A/67/167
• Cooperate on addressing the harmful effects of cyberattacks, sharing lessons
learned, and developing technological solutions and organizational
recommendations on deterring cyberattacks.
• Develop international legal instruments to establish standard terminology and
rules, such as a Code of Internet Conduct.
Owing to the need to counter these threats, partner intelligence services and
law enforcement agencies should work together in the following areas:
• Develop mechanisms for the prompt sharing among intelligence services of
information concerning the activities of organized criminal groups, including
terrorist groups, aimed at unauthorized interference in the information
resources of national Internet infrastructure or the information systems of
government offices or businesses.
• Exchange information on crimes relating to unauthorized access to the
computer systems of financial institutions, including for the purpose of forging
bank cards, or unauthorized interference in the functioning of bank computer
systems for the purpose of stealing confidential information or impeding
operations.
• Collaborate during operations to track persons committing cybercrimes using
national Internet infrastructure and document their unlawful activities.
• Exchange experience and current practices in the examination of software and
hardware (cyber forensics) while investigating crimes committed using
computer technology and share methods and techniques of examining
computer equipment in order to document criminal activities.
• Establish joint training programmes for the staff of intelligence services and
internships for their experts.
• Participate in joint symposiums, seminars and conferences on countering
cybercrime.
One form of cooperation could be to establish a system for monitoring the
resources of national Internet infrastructure in order to ensure the early detection of
threats and a system for identifying the best tools to use in neutralizing those threats.
One possible mechanism for coordinating the cybersecurity activities of State
bodies, telecommunications service providers and other actors in national
information and communications technology infrastructure aimed at preventing
unlawful uses of computers and information technology could be to establish
national computer incident response centres and have them work in close
collaboration with one another.
The main tasks of such national centres could include the following:
• To collect, analyse and compile in the relevant databases information on
current cybersecurity threats.
• To monitor and detect web-based mechanisms and resources whose operations
are contrary to the regulations governing the use of national Internet
infrastructure.
18
12-43414