Your Personal CXO, LLC

  • CRM
  • PMP
  • 0
  • 1
  • 2

MichaelPeters.org - Your Personal CXO, LLC

  • Your Personal CXO
  • The Policy Machine
  • Keynote
  • Company Store
  • Podcasting
  • HORSE Wiki
  • About Michael

Failure to Communicate: Pending US Congressional Orwellian Bills Threaten the Internet

0

By Michael Peters on December 27th, 2011

In the spirit of the holiday season, three wise men, actually law professors, following an analysis, are warning that the proposed intellectual property PROTECT IP (Source: PROTECT IP) and the Stop Online Piracy Act (SOPA) (Source SOPA) legislation, currently working their way through Congress, will damage the world’s DNS system, cripple attempts to get better online security and violate free speech provisions in the US constitution (Source: Stanford Law Review).

DNS, for the layperson, is the essential technology networking system that points Internet browsers at websites when given a human-readable address, such as facebook.com or michaelpeters.org. If any site is removed from the DNS system then say goodbye to site traffic to that address.

The danger here is that the overarching reach of the proposed legislation would cause people to seek alternatives to the existing DNS system, manufacture massive technical problems in the ongoing implementation of DNS security (DNSSEC) and trounce on our rights of free expression by allowing the total suppression of published opinion based on allegations without proof, or even a hearing. Essentially, anyone with an opinion would be guilty before proven innocent. Your voice is in danger of being choked out!

From my point of view, there are two major facets here to be concerned about. First, under the current language of the proposed PROTECT IP legislation, a US federal prosecutor who finds a foreign website that is “dedicated to infringing activities” can force all US internet service providers and operators of domain name services to block, delete or in some way, disable the offending web content or the whole domain from the DNS systems. The effect would be to essentially wipe out the internet road map to the site as if it didn’t exist.

The professors warn that the SOPA legislation exacerbates the situation. “Under SOPA, IP rights holders can proceed vigilante-style against allegedly offending sites, without any court hearing or any judicial intervention or oversight whatsoever.” Furthermore they write, “All of this occurs based upon a notice delivered by the rights holder, which no neutral third party has even looked at, let alone adjudicated on the merits.”

The second facet to this conundrum as I see it concerns DNSSEC. The laws would break the current technical implementation of DNSSEC. Those companies using the secure protocol could find themselves liable for legal action and would encourage the formation of new, unregulated DNS systems that would fracture the overall structure of the internet.

A technical primer in the importance of DNSSEC; DNSSEC was designed to protect the Internet from certain attacks, such as DNS cache poisoning (Source: DNSSEC). It is a set of extensions to DNS, which provide origin authentication of DNS data, data integrity, and authenticated denial of existence.

One of the underlying problems is that the people dreaming up these proposed laws are technically challenged; essentially five year-old kids with guns! Legislators are plowing forward without any real technical expertise and are going to cause tremendous technical harm; not to mention push business away from the US who will want to circumvent this impending Orwellian debacle.

Another underlying issue is one of law. You would think that US legislators would have a better grip on the fundamental defects of these proposals. The challenge is that they are almost certainly unconstitutional since it can be used to deprive first amendment free speech rights without any access to a court hearing and with little or no evidence presented of a crime within the US. The effect on overseas website owners is even more extreme in that they may not even be informed prior to their site being taken down.

As you might imagine, there are some heavy-hitters fighting back fortunately. Some of the biggest names in the internet world have rallied to fight the current round of legislation, including some unlikely bedfellows. Google, Facebook, Mozilla and other online businesses are battling against it.  Interestingly, the Business Software Alliance has opposed it too. You know that when the software industry’s anti-piracy goon squad doesn’t like intellectual property legislation, it must be seriously flawed.

Stay tuned to when the US Congress returns in January 2012 for a vote to see where this goes.

Article first published as Failure to Communicate: Pending US Congressional Orwellian Bills Threaten the Internet on Technorati.

Share this:

  • Email
  • Print
  • Digg
  • Google +1
  • LinkedIn
  • Twitter
  • Tumblr
  • Pinterest
  • Reddit
  • StumbleUpon
  • Facebook
  • CXO, Law, Your Personal CISO
  • Search

  • Your Personal CXO

  • The Security Trifecta

    Hire the experts to implement The Security Trifecta in your organization. Click for more information!

  • Louisville Metro InfoSec

    The Louisville Metro InfoSec is the premier ISSA information security conference!

  • External Services

  • Thousands of other great people can't be wrong! Enter your email address to subscribe to this blog. -

  • Affiliates

  • RSS SBN RSS

    • Memorial Day
    • SBN Sponsor Post
    • SBN Sponsor Post
    • Patching your business, Yahoo breach, Google Glass, DDoS-for-hire – 60 Sec Security [VIDEO]
    • How Very Meta
  • RSS The Register

    • Lego X-wing fighter touches down in New York's Times Square
    • Experts: Network security deteriorating, privacy a lost cause
    • Internet cafés declared 'illegal businesses' in Ohio
    • SAP shuffles execs to chase cloud success
    • AT&T adds 61¢ 'Mobility Administrative Fee' for users
  • Categories

    • Books
    • CXO
    • Featured
    • HORSE Project
    • HORSE Project V1
    • Kickback Cafe
    • Law
    • Lazarus Alliance
    • Life Learner
    • Obsolescence
    • Projects
    • Remember
    • Securing the C Level
    • Syndication
    • The Security Trifecta
    • Uncategorized
    • Your Personal CISO
  • Archives

    • March 2013
    • February 2013
    • January 2013
    • December 2012
    • November 2012
    • October 2012
    • September 2012
    • August 2012
    • July 2012
    • June 2012
    • May 2012
    • April 2012
    • March 2012
    • December 2011
    • November 2011
    • October 2011
    • September 2011
    • August 2011
    • July 2011
    • June 2011
    • May 2011
    • April 2011
    • March 2011
    • February 2011
    • January 2011
    • December 2010
    • November 2010
    • September 2010
    • August 2010
    • July 2010
    • June 2010
    • May 2010
    • April 2010
    • March 2010
    • February 2010
    • January 2010
    • December 2009
    • November 2009
    • October 2009
    • September 2009
    • August 2009
    • July 2009
    • June 2009
    • May 2009
    • April 2009
    • March 2009
    • February 2009
    • January 2009
    • December 2008
    • November 2008
    • October 2008
    • September 2008
    • August 2008
    • July 2008
    • May 2008
    • April 2008
    • January 2008
    • December 2007
    • July 2007
    • June 2007
    • May 2007
  • Get the app!

    Your Personal CXO now on Android!

  • Get the app!

    The HORSE Project now on Android!

  • Your Personal CXO
  • The Policy Machine
  • Keynote
  • Company Store
  • Podcasting
  • HORSE Wiki
  • About Michael

More on Your Personal CXO, LLC

  • EXTERNAL

    • AppHappening
    • CheckSavvy
    • Dynamic Clinical Systems
    • eLance
    • HORSE Project
    • Maprehend
    • Quest for Tech
  • Meta

    • Register
    • Log in
    • Entries RSS
  • Recent Posts

    • The Policy Machine
    • Top 1% Most Viewed LinkedIn Profile
    • Reasonable Duty of Care: Data Security and Privacy
    • Security Overlooked: Weathering the DDoS Storm
    • Please Vote for this blog!
  • Top Links

    • clouds (70)
    • No Title Given (48)
    • mba-mdp (47)
    • site (29)
    • peters-wgu-sbit-infosec (25)
    • CISSP-MDP-2013 (23)
    • An Introduction (21)
    • http://michaelpeters.org/?page_id=336 (21)
    • CMBA-MichaelPeters-2007 (17)
    • The original article is here (17)

Copyright © 2013 Your Personal CXO, LLC - MICHAELPETERS.ORG - Your Personal CXO, LLC

 
loading Cancel
Post was not sent - check your email addresses!
Email check failed, please try again
Sorry, your blog cannot share posts by email.