Skip to content

Details

Online event: https://us06web.zoom.us/j/89027050620?pwd=Zwwz3Le89nC48ayGXPbtd9BYnMKimp.1

This is part one of a two part series by Dr Adrian McCullagh (https://www.linkedin.com/in/adrianmccullagh/)

Responsible disclosure of IT Vulnerabilities (Criminal liability).
Modern commercial software systems are very complex and as Bruce Schneire has stated on more than one occasion: “IT security is hard”.
IT security researchers continually poke and probe IT systems to identify any vulnerabilities in a myriad of commercial systems. This creates a 2 fold risk. The researchers do not want to be classified as a criminal hacker and secondly they do not want to be classified as an aider and abettor of some third party’s hack.
Consequently, it is imperative that researchers who do identify some vulnerability know when and how to legally disclose the identified vulnerability and thus reduce the risk of being prosecuted for their actions.
This presentation will disclose how a researcher can reduce the risk of being held criminally liable for any such disclosure.

Related topics

Engineering
Law

You may also like