Multi-layered regulation of phishing attacks : a Taiwan case study
This research examines the regulation of phishing in Taiwan, particularly focusing on legal regulation but within a context of a multi-dimensional regulatory framework which also necessarily includes an examination of international regulation and the interaction between international and Taiwan regu...
Main Author: | |
---|---|
Format: | Thesis |
Language: | unknown |
Published: |
2014
|
Subjects: | |
Online Access: | http://wrap.warwick.ac.uk/67171/ http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf http://webcat.warwick.ac.uk/record=b2754926~S1 |
id |
ftuwarwick:oai:wrap.warwick.ac.uk:67171 |
---|---|
record_format |
openpolar |
spelling |
ftuwarwick:oai:wrap.warwick.ac.uk:67171 2023-05-15T13:57:11+02:00 Multi-layered regulation of phishing attacks : a Taiwan case study Kuo, Chuan-Chi 2014-11 application/pdf http://wrap.warwick.ac.uk/67171/ http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf http://webcat.warwick.ac.uk/record=b2754926~S1 unknown http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf Kuo, Chuan-Chi (2014) Multi-layered regulation of phishing attacks : a Taiwan case study. PhD thesis, University of Warwick. HV Social pathology. Social and public welfare KN Asia and Eurasia Africa Pacific Area and Antarctica Thesis or Dissertation NonPeerReviewed 2014 ftuwarwick 2022-03-16T20:56:35Z This research examines the regulation of phishing in Taiwan, particularly focusing on legal regulation but within a context of a multi-dimensional regulatory framework which also necessarily includes an examination of international regulation and the interaction between international and Taiwan regulatory interfaces given the transnational nature of phishing. Phishing is a malicious cyber activity which targets the acquisition of various types of confidential information by deception through the use of spoofed emails and/or websites. The increasing threat of phishing to information security has inspired a growing demand for regulation. Significant effort has been made in academic research and by industry to develop regulatory measures for phishing, which is dominated by technological work with comparatively little research on legal regulation. The current legal discussion of phishing, both international and Taiwan, very often concentrates on the criminal liability of phishers and pays little attention to the alternative role of law in the regulation of phishing. Thus this research suggests a broader approach to legal regulation that goes beyond criminal law and particularly addresses the role of information privacy law which constrains phishing by ensuring the protection of personal information. Phishing has posed crucial challenges to the traditional system in terms of both criminalization and legal enforcement. The solution that has been mostly addressed by the existing research is cooperation. As phishing is frequently a global phenomenon, this research suggests that an international approach involving coordination of legal standards and cross-border cooperation of law enforcement is necessary to tackle phishing, and also suggests that the fundamental step lies in a converged regulation of phishing consistent with its true context. Weak legal enforcement is a major deterrent to the effectiveness of legal regulation which highlights a need for a broad from of regulation that goes beyond law. In addition, a successful phishing episode involves a complex of factors including not only weakness in law but also vulnerability of technical infrastructure, administrative system and user awareness. A single solution is thus unlikely to deal with phishing. This research therefore suggests a multi-dimensional regulatory framework comprising different countermeasures developed especially in the areas of law, technology, education, and institutional network. It examines the anti-phishing approach undertaken in Taiwan employing qualitative methods to supplement the doctrinal research. In the context of a shortage of Taiwan scholarship on this subject, the research provides a set of suggestions to Taiwan development of a multi-dimensional regulatory scheme. Thesis Antarc* Antarctica The University of Warwick: WRAP - Warwick Research Archive Portal Pacific |
institution |
Open Polar |
collection |
The University of Warwick: WRAP - Warwick Research Archive Portal |
op_collection_id |
ftuwarwick |
language |
unknown |
topic |
HV Social pathology. Social and public welfare KN Asia and Eurasia Africa Pacific Area and Antarctica |
spellingShingle |
HV Social pathology. Social and public welfare KN Asia and Eurasia Africa Pacific Area and Antarctica Kuo, Chuan-Chi Multi-layered regulation of phishing attacks : a Taiwan case study |
topic_facet |
HV Social pathology. Social and public welfare KN Asia and Eurasia Africa Pacific Area and Antarctica |
description |
This research examines the regulation of phishing in Taiwan, particularly focusing on legal regulation but within a context of a multi-dimensional regulatory framework which also necessarily includes an examination of international regulation and the interaction between international and Taiwan regulatory interfaces given the transnational nature of phishing. Phishing is a malicious cyber activity which targets the acquisition of various types of confidential information by deception through the use of spoofed emails and/or websites. The increasing threat of phishing to information security has inspired a growing demand for regulation. Significant effort has been made in academic research and by industry to develop regulatory measures for phishing, which is dominated by technological work with comparatively little research on legal regulation. The current legal discussion of phishing, both international and Taiwan, very often concentrates on the criminal liability of phishers and pays little attention to the alternative role of law in the regulation of phishing. Thus this research suggests a broader approach to legal regulation that goes beyond criminal law and particularly addresses the role of information privacy law which constrains phishing by ensuring the protection of personal information. Phishing has posed crucial challenges to the traditional system in terms of both criminalization and legal enforcement. The solution that has been mostly addressed by the existing research is cooperation. As phishing is frequently a global phenomenon, this research suggests that an international approach involving coordination of legal standards and cross-border cooperation of law enforcement is necessary to tackle phishing, and also suggests that the fundamental step lies in a converged regulation of phishing consistent with its true context. Weak legal enforcement is a major deterrent to the effectiveness of legal regulation which highlights a need for a broad from of regulation that goes beyond law. In addition, a successful phishing episode involves a complex of factors including not only weakness in law but also vulnerability of technical infrastructure, administrative system and user awareness. A single solution is thus unlikely to deal with phishing. This research therefore suggests a multi-dimensional regulatory framework comprising different countermeasures developed especially in the areas of law, technology, education, and institutional network. It examines the anti-phishing approach undertaken in Taiwan employing qualitative methods to supplement the doctrinal research. In the context of a shortage of Taiwan scholarship on this subject, the research provides a set of suggestions to Taiwan development of a multi-dimensional regulatory scheme. |
format |
Thesis |
author |
Kuo, Chuan-Chi |
author_facet |
Kuo, Chuan-Chi |
author_sort |
Kuo, Chuan-Chi |
title |
Multi-layered regulation of phishing attacks : a Taiwan case study |
title_short |
Multi-layered regulation of phishing attacks : a Taiwan case study |
title_full |
Multi-layered regulation of phishing attacks : a Taiwan case study |
title_fullStr |
Multi-layered regulation of phishing attacks : a Taiwan case study |
title_full_unstemmed |
Multi-layered regulation of phishing attacks : a Taiwan case study |
title_sort |
multi-layered regulation of phishing attacks : a taiwan case study |
publishDate |
2014 |
url |
http://wrap.warwick.ac.uk/67171/ http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf http://webcat.warwick.ac.uk/record=b2754926~S1 |
geographic |
Pacific |
geographic_facet |
Pacific |
genre |
Antarc* Antarctica |
genre_facet |
Antarc* Antarctica |
op_relation |
http://wrap.warwick.ac.uk/67171/1/WRAP_THESIS_Kuo_2014.pdf Kuo, Chuan-Chi (2014) Multi-layered regulation of phishing attacks : a Taiwan case study. PhD thesis, University of Warwick. |
_version_ |
1766264783532720128 |