Wednesday, August 20, 2008

Hijack the Internet

http://eng.5ninesdata.com/~tkapela/iphd-2.ppt

BGP. Scaaryy.. =)

CICT endorses latest anti-cybercrime bill in Congress

http://newsinfo.inquirer.net/breakingnews/infotech/view/20080818-155361/CICT-endorses-latest-anti-cybercrime-bill-in-Congress

MANILA, Philippines -- The government's highest IT-governing body is hopeful that increased awareness and support will push lawmakers this time to finally pass a bill against cybercrime.

In a statement, the Commission on Information and Communication Technology (CICT) said it has endorsed before Congress the "Cybercrime Prevention Act of 2008", which consolidates four cybercrime-related bills authored by different lawmakers.

This consolidated bill also resulted from a technical working group created last year and spearheaded by the CICT and Department of Justice.

In its Declaration of Policy, the bill authorizes the State, "to adopt sufficient powers to effectively prevent and combat such offenses by facilitating their detection, investigation, and prosecution at both the domestic and international levels, and by providing arrangements for fast and reliable international cooperation."

The proposed bill defines various forms of cybercrime offenses and prescribes corresponding punishments. These offenses include hacking, identity theft, phishing, spamming, website defacement, denial-of-service (DoS) attacks, malware or viruses, child pornography and cyber prostitution.

A representative from the Council of Europe also joined the technical working group in refining the bill further in order to "harmonize" it with European standards on cybersecurity.

CICT commissioner Tim Diaz de Rivera is also counting on increased support from private sector groups this time, including the Business Process Association of the Philippines (B/PAP) which represents the outsourcing industry.

"B/PAP, for example, is supporting it order to sell the country better to investors and ensure they are very wel covered when it comes to cybersecurity in the Philippines," Diaz de Rivera told INQUIRER.net.

The CICT commissioner is also counting on increased awareness on the part of congressmen about IT and the need for the country to keep up with more progressive neighboring countries like Malaysia and Singapore when it comes to related legislation.

Another proposed bill creating a national ICT department is also currently undergoing hearings at the Senate. The CICT is likewise hoping that increased support for the said bill will rub off on the anti-cybercrime bill.

Diza de Rivera admitted previous versions of these bills fail to make it into law because of more pressing proposed laws being heard in the Senate and Lower House.

Cybersecurity-related bills have been filed in Congress and Senate since four or five years ago without success.

"Definitely there is increased support this time but it's really in the hands of lawmakers. We are always on-call if they need clarification about the proposed bill," Diaz de Rivera said.

The latest anti-cybercrime bill also mandates the creation of a National Cyber Security Office, under the CICT, whose task is to formulate and implement a national cyber security plan.

Some of its functions include the preparation and implementation of appropriate measures to prevent and suppress cybercrime offenses; the monitoring of investigations of cybercrime cases; the facilitation of international cooperation on cybercrime prevention and prosecution.

National Cyber Security Office. Apply kaya ako dito =)

Next step would be Approved Standards and Frameworks for IT Implementations =)

Sunday, August 17, 2008

Nuts about Security

Hackacon

It was supposed to be held at SM Megamall but the venue got changed. Went by Megamall on the way home and saw the event there was the National Coconut Week. If there was a disagreement between the hackacon organizers and the SM management I hope the latter didn't say "We could get bigger nuts than you people". =)

The sessions I attended were actually quite good given the limited frame. I could imagine the impact and breadth of knowledge being gained by someone who hadn't dealt with the stuff before.

Overall these kind of cons are good for the local security scene.

Biggest bummer was the contest being cancelled.

Got a cool shirt =)

There was a speaker named Wilbert Ontoy. I heard he got owned 2 days after the con. Maybe he taught them too much? Or too little? =)