Multi-layered regulation of phishing attacks : a Taiwan case study

This research examines the regulation of phishing in Taiwan, particularly focusing on legal regulation but within a context of a multi-dimensional regulatory framework which also necessarily includes an examination of international regulation and the interaction between international and Taiwan regu...

Full description

Bibliographic Details
Main Author: Kuo, Chuan-Chi
Format: Thesis
Language:unknown
Published: 2014
Subjects:
Online Access:http://wrap.warwick.ac.uk/67171/
http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf
http://webcat.warwick.ac.uk/record=b2754926~S1
id ftuwarwick:oai:wrap.warwick.ac.uk:67171
record_format openpolar
spelling ftuwarwick:oai:wrap.warwick.ac.uk:67171 2023-05-15T13:57:11+02:00 Multi-layered regulation of phishing attacks : a Taiwan case study Kuo, Chuan-Chi 2014-11 application/pdf http://wrap.warwick.ac.uk/67171/ http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf http://webcat.warwick.ac.uk/record=b2754926~S1 unknown http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf Kuo, Chuan-Chi (2014) Multi-layered regulation of phishing attacks : a Taiwan case study. PhD thesis, University of Warwick. HV Social pathology. Social and public welfare KN Asia and Eurasia Africa Pacific Area and Antarctica Thesis or Dissertation NonPeerReviewed 2014 ftuwarwick 2022-03-16T20:56:35Z This research examines the regulation of phishing in Taiwan, particularly focusing on legal regulation but within a context of a multi-dimensional regulatory framework which also necessarily includes an examination of international regulation and the interaction between international and Taiwan regulatory interfaces given the transnational nature of phishing. Phishing is a malicious cyber activity which targets the acquisition of various types of confidential information by deception through the use of spoofed emails and/or websites. The increasing threat of phishing to information security has inspired a growing demand for regulation. Significant effort has been made in academic research and by industry to develop regulatory measures for phishing, which is dominated by technological work with comparatively little research on legal regulation. The current legal discussion of phishing, both international and Taiwan, very often concentrates on the criminal liability of phishers and pays little attention to the alternative role of law in the regulation of phishing. Thus this research suggests a broader approach to legal regulation that goes beyond criminal law and particularly addresses the role of information privacy law which constrains phishing by ensuring the protection of personal information. Phishing has posed crucial challenges to the traditional system in terms of both criminalization and legal enforcement. The solution that has been mostly addressed by the existing research is cooperation. As phishing is frequently a global phenomenon, this research suggests that an international approach involving coordination of legal standards and cross-border cooperation of law enforcement is necessary to tackle phishing, and also suggests that the fundamental step lies in a converged regulation of phishing consistent with its true context. Weak legal enforcement is a major deterrent to the effectiveness of legal regulation which highlights a need for a broad from of regulation that goes beyond law. In addition, a successful phishing episode involves a complex of factors including not only weakness in law but also vulnerability of technical infrastructure, administrative system and user awareness. A single solution is thus unlikely to deal with phishing. This research therefore suggests a multi-dimensional regulatory framework comprising different countermeasures developed especially in the areas of law, technology, education, and institutional network. It examines the anti-phishing approach undertaken in Taiwan employing qualitative methods to supplement the doctrinal research. In the context of a shortage of Taiwan scholarship on this subject, the research provides a set of suggestions to Taiwan development of a multi-dimensional regulatory scheme. Thesis Antarc* Antarctica The University of Warwick: WRAP - Warwick Research Archive Portal Pacific
institution Open Polar
collection The University of Warwick: WRAP - Warwick Research Archive Portal
op_collection_id ftuwarwick
language unknown
topic HV Social pathology. Social and public welfare
KN Asia and Eurasia
Africa
Pacific Area
and Antarctica
spellingShingle HV Social pathology. Social and public welfare
KN Asia and Eurasia
Africa
Pacific Area
and Antarctica
Kuo, Chuan-Chi
Multi-layered regulation of phishing attacks : a Taiwan case study
topic_facet HV Social pathology. Social and public welfare
KN Asia and Eurasia
Africa
Pacific Area
and Antarctica
description This research examines the regulation of phishing in Taiwan, particularly focusing on legal regulation but within a context of a multi-dimensional regulatory framework which also necessarily includes an examination of international regulation and the interaction between international and Taiwan regulatory interfaces given the transnational nature of phishing. Phishing is a malicious cyber activity which targets the acquisition of various types of confidential information by deception through the use of spoofed emails and/or websites. The increasing threat of phishing to information security has inspired a growing demand for regulation. Significant effort has been made in academic research and by industry to develop regulatory measures for phishing, which is dominated by technological work with comparatively little research on legal regulation. The current legal discussion of phishing, both international and Taiwan, very often concentrates on the criminal liability of phishers and pays little attention to the alternative role of law in the regulation of phishing. Thus this research suggests a broader approach to legal regulation that goes beyond criminal law and particularly addresses the role of information privacy law which constrains phishing by ensuring the protection of personal information. Phishing has posed crucial challenges to the traditional system in terms of both criminalization and legal enforcement. The solution that has been mostly addressed by the existing research is cooperation. As phishing is frequently a global phenomenon, this research suggests that an international approach involving coordination of legal standards and cross-border cooperation of law enforcement is necessary to tackle phishing, and also suggests that the fundamental step lies in a converged regulation of phishing consistent with its true context. Weak legal enforcement is a major deterrent to the effectiveness of legal regulation which highlights a need for a broad from of regulation that goes beyond law. In addition, a successful phishing episode involves a complex of factors including not only weakness in law but also vulnerability of technical infrastructure, administrative system and user awareness. A single solution is thus unlikely to deal with phishing. This research therefore suggests a multi-dimensional regulatory framework comprising different countermeasures developed especially in the areas of law, technology, education, and institutional network. It examines the anti-phishing approach undertaken in Taiwan employing qualitative methods to supplement the doctrinal research. In the context of a shortage of Taiwan scholarship on this subject, the research provides a set of suggestions to Taiwan development of a multi-dimensional regulatory scheme.
format Thesis
author Kuo, Chuan-Chi
author_facet Kuo, Chuan-Chi
author_sort Kuo, Chuan-Chi
title Multi-layered regulation of phishing attacks : a Taiwan case study
title_short Multi-layered regulation of phishing attacks : a Taiwan case study
title_full Multi-layered regulation of phishing attacks : a Taiwan case study
title_fullStr Multi-layered regulation of phishing attacks : a Taiwan case study
title_full_unstemmed Multi-layered regulation of phishing attacks : a Taiwan case study
title_sort multi-layered regulation of phishing attacks : a taiwan case study
publishDate 2014
url http://wrap.warwick.ac.uk/67171/
http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf
http://webcat.warwick.ac.uk/record=b2754926~S1
geographic Pacific
geographic_facet Pacific
genre Antarc*
Antarctica
genre_facet Antarc*
Antarctica
op_relation http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf
Kuo, Chuan-Chi (2014) Multi-layered regulation of phishing attacks : a Taiwan case study. PhD thesis, University of Warwick.
_version_ 1766264783532720128