论文标题
防止或减轻对抗供应链攻击;法律分析
Preventing or Mitigating Adversarial Supply Chain Attacks; a legal analysis
论文作者
论文摘要
目前,全世界都通过整个互联网都有密切的联系,但也提供从食物到基础设施和技术的所有东西的供应链。在数字和物理意义上,供应链本身容易受到对抗性攻击的攻击,这可能会破坏或在最坏的情况下破坏它们。在本文中,我们介绍了这两个成功攻击的例子,并考虑其后果可能会发生什么,并分析欧盟和国家法律如何防止这些攻击或以其他方式惩罚那些不会以任何可能的费用来减轻他们的公司。我们发现,当前类型的国家法规不是足够具体的技术,并且不能强迫或以其他方式要求在防止供应链攻击中发挥最大作用的正确政党,以尽一切力量减轻他们的力量。但是,现行的欧盟法律正在走正确的道路,并且可能需要进一步的警惕来考虑这些大型威胁,因为在网络安全方面,国家法律往往会在适当调节公司的情况下失败。
The world is currently strongly connected through both the internet at large, but also the very supply chains which provide everything from food to infrastructure and technology. The supply chains are themselves vulnerable to adversarial attacks, both in a digital and physical sense, which can disrupt or at worst destroy them. In this paper, we take a look at two examples of such successful attacks and consider what their consequences may be going forward, and analyse how EU and national law can prevent these attacks or otherwise punish companies which do not try to mitigate them at all possible costs. We find that the current types of national regulation are not technology specific enough, and cannot force or otherwise mandate the correct parties who could play the biggest role in preventing supply chain attacks to do everything in their power to mitigate them. But, current EU law is on the right path, and further vigilance may be what is necessary to consider these large threats, as national law tends to fail at properly regulating companies when it comes to cybersecurity.