Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - Counter Attacks in Cyber Space
Articles

Counter Attacks in Cyber Space

Suzan MustafaBy Suzan MustafaApril 30, 2015Updated:January 7, 20223 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

Attacks in Cyber SpaceWhen nation states and organisations become victims of a cyber attack, should they be allowed to defend themselves and launch a counter attack? If so, what are the technical and legal issues that they should watch out for?

Cyber security plays an integral role in nation-states and large organisations as they are constantly under attack by cyber criminals who use malicious software to steal financial and intellectual property.

In April 2007, cyber-attacks were launched on the Estonian government and key political infrastructures. The attacks were carried out by an Estonian citizen, Dmitri Galushkevich. Estonia’s key defence against the attack was their ability to transmit its data connection to other countries. This would be impossible for a country such as the United States to perform due to their large online presence.

Estonian officials were convinced that Galushkevich wasn’t the only culprit involved, so they presented a list of IP addresses to Russian authorities to help find others involved. Russian authorities argued that there were “technicalities” within the treaty between their countries that prevented them from providing the information.

Sydney University Lecturer and Co-Director of the Sydney Centre for International Law, Dr Emily Crawford, explains that the Estonian cyber attack doesn’t fall within the international law framework for “use of force”.

She states that, “You’ll need to have an armed attack – a kinetic attack – so there needs to be a rifle fired or a bomb dropped. That’s what’s missing from the cyber realm.”

The recent cyber attacks on Sony Pictures in 2014 compromised thousands of Sony Pictures employees’ personal information such as their usernames and passwords, payroll details, credit card numbers and social security numbers.

If the Sony cyber attacks had shown use of force that lead to an armed attack, then Article 51 of the UN Charter and International Law would’ve been applicable to allow the United States to launch a counter attack.

If there is justified reasoning to launch an attack in the cyber realm, what are the loopholes that exist? Firstly, if an organisation or government is faced with a malware attack, the software has the ability to install itself through another programs installation process.

What this means is that the User Agreement within the fine print of the software outlines that users will be installing this software onto their computer. The poses great difficulty when an organisation attempts to launch a counter-attack, as there could be legal technicalities in motion protecting the offenders.

Even though actions are being taken to combat criminal activity in cyber space, this does not make them legal in the many countries or jurisdictions.  Another implication is the anonymity of the internet. It is very easy to use VPN’s, and other software to hide an IP address. This could lead to misidentifying the attacker, and launching a counter attack against an innocent victim.

As cyber attacks continue to increase, governments and organisations must be vigilant in their incident response plans. But, launching a counter attack is simply not the answer as they have the ability to break a number of laws such as damaging intellectual property, spam and collateral damage.

Suzan Mustafa

Suzan completed her Bachelor of Professional Communication (Journalism) at one of Australia’s top universities – Monash University. Since completing her degree, she has been studying for her Masters in Policing, Counter Terrorism and Intelligence with a specialisation in Cyber Security. Her work has been published in The Age, Film International Magazine, Canva and more.

  • Suzan Mustafa
    Phishing in the Workplace
  • Suzan Mustafa
    How You Can Protect Yourself Against Mobile Fraud
  • Suzan Mustafa
    On Two-Factor Authentication

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Roundcube RCE Vulnerability Disclosed Early Amid Active Exploitation

June 10, 20255 Mins Read

Fake Indian Government Portal Used to Spread Cross-Platform Malware in Suspected APT36 Campaign

May 13, 20253 Mins Read

New Federal Alert Warns U.S. Businesses of Medusa Ransomware Surge

March 13, 20254 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}