APEC-OECD Malware Workshop - Agenda with presentations

The APEC-OECD Malware Workshop brought together experts from government, industry, computer emergency response teams (CERTs), consumers, and civil society to discuss the economic and social impacts of malware and explore ways to strengthen international cooperation in various areas to address this important issue. To view presentations from the wokshop, click on the below links.

Session 1 - Trends & Overview:  Why is Malware an Important Issue?

Moderator: Keith Besgrove

Issues and problems, rate of evolution

National Computer Network Emergency Response Technical Team Coordination Center (CNCERT/CC) – China - Dr. Yuejin Du

Impact on Business

Association for Payment Clearing Services (APACS) – United Kingdom (UK) - Colin Whittaker

Impact on Government

Department of Communications Information Technology and the Arts (DCITA) – Australia
Sabeena Oberoi

Impact on Government

Ministry of Internal Affairs and Communications - Japan - Mr. MURAKAMI Satoshi
Ministry of the Economy Trade and Industry - Japan - Mr. MURANO Masayasu

Imact on consumers

Consumers Report WebWatch - Beau Brendler

Session 2: Malware in Focus

Moderator: Shamsul Jafni Shafier

Malcode

Computer Emergency Response Team / Coordination Center (CERT/CC) - Kevin Houle

Botnets

Computer Emergency Response Team for the Dutch Government (GovCERT.NL) – The Netherlands - Douwe Leguit

Who is behind malware, their capabilities and activities?

Postal and Communications Police Service - Italy - Sergio Staro

What are the challenges (all types) to combating malware?

Microsoft UK - David Pollington

Session 3: Identifying Counter Measures and Capabilities for Response to Cyber Attacks

Moderator: Keith Besgrove

Current counter-measures and responses by CERTs

Korea Internet Security Center KrCERT /CC - Jeong, Hyun-Cheol - GovCERT.nl - Douwe Leguit – panellist only

Current counter-measures and responses by anti-virus vendors

F-Secure – Finland - Patrik Runald

Current counter-measures and responses by regulators in partnershiop with Internet Service Providers (ISPs) and domain name registars

Philippine Internet Services Organization (PISO) - Horatio Cadiz

Current counter-measures and responses by law enforcement bodies, including through public private partnerships

Department of Justice (DOJ) – United States of America (USA) - Anthony Teelucksingh

Current counter-measures and responses by domain name registars

Internet Corporation for Assigned Names and Numbers (ICANN) - Paul Twomey

Case Study moderator: Graham Ingram - Australian Computer Emergency Response Team (AusCERT) – Australia

Session 4: Panel Discussion: Gaps and Challenges

Moderator: Shamsul Jafni Shafie

Panellists:

Department of Homeland Security (DHS) US Computer Emergency Readiness Team (US-CERT), USA - Josh Goldfarb
DCITA, Australia - Sabeena Oberoi
CNCERT, China - Dr. Yuejin Du
Information & Communication Security Technology Center, Chinese Taipei - Pei-wen Liu
International Telecommunications Users Group (INTUG) - Rosemary Sinclair
Outblaze Limited, Hong Kong - Suresh Ramasubramaniam
Communications Technology Labs, INTEL - Ravi Sahita

Comments and wrap up of session and day 1

Andy Purdy

Session 5: Break Out Group Discussion

Breakout group moderators:

Break Out 1: How can vendor, CERT, ISPs, domain name registrars response be improved?

APACS – UK - Colin Whitaker

Introduction provided by the Organization of Economic Cooperation and Development (OECD) - Peter Lübkert

Break Out 2: How can government policy, law enforcement and regulatory response be improved?

Department of Justice (DOJ) – United States of America (USA) - Anthony Teelucksingh

Break Out 3: How can awareness, education, and training of individuals business – in particular SMEs – and users be improved?

INTUG - Ernie Newman

Session 6: Wrap Up and General Discussion

Moderators: Shamsul Jafni Shafie and Keith Besgrove

Report by Break Out Groups moderators – suggestions for improvement - and comments from the wider workshop participants

APACS – Colin Whittaker

DOJ – USA - Anthony Teelucksingh

INTUG - Ernie Newman

Delft University - Michel van Eeten

General discussion with the audience on how to improve government policy and international frameworks for cyber response/security and final wrap-up

Andy Purdy

Conclusions of the Workshop

Shamsul Jafni Shafie and Keith Besgrove

 

Top of page

Privacy Online

To assist governments, businesses and individuals in promoting privacy protection online at both national and international levels.

Privacy Online: OECD Guidance on Policy and Practice

Security Guidelines

Now available for download in several languages.

OECD Guidelines for the Security of Information Systems and Networks: Towards a Culture of Security (2002)

Privacy Guidelines

Includes the "Declaration on Transborder Data Flows" and the "Ministerial Declaration on the Protection of Privacy of Global Networks".

OECD Guidelines on the Protection of Privacy and Transborder Flows of Personal Data