Crime laws lack coherence

Businesses are frustrated by legal inconsistencies in tackling computer crime

Written by Madeline Bennett

Firms have expressed concern that inconsistent computer-crime laws and widely varying penalties for computer criminals are undermining deterrence, increasing the risks to corporate systems. Companies were responding to news that while the Melissa virus author has been sentenced to 20 months in prison in the US; in Holland the author of the Kournikova virus is appealing against a term of just 150 hours of community service.

Security experts reiterated the need for courts to treat Internet crimes more seriously, and for businesses to report financial losses caused by such incidents.

Jan de Wit was sentenced to 150 hours' community service by a Dutch court last year for creating and distributing the Kournikova email worm. At the time of sentencing, virus and legal experts expressed concern that the penalty was too low and would fail to deter other potential virus writers. However, de Wit's lawyer recently announced that his client would appeal against even this lenient sentence.

De Wit's lawyer said the sentence should be overturned because his client did not mean to inflict any damage, and it had not been proved that any great damage was caused. During the trial, 55 victims estimated they had suffered losses totalling $166,827. But this figure would have been much higher if all the victims had reported their losses, according to experts. Graham Cluley of antivirus firm Sophos said Kournikova was a widespread and hard-hitting virus, and the 150 hours' community service penalty was a feeble response.

To ensure that virus authors receive sentences that reflect the gravity of their offences, Cluley said businesses should play their part. "Viruses can cause great damage, yet businesses are ashamed to report infections. They must take a two-pronged stance: improve protection on their systems and be prepared to take action against the authors of malicious code," he argued.

Although proving higher financial losses may encourage harsher penalties, estimating the cost of viruses is not an easy task. Denis Zenkin of antivirus solutions provider Kaspersky Labs said, "Is it possible to estimate how much it costs if a virus deletes files that are the result of years of hard work? Or if a virus lets confidential data leak from a corporate network that leads to the failure of a multimillion-pound deal?"

As a result of the difficulties in measuring financial losses, Zenkin said courts and law enforcement agencies should look for other ways of estimating damage to prove the culpability of virus authors, apart from relying on individual company estimates.

Earlier this month, a US court sentenced David L Smith, author of the Melissa virus, to 20 months in jail. Smith admitted to causing more than $80m of damage worldwide.

Have your say: contact IT Week

Tags:

reader comments

related articles

IT crime still going unreported

UK firms lack confidence in the authorities' ability to prosecute. 23 May 2002

 

Hackers face tougher penalties

The government is keen to beef up legislation to punish online criminals more severely 20 May 2002

IT criminals get off lightly

Computer crime is costing firms billions every year and yet perpetrators continue to make a mockery of the legal system 03 May 2002

UK still not reporting cyber crime

Police told of just one in 100 attacks 26 Apr 2002

E-villainy needs e-legislation

Computer Misuse Act must be rewritten, say lobbyists. 11 Mar 2002

Spam King Soloway sent down for 47 months

Prolific spammer 'embarrassed and ashamed' 24 Jul 2008

Gumshoes come unstuck over Trojan spying

Israeli private investigators jailed 29 Apr 2008

Teenager admits to million-PC botnet scam

18 year-old unlikely to get jail senence 01 Apr 2008

related whitepapers

today's top stories

CIOs must embrace collaboration tools

Author Don Tapscott gives Angelica Mari his reasons for promoting social networking tools and says transparency is the key to security 04 Dec 2008

On a quest to build a connected society

BT Design’s JP Rangaswami talks to Gareth Morgan about his pivotal role in the telecoms giant’s efforts to deliver universal broadband and his plans to tap into the creativity of the open source community 04 Dec 2008

IT leaders must stand by India

A sense of perspective is the most important response from IT leaders to the attacks in Mumbai 04 Dec 2008

Case study: Clifford Chance

Law firm implements Sun platform and reduces datacentres to gain efficiency and cost synergies 03 Dec 2008

Should CRM be more sociable?

As vendors rush to add more social networking bells and whistles to their CRM products, some experts warn that users must tread carefully when venturing into online communities 03 Dec 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

Doctors looking at a computerAnalysis

Watchdog wants IT to cure privacy woes

Information Commissioner Richard Thomas is urging organisations to put privacy protection at the top of their procurement and development criteria 04 Dec 2008

Colin McDonaldComment

Web 2.0 has potential to transform staff training

Employees can sharpen their IT skills through using the latest interactive training tools, writes Colin McDonald 04 Dec 2008

Advertisement

Primary Navigation