Story image

Waikato Uni researcher travels to NATO's cybersecurity hub

10 May 18

University of Waikato senior lecturer Dr Joe Burton has now only published a new book about NATO this year, he also flew to Estonia to get a first-hand look at NATO’s Cooperative Cyber Defence Centre of Excellence (CCDCOE).

The CCDCOE, located in Tallinn, is funded by NATO nations and focuses on cyber technology, law, strategy, training, and education.

Burton spent several months at the CoE at the end of last year, where he posed the question: ‘how do you deter cyber attacks in an increasingly complex world?’

His research explored this topic as well as action with norms, laws, and resilience.

“I saw a little bit of my role in doing this research as challenging some of the assumptions people have about cyber security. Militaries can be very closed bubbles, so that’s why I think having a centre for research excellence is a good thing, so they have academics come in to offer different perspectives on security,” Burton says.

Burton’s report will also be distributed to staff at NATO’s Brussels headquarters.

 “It’s good for Waikato, and developing New Zealand’s links with a significant international organisation. It may also lead to further opportunities including for some of our students, and other academics to go over and work with them.”

Dr Joe Burton

He says countries may have to use offensive cyber attack strategies to respond to severe, strategic cyber attacks, but those offensive capabilities should only be used ‘under exceptional circumstances’.

He notes that cyber attacks could include targeting critical infrastructure such as power grids, nuclear facilities, or even causing loss of life.

“Our response to deterring cyber attacks is often caught up in a military mindset. You can’t just deter a cyber-attack by threatening to launch a missile at someone,” Burton says.

“You need to deter through international and domestic laws, norms and cyber resilience, which means having the ability to get computer systems and the societal services they provide back up and running in the event of an attack.”

Burton also believes people need to think about civil and criminal responses.

“You have to move away from thinking you can have a militaristic response, or retaliate against a cyber attack with another cyber attack. That just opens a Pandora’s Box, and perpetuates the cycle of disruptive and damaging activity that no-one wants to see.”

Most attacks don’t reach such a high level of severity, but even general cybercrime could end up being a $6 trillion black market by 2025.

On top of that, recent scandals include the Cambridge Analytica saga and its role in the Trump administration, as well as Brexit.

Burton says it demonstrates how cybersecurity is now militarised, while data and social media are now ‘weaponised’.

“Look at Cambridge Analytica, and Mark Zuckerberg being called to testify in the US. It was the Facebook platform that was manipulated to spread Russian propaganda, so how are you going to deter that kind of activity?”

“How are you going to deter countries from weaponising information on Facebook? You’re not going to do that by having a military approach, you're going to do that by having Zuckerberg sitting in front of Congress and putting pressure on him to regulate the activity so that the Russian state can’t buy US election advertising.”

Dr Burton’s new book, ‘NATO’s Durability in a Post Cold War World’ was published in March 2018 by SUNY Press, New York.

What MSPs can learn from Datto’s Channel Ransomware Report
While there have been less high profile attacks making the headlines, the frequency of attacks is, in fact, increasing.
Cisco expands security capabilities of SD­-WAN portfolio
Until now, SD-­WAN solutions have forced IT to choose between application experience or security.
AlgoSec delivers native security management for Azure Firewall
AlgoSec’s new solution will allow a central management capability for Azure Firewall, Microsoft's new cloud-native firewall-as-a-service.
Kiwis losing $24.7mil to scam calls every year
The losses are almost five times higher compared to the same period last year, from reported losses alone.
How to configure your firewall for maximum effectiveness
ManageEngine offers some firewall best practices that can help security admins handle the conundrum of speed vs security.
Exclusive: Why Australian enterprises are prime targets for malware attacks
"Only 14% of Australian organisations are continuously training employees to spot cyber attacks."
Exclusive: Why botnets will swarm IoT devices
“What if these nodes were able to make autonomous decisions with minimal supervision, use their collective intelligence to solve problems?”
"Is this for real?" The reality of fraud against New Zealanders
Is this for real? More often than not these days it can be hard to tell, and it’s okay to be a bit suspicious, especially when it comes to fraud.