Background
The last three decades have seen an increased proliferation in the number of Internet
and smart phones users and uses in business, commerce, government services,
education, knowledge, entertainment, tourism, health care and other economic, social
and cultural activities. Alongside the opportunities brought about by the continuous
growth in the telecommunications and Internet usage and the proliferation of etransactions and e-services, it is important to face the threats and challenges that
target the ICT infrastructure and e-transactions in general, and undermine confidence
and trust in e-services and e-business, in particular.
The Most Significant Cyber Challenges and Threats are:
Threat of Cyber Terrorism and Cyberwarfare
4
Threat of Penetrating and Sabotaging ICT Infrastructure
Recently, dangerous types of cyberattacks and cybercrimes have spread, using
advanced technologies, such as cloud computing, wiretapping and network intrusion
devices, advanced encryption, and automated hacking tools targeting computer
systems and databases. In addition, advanced malicious software (malware) may
be deployed to undermine networks security systems and compromise computer
systems to form botnets, that can be used later on in a variety of criminal and illegal
activities. An automated botnet may consist of tens, hundreds of thousands or
millions of compromised computers that can be used to launch serious cyberattacks,
such as Distributed Denial-of-Service (DDoS) attacks, on targeted networks and
websites for destructive, terrorism, and/or extortion purposes.
New types of extremely serious cyberattacks have recently emerged, aimed at
disrupting critical services, and deploying malware and viruses to destroy or disrupt
the ICT infrastructure and critical industrial control systems, especially in key facilities,
including entities of nuclear power, oil, natural gas, electricity, aviation, various
forms of transportation, key national databases, government services, health care,
and emergency aid services. Such cyberattacks deploy several channels including
wireless networks and mobile memory, and other common channels such as
e-mails, websites, social media and telecommunications networks, which may have
a significant impact on the utilization of the critical infrastructure and the associated
services and businesses. In practice, critical facilities may be vulnerable to advanced
cyberattacks, even if they are not directly connected to the Internet.
The development of complex and sophisticated computer viruses often requires
advanced knowledge levels and unconventional expertise, available only in
technologically advanced countries, to be used for strategic, tactical, and warfare
purposes, to be used in addition to, or sometimes instead of, conventional military
attacks, in what is known as cyberwarfare. However, such malicious technologies are
being transferred, copied or reproduced by terrorist organizations and international
crime gangs, to be used in terrorist operations and organized crimes, as well as in
threatening and disrupting the ICT infrastructures for extortion and/or industrial
espionage purposes. Leading cybersecurity experts expect an increased proliferation
of ferocious and sophisticated cyberattacks in the coming period.
5