here.  If we truly want open, inclusive and participatory Internet governance, we need to strengthen our bargaining powers and negotiation skills, and be ready to fight.
StephenJ4
100%
0%
StephenJ4,
User Rank: Apprentice
5/15/2014 | 11:52:25 PM
Quis custodiet ipsos custodes?
The Internet inherited the theoretical "trust" of the forerunner Arpanet. Originally connections were for US military use in case of nuclear war then Universities and other Institutions involved in military research were added. In part because access to the network was through authorized computer centers and also "the Academic environment is Honest"; every node became a trusted node. (Considering the amount of faked research (c.f. Dr Teller) and Academic backstabbing, the honesty/trust thing was over rated. Still present in the IETF RFC system.). Internet grew up with IP which grew up with Unix (NCP original Unix/Internet protocol ~1971), and Unix (SunOS/BSD) influence is seen in BGP. We would probably not have such a security mess if the Morris Worm was taken for the alarm it was meant to be. I appreciate the built-in security in IPv6, however it remains that IPv6 is a primary attack tool commonly used by malware. Changes in Internet governance including core protocols like BGP might help. But thinking of the Republican bill in US Congress to requiring US control of the Internet bring up the age old "Who'll watch the watchers" saying.  Currently any State with control of a TLD can knock out the Internet.

Politics of course triumphs security.
Kwattman
50%
50%
Kwattman,
User Rank: Black Belt
5/1/2014 | 11:29:42 AM
Re: Biggest fears about Internet governance trends?
Great points raised and I agree - the views are divergent, but underneath both seems to be an agreement that these are dangerous waters. Open communication solves more than restricted controls but then governments usually want to control the information and propaganda their people see. 
Marilyn Cohodas
100%
0%
Marilyn Cohodas,
User Rank: Strategist
4/28/2014 | 2:08:05 PM
Biggest fears about Internet governance trends?
Sara, thanks for raising these issues about control v freedom of the Internet and how (and who) will be making important decisions that impact all of us about privacy and security. Your interviewees offered some divergent views. Do others others in the Dark Reading community agree or disagree?

 

 

 

 


COVID-19: Latest Security News & Commentary
Dark Reading Staff 7/14/2020
Omdia Research Launches Page on Dark Reading
Tim Wilson, Editor in Chief, Dark Reading 7/9/2020
Why Cybersecurity's Silence Matters to Black Lives
Tiffany Ricks, CEO, HacWare,  7/8/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Special Report: Computing's New Normal, a Dark Reading Perspective
This special report examines how IT security organizations have adapted to the "new normal" of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
Flash Poll
The Threat from the Internetand What Your Organization Can Do About It
The Threat from the Internetand What Your Organization Can Do About It
This report describes some of the latest attacks and threats emanating from the Internet, as well as advice and tips on how your organization can mitigate those threats before they affect your business. Download it today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-13934
PUBLISHED: 2020-07-14
An h2c direct connection to Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M5 to 9.0.36 and 8.5.1 to 8.5.56 did not release the HTTP/1.1 processor after the upgrade to HTTP/2. If a sufficient number of such requests were made, an OutOfMemoryException could occur leading to a denial of service.
CVE-2020-13935
PUBLISHED: 2020-07-14
The payload length in a WebSocket frame was not correctly validated in Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M1 to 9.0.36, 8.5.0 to 8.5.56 and 7.0.27 to 7.0.104. Invalid payload lengths could trigger an infinite loop. Multiple requests with invalid payload lengths could lead to a denial of ser...
CVE-2020-15721
PUBLISHED: 2020-07-14
RosarioSIS through 6.8-beta allows modules/Custom/NotifyParents.php XSS because of the href attributes for AddStudents.php and User.php.
CVE-2020-7592
PUBLISHED: 2020-07-14
A vulnerability has been identified in SIMATIC HMI Basic Panels 1st Generation (incl. SIPLUS variants) (All versions), SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions), SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions), SIMATIC HMI KTP700F Mobile Arctic ...
CVE-2020-7593
PUBLISHED: 2020-07-14
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (V1.81.01 - V1.81.03), LOGO! 8 BM (incl. SIPLUS variants) (V1.82.01), LOGO! 8 BM (incl. SIPLUS variants) (V1.82.02). A buffer overflow vulnerability exists in the Web Server functionality of the device. A remote unauthenticate...