Information Security and Privacy

Online Identity Theft

25-Mar-2009

The growth of Internet and e-commerce has taken identity theft to new levels. This new book defines ID theft, studies how it is perpetrated, outlines what is being done to combat it, and recommends specific ways to address it in a global manner.

Computer Viruses and Other Malicious Software: A Threat to the Internet Economy

03-Mar-2009

Malware attacks are increasing in both frequency and sophistication, thus posing a serious threat to the Internet economy and national security. This book is a first step toward addressing the threat of malware in a comprehensive, global manner. It aims to inform policy makers, to present new research into the economic incentives driving cyber-security decisions, and to make specific suggestions on how the international community can better work together to address the problem.

Development of Policies for the Protection of Critical Information Infrastructures

18-Jun-2008

This report examines how risks to the critical information infrastructure are assessed and managed in general terms, the emerging and existing models for public-private information sharing, and the national responses to the growing need for cross-border collaboration. It includes a comparative analysis of the development of policies for the protection of Critical Information Infrastructures (CII) in Australia, Canada, Korea, Japan, The Netherlands, the United Kingdom and the United States.

Economics of malware: Security decisions, incentives and externalities

29-May-2008

While originating in criminal behaviour, the magnitude and impact of the malware phenomenon is also influenced by the decisions and behaviour of legitimate market players. This working paper is based on qualitative empirical research into the incentives of market players when dealing with malware.

Measuring Security and Trust in the Online Environment: A View Using Official Data

13-Feb-2008

This paper reviews available official statistics on trust and security in the online environment. It discusses whether security concerns are an obstacle to Internet use and examines how people and companies protect their equipment and networks.

Radio-Frequency Identification (RFID): a Focus on Information Security and Privacy

24-Jan-2008

The increasing deployment of RFID brings significant economic promise. But is RFID sufficiently secure and privacy-friendly? This report clarifies the capabilities and limitations of RFID, identifies the information security and privacy challenges it can raise, and suggests measures and safeguards that can be implemented to address them.

OECD Council adopts recommendation on electronic authentication

06-Jul-2007

The OECD Council has adopted a Recommendation calling on Member countries to establish compatible, technology-neutral approaches for effective domestic and cross-border e-authentication of persons and entities. The key role of e-authentication in fostering trust online and the continued development of the digital economy is reaffirmed. Guidance on e-Authentication has also been developed to assist Member countries and non-Member economies in establishing or amending their approaches with a view to facilitating cross-border authentication.

OECD governments agree on a framework for privacy law enforcement co-operation

13-Jun-2007

Embodied in a new OECD Recommendation, the framework reflects a commitment by governments to improve their domestic frameworks for privacy law enforcement to better enable their authorities to co-operate with foreign authorities, as well as to provide mutual assistance to one another in the enforcement of privacy laws.

The Development of Policies for the Protection of Critical Information Infrastructures (CII)

29-Mar-2007

The 2006 OECD study offers an analysis of the CII security policies in four countries - Canada, Korea, the United Kingdom, and the United States - with a focus on the drivers for and challenges to their development. It examines each country’s definition of the CII, risk management strategies, frameworks and policies, challenges to information sharing, and cross-border cooperation for addressing the risk to the CII. The report also identifies commonalities and differences in policies for protecting the CII across the countries. The study is expanded in 2007 to 3 additional countries.

Evolution in the Management of Country Code Top-Level Domain Names (ccTLDs)

23-Nov-2006

This document quantifies ccTLD registrations and demand; trends in administering ccTLDs; current and ongoing policy and technical issues such as internationalised domain names (IDNs), Whois, or security, and ccTLD managers’ institutional relationships.

Strengthening consumer protection

Ask your question on e-commerce!