You'll See This Message When It Is Too Late: The Legal and Economic Aftermath of Cybersecurity Breaches

  • 14h 42s
  • Josephine Wolff
  • Blackstone Audio, Inc. dba Blackstone Publishing
  • 2018

Cybersecurity incidents make the news with startling regularity. Each breach - the theft of 145.5 million Americans' information from Equifax, for example, or the Russian government's theft of National Security Agency documents, or the Sony Pictures data dump - makes headlines, inspires panic, instigates lawsuits, and is then forgotten. The cycle of alarm and amnesia continues with the next attack, and the one after that.

In this book, cybersecurity expert Josephine Wolff argues that we shouldn't forget about these incidents, we should investigate their trajectory, from technology flaws to reparations for harm done to their impact on future security measures. We can learn valuable lessons in the aftermath of cybersecurity breaches.

Wolff describes a series of significant cybersecurity incidents between 2005 and 2015, mapping the entire life cycle of each breach in order to identify opportunities for defensive intervention. She outlines three types of motives underlying these attacks - financial gain, espionage, and public humiliation of the victims - that have remained consistent through a decade of cyberattacks, offers examples of each, and analyzes the emergence of different attack patterns.

The enormous TJX breach in 2006, for instance, set the pattern for a series of payment card fraud incidents that led to identity fraud and extortion; the Chinese army conducted cyberespionage campaigns directed at US-based companies from 2006 to 2014, sparking debate about the distinction between economic and political espionage; and the 2014 breach of the Ashley Madison website was aimed at reputations rather than bank accounts.

In this Audiobook

  • 2 Operation Get Rich or Die Tryin’: How the TJX Breach Set the Stage for a Decade of Payment Card Conflict
  • 3 “What They Aren't Telling You is Their Rules are Archaic”: The South Carolina Department of Revenue Breach, IRS Fraud, and Identity Theft
  • 4 The Most Wanted Cybercriminal in the World: GameOver ZeuS, Cryptolocker, and the Rise of Ransomware
  • 5 Certificates Gone Rogue: The DigiNotar Compromise and the Internet's Fragile Trust Infrastructure
  • 6 No Doubt to Hack You, Writed by UglyGorilla: China's PLA Unit 61398 and Economic Espionage
  • 7 “Decades in the Making”: The Office of Personnel Management Breach and Political Espionage
  • 8 Operation Stophaus: The Spamhaus Denial-of-Service Attacks
  • 9 “An Epic Nightmare”: The Sony Breach and Ex-Post Mitigation
  • 10 An Imperfect Affair: Ashley Madison and the Economics of Embarrassment
  • 11 “Email the Way It Should Be”: The Role of Application Designers and Software Developers
  • 12 Reasonable Security: The Role of Organizations in Protecting Their Data and Networks
  • 13 “Happy Talk About Good Ideas”: The Role of Policymakers in Defending Computer Systems
  • 14 Conclusion: “It Will Take All of Us”