<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://cyber.harvard.edu/cybersecurity/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Caroline</id>
	<title>Cybersecurity Wiki - User contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://cyber.harvard.edu/cybersecurity/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Caroline"/>
	<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/Special:Contributions/Caroline"/>
	<updated>2026-08-14T18:53:33Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.43.6</generator>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=TrialMainPage&amp;diff=6770</id>
		<title>TrialMainPage</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=TrialMainPage&amp;diff=6770"/>
		<updated>2012-08-07T22:51:47Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Introduction */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Header_Message|message=This page is for trying out ideas for the main page of the wiki.}}&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&lt;br /&gt;
{|align=&amp;quot;center&amp;quot; style=&amp;quot;text-align:center; background-color:white&amp;quot; class=&amp;quot;wikitable&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
!colspan=&amp;quot;5&amp;quot;|Navigation&lt;br /&gt;
|-align=&amp;quot;center&amp;quot; valign=&amp;quot;bottom&amp;quot;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:toc_icon.svg|105x105px|link=http://cyber.law.harvard.edu/cybersecurity/Table_of_Contents]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;Table of Contents&amp;lt;/b&amp;gt;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:All_articles3.svg‎|105x105px|link=http://cyber.law.harvard.edu/cybersecurity/Cybersecurity_Annotated_Bibliography]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;List of All Articles&amp;lt;/b&amp;gt;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:case_studies.svg|105x105px|link=http://cyber.law.harvard.edu/cybersecurity/Category:Case_Studies]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;Case Studies&amp;lt;/b&amp;gt;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:h2o_icon.svg|105x105px|link=http://h2odev.law.harvard.edu/playlists/633]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;Suggested Syllabi (H2O)&amp;lt;/b&amp;gt;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:Help_icon4.svg|105x105px|link=http://cyber.law.harvard.edu/cybersecurity/Help]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;How to Use this Wiki&amp;lt;/b&amp;gt;&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on [[Cybersecurity_Overview|cybersecurity, broadly defined]], and includes an &#039;&#039;&#039;[[Cybersecurity_Annotated_Bibliography|annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please [[#Navigation|see below]]. It is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly. For more information about this first phase of the project, including the team, methodology, and opportunities to contribute, please see [[About|About the Project]].&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
==Navigation==&lt;br /&gt;
===Table of Contents===&lt;br /&gt;
The quickest way to get started is by using the [[Table of Contents]] as a guide to searching articles by type or category. Some of the articles have wiki entries whcih include a synopsis, full bibliographic information, and additional relevant notes.&lt;br /&gt;
&lt;br /&gt;
===List of All Articles===&lt;br /&gt;
You might also wish to consult the [[Cybersecurity Annotated Bibliography|list of all articles]] and use the [[Help#How_to_Use_the_Filter|filtering tool]] to receive customized search results by type, category, or a free text search term.&lt;br /&gt;
&lt;br /&gt;
===Case Studies===&lt;br /&gt;
The [[:Category:Case Studies|Case Studies]] page presents a list of selected case studies with short summaries and links to related literature such as news articles and investigative reports.&lt;br /&gt;
&lt;br /&gt;
===Selected Syllabi (H2O)===&lt;br /&gt;
The [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi] section uses the [http://h2odev.law.harvard.edu H2O] platform to feature a selection of playlists for instruction.&lt;br /&gt;
&lt;br /&gt;
===How to Use this Wiki===&lt;br /&gt;
For a full explanation of how to browse the wiki, please consult the [[Help]] page.&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=TrialMainPage&amp;diff=6769</id>
		<title>TrialMainPage</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=TrialMainPage&amp;diff=6769"/>
		<updated>2012-08-07T22:51:28Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Header_Message|message=This page is for trying out ideas for the main page of the wiki.}}&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&lt;br /&gt;
{|align=&amp;quot;center&amp;quot; style=&amp;quot;text-align:center; background-color:white&amp;quot; class=&amp;quot;wikitable&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
!colspan=&amp;quot;5&amp;quot;|Navigation&lt;br /&gt;
|-align=&amp;quot;center&amp;quot; valign=&amp;quot;bottom&amp;quot;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:toc_icon.svg|105x105px|link=http://cyber.law.harvard.edu/cybersecurity/Table_of_Contents]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;Table of Contents&amp;lt;/b&amp;gt;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:All_articles3.svg‎|105x105px|link=http://cyber.law.harvard.edu/cybersecurity/Cybersecurity_Annotated_Bibliography]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;List of All Articles&amp;lt;/b&amp;gt;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:case_studies.svg|105x105px|link=http://cyber.law.harvard.edu/cybersecurity/Category:Case_Studies]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;Case Studies&amp;lt;/b&amp;gt;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:h2o_icon.svg|105x105px|link=http://h2odev.law.harvard.edu/playlists/633]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;Suggested Syllabi (H2O)&amp;lt;/b&amp;gt;&lt;br /&gt;
|style=&amp;quot;width: 20%&amp;quot;|[[File:Help_icon4.svg|105x105px|link=http://cyber.law.harvard.edu/cybersecurity/Help]]&amp;lt;br&amp;gt;&amp;lt;b&amp;gt;How to Use this Wiki&amp;lt;/b&amp;gt;&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on [[Cybersecurity_Overview|cybersecurity, broadly defined]], and includes an &#039;&#039;&#039;[[Cybersecurity_Annotated_Bibliography|annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please [[#Navigation|see below]].&lt;br /&gt;
&lt;br /&gt;
It is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly. For more information about this first phase of the project, including the team, methodology, and opportunities to contribute, please see [[About|About the Project]].&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
==Navigation==&lt;br /&gt;
===Table of Contents===&lt;br /&gt;
The quickest way to get started is by using the [[Table of Contents]] as a guide to searching articles by type or category. Some of the articles have wiki entries whcih include a synopsis, full bibliographic information, and additional relevant notes.&lt;br /&gt;
&lt;br /&gt;
===List of All Articles===&lt;br /&gt;
You might also wish to consult the [[Cybersecurity Annotated Bibliography|list of all articles]] and use the [[Help#How_to_Use_the_Filter|filtering tool]] to receive customized search results by type, category, or a free text search term.&lt;br /&gt;
&lt;br /&gt;
===Case Studies===&lt;br /&gt;
The [[:Category:Case Studies|Case Studies]] page presents a list of selected case studies with short summaries and links to related literature such as news articles and investigative reports.&lt;br /&gt;
&lt;br /&gt;
===Selected Syllabi (H2O)===&lt;br /&gt;
The [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi] section uses the [http://h2odev.law.harvard.edu H2O] platform to feature a selection of playlists for instruction.&lt;br /&gt;
&lt;br /&gt;
===How to Use this Wiki===&lt;br /&gt;
For a full explanation of how to browse the wiki, please consult the [[Help]] page.&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6768</id>
		<title>About</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6768"/>
		<updated>2012-08-07T22:46:09Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Team&#039;&#039;&#039;: These resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  The development of this wiki has also been supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Contributors&#039;&#039;&#039;: Nick Maietta and Gili Vidan lead our most recent Summer 2012 team, with support from [http://cyber.law.harvard.edu/people/dabrams David Abrams], [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [https://cyber.law.harvard.edu/people/cnolan Caroline Nolan], and [https://cyber.law.harvard.edu/people/dobrien David O&#039;Brien], in addition to helpful contributions from [http://belfercenter.ksg.harvard.edu/experts/2428/vivek_mohan.html Vivek Mohan] and [http://belfercenter.ksg.harvard.edu/experts/2429/lucas_kello.html Lucas Kello].  Previous team members include Jacob Albert, Shane Matthews, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles were selected as foundational documents based on the recommendation of select researchers, and we look forward to building upon these resources with more recent publicatiosn, based on feedback and recommendations from external reviewers, community members, students, and others.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recent Updates&#039;&#039;&#039;: During the summer of 2012, our collection of over 90 articles was expanded significantly; the wiki now houses 350 plus resources. Other developments include special pages such as [[:Category:Case Studies|Case Studies]] and [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi], which are still works in progress.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Feedback and Participation&#039;&#039;&#039;: Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Fall 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Attribution&#039;&#039;&#039;: Some of the pages on this wiki use graphics form the [http://thenounproject.com Noun Project collection]. For specific attribution and licensing, please see the [[Special:ListFiles|list of media assets]].&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6767</id>
		<title>About</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6767"/>
		<updated>2012-08-07T22:45:48Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Team&#039;&#039;&#039;: These resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  The development of this wiki has also been supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Contributors&#039;&#039;&#039;: Nick Maietta and Gili Vidan lead our most recent Summer 2012 team, with support from [http://cyber.law.harvard.edu/people/dabrams David Abrams], [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [https://cyber.law.harvard.edu/people/cnolan Caroline Nolan], and [https://cyber.law.harvard.edu/people/dobrien David O&#039;Brien], in addition to helpful contributions from [http://belfercenter.ksg.harvard.edu/experts/2428/vivek_mohan.html Vivek Mohan] and [http://belfercenter.ksg.harvard.edu/experts/2429/lucas_kello.html Lucas Kello].  Previous team members include Jacob Albert, Shane Matthews, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles were selected as foundational documents based on the recommendation of select researchers, and we look forward to building upon these resources with more recent publicatiosn, based on feedback and recommendations from external reviewers, community members, students, and others.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recent Updates&#039;&#039;&#039;: During the summer of 2012, our collection of over 90 articles was expanded significantly; the wiki now houses 350 plus resources. Other developments include special pages such as [[:Category:Case Studies|Case Studies]] and [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi], which are still works in progress.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Feedback and Participation&#039;&#039;&#039;: Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Fall 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Attribution&#039;&#039;&#039;: Some of the pages on this wiki use graphics form the [http://thenounproject.com Noun Project collection]. For specific attribution and licensing, please see the [[Special:ListFiles|list of media assets]].&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6766</id>
		<title>About</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6766"/>
		<updated>2012-08-07T22:45:25Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Team&#039;&#039;&#039;: These resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  The development of this wiki has also been supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Contributors&#039;&#039;&#039;: Nick Maietta and Gili Vidan lead our most recent Summer 2012 team, with support from [http://cyber.law.harvard.edu/people/dabrams David Abrams], [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [https://cyber.law.harvard.edu/people/cnolan Caroline Nolan], and [https://cyber.law.harvard.edu/people/dobrien David O&#039;Brien], in addition to helpful contributions from [http://belfercenter.ksg.harvard.edu/experts/2428/vivek_mohan.html Vivek Mohan] and [http://belfercenter.ksg.harvard.edu/experts/2429/lucas_kello.html Lucas Kello].  Previous team members include Jacob Albert, Shane Matthews, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles were selected as foundational documents based on the recommendation of select researchers, and we look forward to building upon these resources with more recent publicatiosn, based on feedback and recommendations from external reviewers, community members, students, and others.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recent Updates&#039;&#039;&#039;: During the summer of 2012, our collection of over 90 articles was expanded significantly; the wiki now houses 350 plus resources. Other developments included special pages such as [[:Category:Case Studies|Case Studies]] and [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi], which are still works in progress.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Feedback and Participation&#039;&#039;&#039;: Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Fall 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Attribution&#039;&#039;&#039;: Some of the pages on this wiki use graphics form the [http://thenounproject.com Noun Project collection]. For specific attribution and licensing, please see the [[Special:ListFiles|list of media assets]].&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6765</id>
		<title>About</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6765"/>
		<updated>2012-08-07T22:44:48Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Team&#039;&#039;&#039;: These resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  The development of this wiki has also been supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Contributors&#039;&#039;&#039;: Nick Maietta and Gili Vidan lead our most recent Summer 2012 team, with support from [http://cyber.law.harvard.edu/people/dabrams David Abrams], [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [https://cyber.law.harvard.edu/people/cnolan Caroline Nolan], and [https://cyber.law.harvard.edu/people/dobrien David O&#039;Brien], in addition to helpful contributions from [http://belfercenter.ksg.harvard.edu/experts/2428/vivek_mohan.html Vivek Mohan] and [http://belfercenter.ksg.harvard.edu/experts/2429/lucas_kello.html Lucas Kello].  Previous team members include Jacob Albert, Shane Matthews, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles were selected as foundational documents based on the recommendation of select researchers, and we look forward to building upon these resources with more recent publication, based on feedback and recommendations from external reviewers, students and others.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recent Updates&#039;&#039;&#039;: During the summer of 2012, our collection of over 90 articles was expanded significantly; the wiki now houses 350 plus resources. Other developments included special pages such as [[:Category:Case Studies|Case Studies]] and [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi], which are still works in progress.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Feedback and Participation&#039;&#039;&#039;: Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Fall 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Attribution&#039;&#039;&#039;: Some of the pages on this wiki use graphics form the [http://thenounproject.com Noun Project collection]. For specific attribution and licensing, please see the [[Special:ListFiles|list of media assets]].&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6764</id>
		<title>About</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6764"/>
		<updated>2012-08-07T22:44:31Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Team&#039;&#039;&#039;: These resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  The development of this wiki has also been supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Contributors&#039;&#039;&#039;: Nick Maietta and Gili Vidan lead our most recent Summer 2012 team, with guidance from [http://cyber.law.harvard.edu/people/dabrams David Abrams], [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [https://cyber.law.harvard.edu/people/cnolan Caroline Nolan], and [https://cyber.law.harvard.edu/people/dobrien David O&#039;Brien], in addition to helpful contributions from [http://belfercenter.ksg.harvard.edu/experts/2428/vivek_mohan.html Vivek Mohan] and [http://belfercenter.ksg.harvard.edu/experts/2429/lucas_kello.html Lucas Kello].  Previous team members include Jacob Albert, Shane Matthews, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles were selected as foundational documents based on the recommendation of select researchers, and we look forward to building upon these resources with more recent publication, based on feedback and recommendations from external reviewers, students and others.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recent Updates&#039;&#039;&#039;: During the summer of 2012, our collection of over 90 articles was expanded significantly; the wiki now houses 350 plus resources. Other developments included special pages such as [[:Category:Case Studies|Case Studies]] and [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi], which are still works in progress.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Feedback and Participation&#039;&#039;&#039;: Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Fall 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Attribution&#039;&#039;&#039;: Some of the pages on this wiki use graphics form the [http://thenounproject.com Noun Project collection]. For specific attribution and licensing, please see the [[Special:ListFiles|list of media assets]].&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6763</id>
		<title>About</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6763"/>
		<updated>2012-08-07T22:43:56Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Team&#039;&#039;&#039;: These resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  The development of this wiki has also been supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Contributors&#039;&#039;&#039;: Nick Maietta and Gili Vidan (Summer 2012 team), with guidance from [http://cyber.law.harvard.edu/people/dabrams David Abrams], [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [https://cyber.law.harvard.edu/people/cnolan Caroline Nolan], and [https://cyber.law.harvard.edu/people/dobrien David O&#039;Brien], in addition to helpful contributions from [http://belfercenter.ksg.harvard.edu/experts/2428/vivek_mohan.html Vivek Mohan] and [http://belfercenter.ksg.harvard.edu/experts/2429/lucas_kello.html Lucas Kello].  Previous team members include Jacob Albert, Shane Matthews, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles were selected as foundational documents based on the recommendation of select researchers, and we look forward to building upon these resources with more recent publication, based on feedback and recommendations from external reviewers, students and others.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recent Updates&#039;&#039;&#039;: During the summer of 2012, our collection of over 90 articles was expanded significantly; the wiki now houses 350 plus resources. Other developments included special pages such as [[:Category:Case Studies|Case Studies]] and [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi], which are still works in progress.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Feedback and Participation&#039;&#039;&#039;: Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Fall 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Attribution&#039;&#039;&#039;: Some of the pages on this wiki use graphics form the [http://thenounproject.com Noun Project collection]. For specific attribution and licensing, please see the [[Special:ListFiles|list of media assets]].&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6762</id>
		<title>About</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=About&amp;diff=6762"/>
		<updated>2012-08-07T22:39:25Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;These resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  The development of this wiki has also been supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
Contributors include: Nick Maietta and Gili Vidan (Summer 2012 team), with guidance from [http://cyber.law.harvard.edu/people/dabrams David Abrams], [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [https://cyber.law.harvard.edu/people/cnolan Caroline Nolan], and [https://cyber.law.harvard.edu/people/dobrien David O&#039;Brien], in addition to helpful contributions from [http://belfercenter.ksg.harvard.edu/experts/2428/vivek_mohan.html Vivek Mohan] and [http://belfercenter.ksg.harvard.edu/experts/2429/lucas_kello.html Lucas Kello].  Previous team members include Jacob Albert, Shane Matthews, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Fall 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content.  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles were selected as foundational documents based on the recommendation of select researchers, and we look forward to building upon these resources with more recent publication, based on feedback and recommendations from external reviewers and others. During the summer of 2012, our collection of over articles to  including special pages such as [[:Category:Case Studies|Case Studies]] and [http://h2odev.law.harvard.edu/playlists/603 Suggested Syllabi], is a work in progress.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu].&amp;lt;br&amp;gt;&lt;br /&gt;
Prior to suggesting material for inclusion in the wiki, please consult the [[Submitting Feedback]] page.&lt;br /&gt;
&lt;br /&gt;
Attribution: Some of the pages on this wiki use graphics form the [http://thenounproject.com Noun Project collection]. For specific attribution and licensing, please see the [[Special:ListFiles|list of media assets]].&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Government_Reports_and_Documents&amp;diff=6377</id>
		<title>Government Reports and Documents</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Government_Reports_and_Documents&amp;diff=6377"/>
		<updated>2012-06-08T16:06:30Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Resource by Type | Resource by Type-&amp;gt;]][[Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;1&amp;quot; cellspacing=&amp;quot;0&amp;quot; style=&amp;quot;border: 1px solid LightGrey;&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Author/Agency&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Year &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Title &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Source &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Expertise&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; class=&amp;quot;unsortable&amp;quot; | Full Text  &lt;br /&gt;
|-&lt;br /&gt;
| Department of Commerce || 2010 || [[Defense Industrial Base Assessment]] || Government Report || None || [http://www.bis.doc.gov/defenseindustrialbaseprograms/osies/defmarketresearchrpts/final_counterfeit_electronics_report.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
|Department of Defense||1999||[[An Assessment of International Legal Issues in Information Operations]]||Government Report||Moderate:Law||[http://www.au.af.mil/au/awc/awcgate/dod-io-legal/dod-io-legal.pdf &#039;&#039; Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Defense || 2007 || [[Mission Impact of Foreign Influence on DoD Software]] || Government Report || Low:Defense Policy/Procurement || [http://www.cyber.st.dhs.gov/docs/Defense%20Science%20Board%20Task%20Force%20-%20Report%20on%20Mission%20Impact%20of%20Foreign%20Influence%20on%20DoD%20Software%20(2007).pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Defense || 2005 || [[Strategy for Homeland Defense and Civil Support]] || Government Report || None || [http://www.defense.gov/news/Jun2005/d20050630homeland.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Homeland Security || 2009 || [[A Roadmap for Cybersecurity Research]] || Government Report || Low:Technology || [http://www.cyber.st.dhs.gov/docs/DHS-Cybersecurity-Roadmap.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Homeland Security || 2003 || [[The National Strategy for the Physical Protection of Critical Infrastructures and Key Assets]] || Government Report || None || [http://www.dhs.gov/xlibrary/assets/Physical_Strategy.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Deputy Chief of Staff for Intelligence || 2006 || [[Critical Infrastructure Threats and Terrorism]] || Government Report || Low:Organizational Analysis; Low:Risk Management || [http://www.fas.org/irp/threat/terrorism/sup2.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Cyber Security Summit Task Force || 2004 || [[Information Security Governance]] || Government Report || Moderate:Executive Administration || [http://www.cyber.st.dhs.gov/docs/Information%20Security%20Governance-%20A%20Call%20to%20Action%20(2004).pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Infrastructure Advisory Council || 2004 || [[Hardening The Internet]] || Government Report || High:Technology || [http://www.cyber.st.dhs.gov/docs/NIAC%20Internet%20Hardening.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Institute of Standards and Technology || 2006 || [[SP 800-82: Guide to Supervisory Control and Data Acquisition (SCADA) and Industrial Control Systems Security]] || Government Report || Moderate:Technology || [http://www.cyber.st.dhs.gov/docs/NIST%20Guide%20to%20Supervisory%20and%20Data%20Acquisition-SCADA%20and%20Industrial%20Control%20Systems%20Security%20(2007).pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Science and Technology Council || 2006 || [[Federal Plan for Cyber Security and Information Assurance Research and Development]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/Federal%20R&amp;amp;D%20Plan%202006.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Networking and Information Technology Research and Development || 2009 || [[National Cyber Leap Year Summit 2009, Co-Chairs&#039; Report]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/National_Cyber_Leap_Year_Summit_2009_Co-Chairs_Report.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| President&#039;s Commission on Critical Infrastructure Protection || 1997 || [[Critical Foundations]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/PCCIP%20Report%201997.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| President&#039;s Information Technology Advisory Council || 2005 || [[Cyber Security: A Crisis of Prioritization]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/PITAC%20Report%202005.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| United States Secret Service || 2004 || [[Insider Threat Study]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/its_report_040820.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
|van Eeten, Michel J. G.||2008||[[Economics of Malware]]||Non-US Govt. Report||Moderate:Economics||[http://www.oecd.org/dataoecd/53/17/40722462.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2003 || [[The National Strategy to Secure Cyberspace]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/National%20Strategy%20to%20Secure%20Cyberspace%202003.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2009 || [[Cyberspace Policy Review]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/Cyberspace_Policy_Review_final.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2010 || [[The Comprehensive National Cybersecurity Initiative]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/CNCI-Cybersecurity.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;Subcategories:&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
* &#039;&#039;[[Government Reports and Documents | Government Reports and Documents-&amp;gt;]][[US Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
* &#039;&#039;[[Government Reports and Documents | Government Reports and Documents-&amp;gt;]][[Non-US Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Table of Contents | Jump to Table of Contents]]&#039;&#039;&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Government_Reports_and_Documents&amp;diff=6376</id>
		<title>Government Reports and Documents</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Government_Reports_and_Documents&amp;diff=6376"/>
		<updated>2012-06-08T16:05:31Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Resource by Type | Resource by Type-&amp;gt;]][[Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;1&amp;quot; cellspacing=&amp;quot;0&amp;quot; style=&amp;quot;border: 1px solid LightGrey;&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Author/Agency&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Year &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Title &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Source &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Expertise&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; class=&amp;quot;unsortable&amp;quot; | Full Text  &lt;br /&gt;
|-&lt;br /&gt;
| Department of Commerce || 2010 || [[Defense Industrial Base Assessment]] || Government Report&amp;lt;br/&amp;gt;Test || None || [http://www.bis.doc.gov/defenseindustrialbaseprograms/osies/defmarketresearchrpts/final_counterfeit_electronics_report.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
|Department of Defense||1999||[[An Assessment of International Legal Issues in Information Operations]]||Government Report||Moderate:Law||[http://www.au.af.mil/au/awc/awcgate/dod-io-legal/dod-io-legal.pdf &#039;&#039; Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Defense || 2007 || [[Mission Impact of Foreign Influence on DoD Software]] || Government Report || Low:Defense Policy/Procurement || [http://www.cyber.st.dhs.gov/docs/Defense%20Science%20Board%20Task%20Force%20-%20Report%20on%20Mission%20Impact%20of%20Foreign%20Influence%20on%20DoD%20Software%20(2007).pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Defense || 2005 || [[Strategy for Homeland Defense and Civil Support]] || Government Report || None || [http://www.defense.gov/news/Jun2005/d20050630homeland.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Homeland Security || 2009 || [[A Roadmap for Cybersecurity Research]] || Government Report || Low:Technology || [http://www.cyber.st.dhs.gov/docs/DHS-Cybersecurity-Roadmap.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Homeland Security || 2003 || [[The National Strategy for the Physical Protection of Critical Infrastructures and Key Assets]] || Government Report || None || [http://www.dhs.gov/xlibrary/assets/Physical_Strategy.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Deputy Chief of Staff for Intelligence || 2006 || [[Critical Infrastructure Threats and Terrorism]] || Government Report || Low:Organizational Analysis; Low:Risk Management || [http://www.fas.org/irp/threat/terrorism/sup2.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Cyber Security Summit Task Force || 2004 || [[Information Security Governance]] || Government Report || Moderate:Executive Administration || [http://www.cyber.st.dhs.gov/docs/Information%20Security%20Governance-%20A%20Call%20to%20Action%20(2004).pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Infrastructure Advisory Council || 2004 || [[Hardening The Internet]] || Government Report || High:Technology || [http://www.cyber.st.dhs.gov/docs/NIAC%20Internet%20Hardening.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Institute of Standards and Technology || 2006 || [[SP 800-82: Guide to Supervisory Control and Data Acquisition (SCADA) and Industrial Control Systems Security]] || Government Report || Moderate:Technology || [http://www.cyber.st.dhs.gov/docs/NIST%20Guide%20to%20Supervisory%20and%20Data%20Acquisition-SCADA%20and%20Industrial%20Control%20Systems%20Security%20(2007).pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Science and Technology Council || 2006 || [[Federal Plan for Cyber Security and Information Assurance Research and Development]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/Federal%20R&amp;amp;D%20Plan%202006.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Networking and Information Technology Research and Development || 2009 || [[National Cyber Leap Year Summit 2009, Co-Chairs&#039; Report]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/National_Cyber_Leap_Year_Summit_2009_Co-Chairs_Report.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| President&#039;s Commission on Critical Infrastructure Protection || 1997 || [[Critical Foundations]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/PCCIP%20Report%201997.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| President&#039;s Information Technology Advisory Council || 2005 || [[Cyber Security: A Crisis of Prioritization]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/PITAC%20Report%202005.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| United States Secret Service || 2004 || [[Insider Threat Study]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/its_report_040820.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
|van Eeten, Michel J. G.||2008||[[Economics of Malware]]||Non-US Govt. Report||Moderate:Economics||[http://www.oecd.org/dataoecd/53/17/40722462.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2003 || [[The National Strategy to Secure Cyberspace]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/National%20Strategy%20to%20Secure%20Cyberspace%202003.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2009 || [[Cyberspace Policy Review]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/Cyberspace_Policy_Review_final.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2010 || [[The Comprehensive National Cybersecurity Initiative]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/CNCI-Cybersecurity.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;Subcategories:&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
* &#039;&#039;[[Government Reports and Documents | Government Reports and Documents-&amp;gt;]][[US Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
* &#039;&#039;[[Government Reports and Documents | Government Reports and Documents-&amp;gt;]][[Non-US Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Table of Contents | Jump to Table of Contents]]&#039;&#039;&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Government_Reports_and_Documents&amp;diff=6375</id>
		<title>Government Reports and Documents</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Government_Reports_and_Documents&amp;diff=6375"/>
		<updated>2012-06-08T16:02:10Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Resource by Type | Resource by Type-&amp;gt;]][[Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;1&amp;quot; cellspacing=&amp;quot;0&amp;quot; style=&amp;quot;border: 1px solid LightGrey;&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Author/Agency&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Year &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Title &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Source &lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; | Expertise&lt;br /&gt;
! style=&amp;quot;background-color: #efefef;&amp;quot; class=&amp;quot;unsortable&amp;quot; | Full Text  &lt;br /&gt;
|-&lt;br /&gt;
| Department of Commerce || 2010 || [[Defense Industrial Base Assessment]] || Government Report || None || [http://www.bis.doc.gov/defenseindustrialbaseprograms/osies/defmarketresearchrpts/final_counterfeit_electronics_report.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
|Department of Defense||1999||[[An Assessment of International Legal Issues in Information Operations]]||Government Report||Moderate:Law||[http://www.au.af.mil/au/awc/awcgate/dod-io-legal/dod-io-legal.pdf &#039;&#039; Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Defense || 2007 || [[Mission Impact of Foreign Influence on DoD Software]] || Government Report || Low:Defense Policy/Procurement || [http://www.cyber.st.dhs.gov/docs/Defense%20Science%20Board%20Task%20Force%20-%20Report%20on%20Mission%20Impact%20of%20Foreign%20Influence%20on%20DoD%20Software%20(2007).pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Defense || 2005 || [[Strategy for Homeland Defense and Civil Support]] || Government Report || None || [http://www.defense.gov/news/Jun2005/d20050630homeland.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Homeland Security || 2009 || [[A Roadmap for Cybersecurity Research]] || Government Report || Low:Technology || [http://www.cyber.st.dhs.gov/docs/DHS-Cybersecurity-Roadmap.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Department of Homeland Security || 2003 || [[The National Strategy for the Physical Protection of Critical Infrastructures and Key Assets]] || Government Report || None || [http://www.dhs.gov/xlibrary/assets/Physical_Strategy.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Deputy Chief of Staff for Intelligence || 2006 || [[Critical Infrastructure Threats and Terrorism]] || Government Report || Low:Organizational Analysis; Low:Risk Management || [http://www.fas.org/irp/threat/terrorism/sup2.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Cyber Security Summit Task Force || 2004 || [[Information Security Governance]] || Government Report || Moderate:Executive Administration || [http://www.cyber.st.dhs.gov/docs/Information%20Security%20Governance-%20A%20Call%20to%20Action%20(2004).pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Infrastructure Advisory Council || 2004 || [[Hardening The Internet]] || Government Report || High:Technology || [http://www.cyber.st.dhs.gov/docs/NIAC%20Internet%20Hardening.pdf  &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Institute of Standards and Technology || 2006 || [[SP 800-82: Guide to Supervisory Control and Data Acquisition (SCADA) and Industrial Control Systems Security]] || Government Report || Moderate:Technology || [http://www.cyber.st.dhs.gov/docs/NIST%20Guide%20to%20Supervisory%20and%20Data%20Acquisition-SCADA%20and%20Industrial%20Control%20Systems%20Security%20(2007).pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| National Science and Technology Council || 2006 || [[Federal Plan for Cyber Security and Information Assurance Research and Development]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/Federal%20R&amp;amp;D%20Plan%202006.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| Networking and Information Technology Research and Development || 2009 || [[National Cyber Leap Year Summit 2009, Co-Chairs&#039; Report]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/National_Cyber_Leap_Year_Summit_2009_Co-Chairs_Report.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| President&#039;s Commission on Critical Infrastructure Protection || 1997 || [[Critical Foundations]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/PCCIP%20Report%201997.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| President&#039;s Information Technology Advisory Council || 2005 || [[Cyber Security: A Crisis of Prioritization]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/PITAC%20Report%202005.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| United States Secret Service || 2004 || [[Insider Threat Study]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/its_report_040820.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
|van Eeten, Michel J. G.||2008||[[Economics of Malware]]||Non-US Govt. Report||Moderate:Economics||[http://www.oecd.org/dataoecd/53/17/40722462.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2003 || [[The National Strategy to Secure Cyberspace]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/National%20Strategy%20to%20Secure%20Cyberspace%202003.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2009 || [[Cyberspace Policy Review]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/Cyberspace_Policy_Review_final.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|-&lt;br /&gt;
| White House || 2010 || [[The Comprehensive National Cybersecurity Initiative]] || Government Report || None || [http://www.cyber.st.dhs.gov/docs/CNCI-Cybersecurity.pdf &#039;&#039;Pdf&#039;&#039;]&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;Subcategories:&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
* &#039;&#039;[[Government Reports and Documents | Government Reports and Documents-&amp;gt;]][[US Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
* &#039;&#039;[[Government Reports and Documents | Government Reports and Documents-&amp;gt;]][[Non-US Government Reports and Documents]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Table of Contents | Jump to Table of Contents]]&#039;&#039;&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=The_Information_Technology_Supply_Chain&amp;diff=6369</id>
		<title>The Information Technology Supply Chain</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=The_Information_Technology_Supply_Chain&amp;diff=6369"/>
		<updated>2012-06-06T14:04:00Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Full Title of Reference==&lt;br /&gt;
The Information Technology Supply Chain: Survey and Forecast of Emerging Obligations for Industrial Vendors&lt;br /&gt;
&lt;br /&gt;
==Full Citation==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Citation should be in Bluebook Style.  For example, for an article in a journal:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
John Maynard Smith, &#039;&#039;The Origin of Altruism,&#039;&#039; 639 Nature 393 (1998).  [URL_of_Article_if_Available_Online  &#039;&#039;Web&#039;&#039;]  [Alternate_URL_of_Article  &#039;&#039;AltWeb&#039;&#039;]&lt;br /&gt;
&lt;br /&gt;
[URL.to.Bibliography_Detailed_Entry &#039;&#039;BibTeX&#039;&#039;]  &amp;lt;- link to BibTeX should show only a single record in detailed format&lt;br /&gt;
&lt;br /&gt;
[URL.to.Google_Books_Entry &#039;&#039;Google Books&#039;&#039;] &amp;lt;- these are all optional but include if available.  Place links on same line as BibTeX entry link. (See [[Security Engineering]])&lt;br /&gt;
&lt;br /&gt;
[URL.to.World_Cat_Entry &#039;&#039;World Cat&#039;&#039;]&lt;br /&gt;
&lt;br /&gt;
[URL.to.Amazon_or_Amazon_Scholars_Entry &#039;&#039;Amazon&#039;&#039;]&lt;br /&gt;
&lt;br /&gt;
==Categorization==&lt;br /&gt;
&lt;br /&gt;
* Issues: [[Cyberwar]]; [[Incentives]]  &amp;lt;- put categories in alphabetical order separated by semicolons&lt;br /&gt;
&lt;br /&gt;
* Approaches: [[Deterrence]]&lt;br /&gt;
&lt;br /&gt;
==Key Words==    &lt;br /&gt;
&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Computer_Network_Attack | Computer Network Attack]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#COTS_Software | COTS Software]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Warfare | Cyber Warfare]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Department_of_Homeland_Security | Department of Homeland Security]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#DDoS_Attack | Denial of Service Attacks]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | Hackers]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Intelligence_Infrastructure.2FInformation_Infrastructure | Intelligence Community]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | Malicious Code (Malware)]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | National Security]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Risk_Modeling | Risk Modeling]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Sponsored_Attacks | Sponsored Attacks]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#State_Affiliation | State Affiliation]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Worm | Worm]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;- put keywords in alphabetical order separated by colons and makes sure the glossary entry has a link back to this wiki.  The links in the Keyword Index and Glossary page that link back here should jump to the top of this wiki page and not somewhere within. While it is convenient in glossary mode to click on a key word - go to the definition - then jump back, in keyword index mode the user will be jumping to a new reference s/he has not seen before and it would be confusing to jump so that all the user saw was the key words or synopsis but not the title.  So please do this (edit page to see differences):&lt;br /&gt;
&lt;br /&gt;
References (use edit mode for differences):&lt;br /&gt;
* [[TemplateForSources | Moore and Clayton]]&lt;br /&gt;
&lt;br /&gt;
not this:&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[TemplateForSources#Key_Words | Moore and Clayton]]&lt;br /&gt;
&lt;br /&gt;
or this:&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[TemplateForSources#Synopsis | Moore and Clayton]]&lt;br /&gt;
&lt;br /&gt;
in the Keyword Index and Glossary.&lt;br /&gt;
&lt;br /&gt;
==Synopsis==&lt;br /&gt;
&lt;br /&gt;
The purpose of the synopsis is to give the reader not only the subject matter of the reference but also the authors&#039; conclusions.  The goal should be to include what would be included  in an Executive Summary.  You can copy relevant paragraphs (enclose in &amp;lt;blockquote&amp;gt;&amp;lt;/blockquote&amp;gt; to format), or summarize or reprint an provided executive summary.&lt;br /&gt;
&lt;br /&gt;
==Additional Notes and Highlights==&lt;br /&gt;
&lt;br /&gt;
Expertise required:  &amp;lt;field&amp;gt; - &amp;lt;Low/Moderate/High&amp;gt; (e.g. &amp;quot;Technology - High; Law - Low&amp;quot;)&lt;br /&gt;
&lt;br /&gt;
&#039;&#039; * Outline key points of interest or other information that does not fit in one of the topics above&lt;br /&gt;
&lt;br /&gt;
Including links to reviews, citations of the reference, online discussions, Table of Contents, sample chapters if the full reference is not available online.&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=The_Information_Technology_Supply_Chain&amp;diff=6368</id>
		<title>The Information Technology Supply Chain</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=The_Information_Technology_Supply_Chain&amp;diff=6368"/>
		<updated>2012-06-06T14:01:17Z</updated>

		<summary type="html">&lt;p&gt;Caroline: Created page with &amp;quot;==Full Title of Reference==  The Origin of Altruism  ==Full Citation==  &amp;#039;&amp;#039;Citation should be in Bluebook Style.  For example, for an article in a journal:&amp;#039;&amp;#039;  John Maynard Smit...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Full Title of Reference==&lt;br /&gt;
&lt;br /&gt;
The Origin of Altruism&lt;br /&gt;
&lt;br /&gt;
==Full Citation==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Citation should be in Bluebook Style.  For example, for an article in a journal:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
John Maynard Smith, &#039;&#039;The Origin of Altruism,&#039;&#039; 639 Nature 393 (1998).  [URL_of_Article_if_Available_Online  &#039;&#039;Web&#039;&#039;]  [Alternate_URL_of_Article  &#039;&#039;AltWeb&#039;&#039;]&lt;br /&gt;
&lt;br /&gt;
[URL.to.Bibliography_Detailed_Entry &#039;&#039;BibTeX&#039;&#039;]  &amp;lt;- link to BibTeX should show only a single record in detailed format&lt;br /&gt;
&lt;br /&gt;
[URL.to.Google_Books_Entry &#039;&#039;Google Books&#039;&#039;] &amp;lt;- these are all optional but include if available.  Place links on same line as BibTeX entry link. (See [[Security Engineering]])&lt;br /&gt;
&lt;br /&gt;
[URL.to.World_Cat_Entry &#039;&#039;World Cat&#039;&#039;]&lt;br /&gt;
&lt;br /&gt;
[URL.to.Amazon_or_Amazon_Scholars_Entry &#039;&#039;Amazon&#039;&#039;]&lt;br /&gt;
&lt;br /&gt;
==Categorization==&lt;br /&gt;
&lt;br /&gt;
* Issues: [[Cyberwar]]; [[Incentives]]  &amp;lt;- put categories in alphabetical order separated by semicolons&lt;br /&gt;
&lt;br /&gt;
* Approaches: [[Deterrence]]&lt;br /&gt;
&lt;br /&gt;
==Key Words==    &lt;br /&gt;
&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Computer_Network_Attack | Computer Network Attack]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#COTS_Software | COTS Software]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Warfare | Cyber Warfare]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Department_of_Homeland_Security | Department of Homeland Security]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#DDoS_Attack | Denial of Service Attacks]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | Hackers]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Intelligence_Infrastructure.2FInformation_Infrastructure | Intelligence Community]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | Malicious Code (Malware)]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | National Security]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Risk_Modeling | Risk Modeling]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Sponsored_Attacks | Sponsored Attacks]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#State_Affiliation | State Affiliation]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Worm | Worm]],&lt;br /&gt;
[[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;- put keywords in alphabetical order separated by colons and makes sure the glossary entry has a link back to this wiki.  The links in the Keyword Index and Glossary page that link back here should jump to the top of this wiki page and not somewhere within. While it is convenient in glossary mode to click on a key word - go to the definition - then jump back, in keyword index mode the user will be jumping to a new reference s/he has not seen before and it would be confusing to jump so that all the user saw was the key words or synopsis but not the title.  So please do this (edit page to see differences):&lt;br /&gt;
&lt;br /&gt;
References (use edit mode for differences):&lt;br /&gt;
* [[TemplateForSources | Moore and Clayton]]&lt;br /&gt;
&lt;br /&gt;
not this:&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[TemplateForSources#Key_Words | Moore and Clayton]]&lt;br /&gt;
&lt;br /&gt;
or this:&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[TemplateForSources#Synopsis | Moore and Clayton]]&lt;br /&gt;
&lt;br /&gt;
in the Keyword Index and Glossary.&lt;br /&gt;
&lt;br /&gt;
==Synopsis==&lt;br /&gt;
&lt;br /&gt;
The purpose of the synopsis is to give the reader not only the subject matter of the reference but also the authors&#039; conclusions.  The goal should be to include what would be included  in an Executive Summary.  You can copy relevant paragraphs (enclose in &amp;lt;blockquote&amp;gt;&amp;lt;/blockquote&amp;gt; to format), or summarize or reprint an provided executive summary.&lt;br /&gt;
&lt;br /&gt;
==Additional Notes and Highlights==&lt;br /&gt;
&lt;br /&gt;
Expertise required:  &amp;lt;field&amp;gt; - &amp;lt;Low/Moderate/High&amp;gt; (e.g. &amp;quot;Technology - High; Law - Low&amp;quot;)&lt;br /&gt;
&lt;br /&gt;
&#039;&#039; * Outline key points of interest or other information that does not fit in one of the topics above&lt;br /&gt;
&lt;br /&gt;
Including links to reviews, citations of the reference, online discussions, Table of Contents, sample chapters if the full reference is not available online.&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Page_for_Draft_Bibliographic_Entries&amp;diff=6367</id>
		<title>Page for Draft Bibliographic Entries</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Page_for_Draft_Bibliographic_Entries&amp;diff=6367"/>
		<updated>2012-06-06T14:00:33Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;|-&lt;br /&gt;
|||Aisenberg, Nichael A.||2010||[[The Information Technology Supply Chain]]||Journal Article||None||[http://people.seas.harvard.edu/~tmoore/science-econ.pdf &#039;&#039;Pdf&#039;&#039;]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Page_for_Draft_Bibliographic_Entries&amp;diff=6366</id>
		<title>Page for Draft Bibliographic Entries</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Page_for_Draft_Bibliographic_Entries&amp;diff=6366"/>
		<updated>2012-06-06T13:58:16Z</updated>

		<summary type="html">&lt;p&gt;Caroline: Created page with &amp;quot;|- |Anderson, Ross||Moore, Tyler||2006||The Economics of Information Security||Journal Article||Low:Economics||[http://people.seas.harvard.edu/~tmoore/science-econ.pdf &amp;#039;&amp;#039;P...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;|-&lt;br /&gt;
|Anderson, Ross||Moore, Tyler||2006||[[The Economics of Information Security]]||Journal Article||Low:Economics||[http://people.seas.harvard.edu/~tmoore/science-econ.pdf &#039;&#039;Pdf&#039;&#039;] [http://citeseerx.ist.psu.edu/viewdoc/download?doi=10.1.1.89.3331&amp;amp;rep=rep1&amp;amp;type=pdf &#039;&#039;AltPdf&#039;&#039;]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6365</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6365"/>
		<updated>2012-06-06T13:56:22Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly. For more information about this first phase of the project, please see [http://cyber.law.harvard.edu/cybersecurity/Main_Page#About_the_Project About the Project].&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki is supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [mailto:cybersecurity-feedback@cyber.law.harvard.edu cybersecurity-feedback@cyber.law.harvard.edu]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. We will also update the initial collection of articles with more recent writings, and based on feedback and recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[Page for Draft Bibliographic Entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6363</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6363"/>
		<updated>2012-04-04T13:13:18Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Introduction */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly. For more information about this first phase of the project, please see [http://cyber.law.harvard.edu/cybersecurity/Main_Page#About_the_Project About the Project].&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki is supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [[cybersecurity-feedback@cyber.law.harvard.edu]]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. We will also update the initial collection of articles with more recent writings, and based on feedback and recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6362</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6362"/>
		<updated>2012-04-04T13:13:08Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Introduction */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly. For more information about this first phase of the project, please see [[http://cyber.law.harvard.edu/cybersecurity/Main_Page#About_the_Project About the Project]].&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki is supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [[cybersecurity-feedback@cyber.law.harvard.edu]]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. We will also update the initial collection of articles with more recent writings, and based on feedback and recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6361</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6361"/>
		<updated>2012-04-04T13:10:56Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Introduction */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly. For more information about this first phase of the project, please see [[About the Project]].&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki is supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [[cybersecurity-feedback@cyber.law.harvard.edu]]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. We will also update the initial collection of articles with more recent writings, and based on feedback and recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6360</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6360"/>
		<updated>2012-04-04T13:09:59Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Introduction */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly. For more information about this first phase of the project, please see [[About the Project http://cyber.law.harvard.edu/cybersecurity/Main_Page#About_the_Project]].&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki is supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [[cybersecurity-feedback@cyber.law.harvard.edu]]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. We will also update the initial collection of articles with more recent writings, and based on feedback and recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6359</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6359"/>
		<updated>2012-04-04T13:09:32Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Introduction */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly. For more information about this first phase of the project, please see [About the Project http://cyber.law.harvard.edu/cybersecurity/Main_Page#About_the_Project]&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki is supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [[cybersecurity-feedback@cyber.law.harvard.edu]]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. We will also update the initial collection of articles with more recent writings, and based on feedback and recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Suggested_References_to_Add_to_Wiki&amp;diff=6358</id>
		<title>Suggested References to Add to Wiki</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Suggested_References_to_Add_to_Wiki&amp;diff=6358"/>
		<updated>2012-04-04T13:01:13Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;Please add links to reference pages for Redmine articles you believe should be added to the cybersecurity wiki here or email them to: cybersecurity-feedback@cyber.law.harvard.edu&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Entries should look just like any other entry on a topic page, i.e., &amp;quot;&amp;lt;lastname&amp;gt;, &amp;lt;firstname&amp;gt; &#039;&#039;(&amp;lt;year&amp;gt;)&#039;&#039; [&amp;lt;Title as a link to the reference page&amp;gt;]&amp;quot;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Aloise, Gene, Barkakati, Nabajyoti, and Wilshusen, Gregory C. (2008) [[Nuclear Security]]&lt;br /&gt;
&lt;br /&gt;
Bauer, Johannes M. and van Eeten, Michel J. G. (2009) [[Cybersecurity]] &lt;br /&gt;
&lt;br /&gt;
Bellovin, Steven M. (2009) [[The Government and Cybersecurity]]&lt;br /&gt;
&lt;br /&gt;
Besunder, Allison A. (2009) [[Best Practices for Data Protection and Privacy]]&lt;br /&gt;
&lt;br /&gt;
Burstein, Aaron J. (2008) [[Amending The ECPA To Enable a Culture of Cybersecurity Research]]&lt;br /&gt;
&lt;br /&gt;
Cetron, Marvin J. and Davies, Owen (2009) [[World War 3.0: Ten Critical Trends for Cybersecurity]]&lt;br /&gt;
&lt;br /&gt;
Cornish, Paul (2009) [[Cyber Security and Politically, Socially and Religiously Motivated Cyber Attacks]]&lt;br /&gt;
&lt;br /&gt;
Cornish, Paul, Hughes, Rex, and Livingstone, David (2009) [[Cyberspace and the National Security of the United Kingdom]]&lt;br /&gt;
&lt;br /&gt;
ENISA (2010) [[Introduction to Country Reports]]&lt;br /&gt;
&lt;br /&gt;
Gable, Kelly A. (2010) [[Cyber-Apocalypse Now]]&lt;br /&gt;
&lt;br /&gt;
GAO (2009) [[Critical Infrastructure Protection]]&lt;br /&gt;
&lt;br /&gt;
GAO (2010) [[Information Security]]&lt;br /&gt;
&lt;br /&gt;
Geer, Daniel E. and Conway, Daniel G. (2010) [[Nothing Ventured, Nothing Gained]]&lt;br /&gt;
&lt;br /&gt;
Intelligence Squared US (IQ2US) Video Debate &#039;&#039;(2010)&#039;&#039; [[The Cyber War Threat Has Been Grossly Exaggerated]]&lt;br /&gt;
&lt;br /&gt;
Kobayashi, Bruce H. (2005) [[An Economic Analysis of the Private and Social Costs of the Provision of Cybersecurity and other Public Security Goods]]&lt;br /&gt;
&lt;br /&gt;
Lan, Tang et al. (2010) [[Global Cyber Deterrence]]&lt;br /&gt;
&lt;br /&gt;
Lewis, James Andrews (2005) [[Cyber Security and Regulation in the United States]]&lt;br /&gt;
&lt;br /&gt;
Madnick, Stuart (2009) [[Experiences and Challenges with Using CERT Data to Analyze International Cyber Security]]&lt;br /&gt;
&lt;br /&gt;
Maughan, Douglas (2010) [[The Need for a National Cybersecurity Research and Development Agenda]]&lt;br /&gt;
&lt;br /&gt;
Nojeim, Gregory T. (2009) [[Cybersecurity: Preventing Terrorist Attacks and Protecting Privacy in Cyberspace]]&lt;br /&gt;
&lt;br /&gt;
Nye, Joseph S. (2010) [[Cyber Power]]&lt;br /&gt;
&lt;br /&gt;
OECD (2009) [[Cybersecurity and Economic Incentives]]&lt;br /&gt;
&lt;br /&gt;
OECD (2009) [[The Market Consequences of Cybersecurity]]&lt;br /&gt;
&lt;br /&gt;
Perkins, Earl (2009) [[Evolving Cybersecurity Issues in the Utility Industry]]&lt;br /&gt;
&lt;br /&gt;
Rollins, John and Wilson, Clay (2007) [[Terrorist Capabilities for Cyberattack]]&lt;br /&gt;
&lt;br /&gt;
Rue, Rachel and Pfleeger, Shari Lawrence (2009) [[Making the Best Use of Cybersecurity Economic Models]]&lt;br /&gt;
&lt;br /&gt;
Santos, Joost R., et. al (2007) [[A Framework for Linking Cybersecurity Metrics to the Modeling of Macroeconomic Interdependencies]]&lt;br /&gt;
&lt;br /&gt;
Schneidewind, Norman (2010) [[Metrics for Mitigating Cybersecurity Threats to Networks]]&lt;br /&gt;
&lt;br /&gt;
Shackelford, Scott J. (2010) [[Estonia Three Years Later]]&lt;br /&gt;
&lt;br /&gt;
Shah, Shashi K. (2004) [[The Evolving Landscape of Maritime Cybersecurity]]&lt;br /&gt;
&lt;br /&gt;
Stohl, Michael (2006) [[Cyber Terrorism: A Clear and Present Danger, the Sum of All Fears, Breaking Point or Patriot Games]]&lt;br /&gt;
&lt;br /&gt;
Theohary, Catherine A. and Rollins, John (2010) [[Cybersecurity: Current Legislation, Executive Branch Initiatives, and Options for Congress]] &lt;br /&gt;
&lt;br /&gt;
van Eeten, Michael and Bauer, Johannes M. (2009) [[Emerging Threats to Internet Security]]&lt;br /&gt;
&lt;br /&gt;
Wilshusen, Gregory C. and Powner, David A. (2009) [[Continued Efforts are Needed to Protect Information Systems from Evolving Threats]]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6357</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6357"/>
		<updated>2012-04-04T12:55:34Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* About the Project */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki is supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [[cybersecurity-feedback@cyber.law.harvard.edu]]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature Review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki content. We will also update the initial collection of articles with more recent writings, and based on feedback and recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6356</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6356"/>
		<updated>2012-04-04T12:54:54Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* About the Project */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki is supported by the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [[cybersecurity-feedback@cyber.law.harvard.edu]]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents. We will also update the initial collection of articles with more recent writings, and based on recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6355</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6355"/>
		<updated>2012-04-04T12:46:18Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* About the Project */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki was supported by the Minerva Initiative [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact: [[cybersecurity-feedback@cyber.law.harvard.edu]]. &lt;br /&gt;
&lt;br /&gt;
Please note that the wiki is currently closed to external editors as we finalize the content and underlying structure of the Literature review. During Spring-Summer of 2012, we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents. We will also update the initial collection of articles with more recent writings, and based on recommendations from external reviewers and others.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6354</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6354"/>
		<updated>2012-04-04T12:44:26Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Ongoing Work */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki was supported by the Minerva Initiative [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu and David O&#039;Brien: dobrien@cyber.law.harvard.edu. In Spring 2012,we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6353</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6353"/>
		<updated>2012-04-04T12:43:53Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Ongoing Work */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
Please direct feedback, suggestions for improvements, and recommendations to the following address: &lt;br /&gt;
[cybersecurity-feedback@cyber.law.harvard.edu]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki was supported by the Minerva Initiative [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu and David O&#039;Brien: dobrien@cyber.law.harvard.edu. In Spring 2012,we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6352</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6352"/>
		<updated>2012-04-04T12:43:43Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* About the Project */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
Please direct feedback, suggestions for improvements, and recommendations to the following address: &lt;br /&gt;
[[cybersecurity-feedback@cyber.law.harvard.edu]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
The development of this wiki was supported by the Minerva Initiative [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu and David O&#039;Brien: dobrien@cyber.law.harvard.edu. In Spring 2012,we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6351</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6351"/>
		<updated>2012-04-04T12:43:12Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Ongoing Work */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
Please direct feedback, suggestions for improvements, and recommendations to the following address: &lt;br /&gt;
[[cybersecurity-feedback@cyber.law.harvard.edu]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu and David O&#039;Brien: dobrien@cyber.law.harvard.edu. In Spring 2012,we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6350</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6350"/>
		<updated>2012-04-04T12:42:58Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Ongoing Work */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
Please direct feedback, suggestions for improvements, and recommendations to the following address: [[cybersecurity-feedback@cyber.law.harvard.edu]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu and David O&#039;Brien: dobrien@cyber.law.harvard.edu. In Spring 2012,we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6349</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6349"/>
		<updated>2012-04-04T12:42:28Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Ongoing Work */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry; the collected articles are dated through 2011. They were selected as foundational documents on the recommendation of select researchers, and we look forward to building upon them with more recent publications. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
Please direct feedback, suggestions for improvements, and recommendations to the following address: cybersecurity-feedback@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu and David O&#039;Brien: dobrien@cyber.law.harvard.edu. In Spring 2012,we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6348</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6348"/>
		<updated>2012-02-18T16:35:24Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* About the Project */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu and David O&#039;Brien: dobrien@cyber.law.harvard.edu. In Spring 2012,we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6347</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6347"/>
		<updated>2012-02-18T16:34:11Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* About the Project */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, David O&#039;Brien, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu and David O&#039;Brien: dobrien@cyber.law.harvard.edu. In the coming weeks we will provide additional opportunities for users to weigh in, contribute to, and comment on the wiki contents.&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6346</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6346"/>
		<updated>2012-02-18T16:32:33Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* About the Project */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6345</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=6345"/>
		<updated>2012-02-18T16:32:17Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* About the Project */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
&lt;br /&gt;
==Start at the [[Table of Contents]]==&lt;br /&gt;
&lt;br /&gt;
To get started immediately, visit the &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and click on a topic of interest.&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Table of Contents | annotated list]]&#039;&#039;&#039; of relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources - How to Use this Wiki==&lt;br /&gt;
&lt;br /&gt;
===Navigating Through the  [[Table of Contents]]===&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed &#039;&#039;&#039;[[Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | Cybercrime]] or [[Financial Institutions and Networks |Financial Institutions and Networks]].  At the top of each topic page within the Table of Contents is a &amp;quot;bread crumb&amp;quot; trail showing the path through the Table of Contents to that page.  This trail not only shows you how the current page topic fits into the overall structure of the bibliography, each level in this trail is individually selectable allowing you to move up one or more levels to broaden your search.  For example, if you are looking at the &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039; page, you can click on the [[Issues | Issues-&amp;gt;]] link to see references addressing all the cybersecurity Issues topics.&lt;br /&gt;
&lt;br /&gt;
At the bottom of each topic page is a list of subcategories leading deeper into the Table of Contents from the current topic.  This allows you to drill down to pages with greater specificity.  For example, if the current page is &#039;&#039;[[Table of Contents | TOC-&amp;gt;]][[Issues | Issues-&amp;gt;]][[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]]&#039;&#039; (shown in the bread crumb trail at the top of the page), the bottom of the page will offer links to the five subcategories of the &#039;&#039;&#039;Economics of Cybersecurity&#039;&#039;&#039; including:&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Risk Management and Investment]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Incentives]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Insurance]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Behavioral Economics]]&#039;&#039;&lt;br /&gt;
*&#039;&#039;[[Economics of Cybersecurity | Economics of Cybersecurity-&amp;gt;]][[Market Failure]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Choose a [[Broad Topics | Broad Topic Area]] to Explore===&lt;br /&gt;
If you are interested in beginning with a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Resource by Type]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Select an [[Overview | Overview Document]]===&lt;br /&gt;
Alternately, you can access one of the &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039; readings or one of the selected readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;[[Resource by Type | Resource Type]]&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports and Documents]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Independent Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039;  and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Access the [[Keyword Index and Glossary of Core Ideas | Keyword Index]]===&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
===See a [[Cybersecurity Annotated Bibliography| List of All Articles]]===&lt;br /&gt;
An alphabetized &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Cybersecurity Annotated Bibliography]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
===Export References in Standard BibTex Format===&lt;br /&gt;
References may also be accessed and exported in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society], under the guidance of [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith]. Please see [http://www.lawfareblog.com/ Jack&#039;s blog] for up-to-date coverage of national security and cybersecurity news, issues, and analysis.  &lt;br /&gt;
&lt;br /&gt;
Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [, Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[Adding a Reference | How to Add a New Reference to this Wiki]]&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
[[List of Keyword links to copy into reference pages | Keyword Links]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Table_of_Contents&amp;diff=4639</id>
		<title>Table of Contents</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Table_of_Contents&amp;diff=4639"/>
		<updated>2010-07-22T16:06:53Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues broadly defined. */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
===For more information, including an [[Main Page#Introduction | Introduction]] and [[Main Page#Key Resources - How to Use this Wiki | Instructions]] on how to use this wiki, [[Main Page | please visit the Introductory Page]]===&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;li&amp;gt;&#039;&#039;&#039;[[Overview | 1. Overview]]&#039;&#039;&#039;&amp;lt;/li&amp;gt;&lt;br /&gt;
  &amp;lt;li&amp;gt;&#039;&#039;&#039;[[Resource by Type | 2. Selected Resources by Type]]&#039;&#039;&#039;&amp;lt;/li&amp;gt;&lt;br /&gt;
  &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[Government Reports and Documents | 2.1 Government Reports and Documents]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[US Government Reports and Documents| 2.1.1 U.S. Government Reports and Documents]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Non-US Government Reports and Documents| 2.1.2 Non-U.S. Government Reports and Documents]]&amp;lt;/li&amp;gt;&lt;br /&gt;
     &amp;lt;/ul&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[Independent Reports | 2.2 Independent Reports]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[Industry Reports | 2.3 Industry Reports]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[Books | 2.4 Books]]&amp;lt;/li&amp;gt;&lt;br /&gt;
  &amp;lt;/ul&amp;gt;&lt;br /&gt;
  &amp;lt;li&amp;gt;&#039;&#039;&#039;[[Threats and Actors | 3. Threats and Actors]]&#039;&#039;&#039;&amp;lt;/li&amp;gt;&lt;br /&gt;
  &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[The Threat and Skeptics | 3.1 The Threat and Skeptics]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[Actors and Incentives | 3.2 Actors and Incentives]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[States | 3.2.1 States]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Groups | 3.2.2 Groups]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Hacktivists | 3.2.3 Hacktivists]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Terrorists | 3.2.4 Terrorists]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;/ul&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[Security Targets | 3.3 Security Targets]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Public Critical Infrastructure | 3.3.1 Public&lt;br /&gt;
Critical Infrastructure]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Government Networks (.gov) | 3.3.1.1 Government&lt;br /&gt;
Networks (.gov)]]&amp;lt;/li&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Military Networks (.mil) | 3.3.1.2 Military&lt;br /&gt;
Networks (.mil)]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;/ul&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Private Critical Infrastructure | 3.3.2 Private&lt;br /&gt;
Critical Infrastructure]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Electricity, Oil and Natural Gas | 3.3.2.1&lt;br /&gt;
Electricity, Oil and Natural Gas]]&amp;lt;/li&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Financial Institutions and Networks | 3.3.2.2&lt;br /&gt;
Financial Institutions and Networks]]&amp;lt;/li&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Transportation | 3.3.2.3 Transportation]]&amp;lt;/li&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Water, Sewer, etc. | 3.3.2.4 Water, Sewer, etc.]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;/ul&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Communications | 3.3.3 Communications]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Telephone | 3.3.3.1 Telephone]]&amp;lt;/li&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Public Data Networks | 3.3.3.2 Public Data&lt;br /&gt;
Networks]]&amp;lt;/li&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Cloud Computing | 3.3.3.3 Cloud Computing]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;/ul&amp;gt;&lt;br /&gt;
    &amp;lt;/ul&amp;gt;&lt;br /&gt;
  &amp;lt;/ul&amp;gt;&lt;br /&gt;
  &amp;lt;li id=&amp;quot;Issues&amp;quot;&amp;gt;&#039;&#039;&#039;[[Issues | 4. Issues]]&#039;&#039;&#039;&amp;lt;/li&amp;gt;&lt;br /&gt;
  &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[Metrics | 4.1 Metrics]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;[[Economics of Cybersecurity | 4.2 Economics of&lt;br /&gt;
Cybersecurity]]&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Risk Management and Investment | 4.2.1 Risk&lt;br /&gt;
Management and Investment]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Incentives | 4.2.2 Incentives]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Insurance | 4.2.3 Insurance]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Behavioral Economics | 4.2.4 Behavioral Economics]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Market Failure | 4.2.5 Market Failure]]&amp;lt;/li&amp;gt;&lt;br /&gt;
     &amp;lt;/ul&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Supply Chain Issues | 4.3 Supply Chain Issues]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Usability/Human Factors | 4.4 Usability/Human&lt;br /&gt;
Factors]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Psychology and Politics | 4.5 Psychology and Politics]]&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Information Sharing/Disclosure | 4.6 Information&lt;br /&gt;
Sharing/Disclosure]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Public-Private Cooperation | 4.7 Public-Private&lt;br /&gt;
Cooperation]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Attribution | 4.8 Attribution]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Identity Management | 4.9 Identity Management]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Privacy | 4.10 Privacy]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Cybercrime | 4.11 Cybercrime]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Cyberwar | 4.12 Cyberwar]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Espionage | 4.13 Espionage]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Government to Government | 4.13.1 Government to&lt;br /&gt;
Government]]&amp;lt;/li&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Industrial | 4.13.2 Industrial]]&amp;lt;/li&amp;gt;&lt;br /&gt;
        &amp;lt;li&amp;gt;[[Media Perceptions | 4.13.3 Media Perceptions]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;/ul&amp;gt;&lt;br /&gt;
    &amp;lt;/ul&amp;gt;&lt;br /&gt;
    &amp;lt;li&amp;gt;&#039;&#039;&#039;[[Approaches | 5. Approaches]]&#039;&#039;&#039;&amp;lt;/li&amp;gt;&lt;br /&gt;
    &amp;lt;ul style=&amp;quot;list-style:none&amp;quot;&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Regulation/Liability | 5.1 Regulation/Liability]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Private Efforts/Organizations | 5.2 Private Efforts/Organizations]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Government Organizations | 5.3 Government&lt;br /&gt;
Organizations]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[International Cooperation | 5.4 International&lt;br /&gt;
Cooperation]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[International Law (including Laws of War) | 5.5&lt;br /&gt;
International Law (including Laws of War)]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Deterrence | 5.6 Deterrence]]&amp;lt;/li&amp;gt;&lt;br /&gt;
      &amp;lt;li&amp;gt;[[Technology | 5.7 Technology]]&amp;lt;li&amp;gt;&lt;br /&gt;
    &amp;lt;/ul&amp;gt;&lt;br /&gt;
  &amp;lt;/ul&amp;gt;&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3153</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3153"/>
		<updated>2010-07-01T14:17:43Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Key Resources */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Comprehensive Index | Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to Use this Wiki&amp;quot;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Our &#039;&#039;&#039;[[Comprehensive Index | Annotated Bibliography]]&#039;&#039;&#039; presents and summarizes all of the resources we&#039;ve collected by key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed&lt;br /&gt;
&#039;&#039;&#039;[[Annotated Bibliography | Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | &amp;quot;Issues-&amp;gt;Cybercrime&amp;quot;]] or [[Financial Institutions and Networks |Security Targets-&amp;gt;Private Critical Infrastructure-&amp;gt;Financial Institutions and Networks]].&lt;br /&gt;
&lt;br /&gt;
If you are interested in a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
Alternately, you can access the readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;Resource Type&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039; and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.  &lt;br /&gt;
&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
A comprehensive &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Comprehensive Index]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
References may also be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3152</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3152"/>
		<updated>2010-07-01T14:17:06Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Introduction */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Comprehensive Index | Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to Use this Wiki&amp;quot;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Our &#039;&#039;&#039;[[Annotated Bibliography | Comprehensive Index]]&#039;&#039;&#039; presents and summarizes all of the resources we&#039;ve collected by key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed&lt;br /&gt;
&#039;&#039;&#039;[[Annotated Bibliography | Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | &amp;quot;Issues-&amp;gt;Cybercrime&amp;quot;]] or [[Financial Institutions and Networks |Security Targets-&amp;gt;Private Critical Infrastructure-&amp;gt;Financial Institutions and Networks]].&lt;br /&gt;
&lt;br /&gt;
If you are interested in a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
Alternately, you can access the readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;Resource Type&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039; and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.  &lt;br /&gt;
&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
A comprehensive &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Comprehensive Index]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
References may also be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3151</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3151"/>
		<updated>2010-07-01T14:16:20Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Annotated Bibliography | Comprehensive Index]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to Use this Wiki&amp;quot;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Our &#039;&#039;&#039;[[Annotated Bibliography | Comprehensive Index]]&#039;&#039;&#039; presents and summarizes all of the resources we&#039;ve collected by key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed&lt;br /&gt;
&#039;&#039;&#039;[[Annotated Bibliography | Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | &amp;quot;Issues-&amp;gt;Cybercrime&amp;quot;]] or [[Financial Institutions and Networks |Security Targets-&amp;gt;Private Critical Infrastructure-&amp;gt;Financial Institutions and Networks]].&lt;br /&gt;
&lt;br /&gt;
If you are interested in a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
Alternately, you can access the readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;Resource Type&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039; and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.  &lt;br /&gt;
&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
A comprehensive &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Comprehensive Index]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
References may also be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3150</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3150"/>
		<updated>2010-07-01T14:16:00Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | hacker]] breaking into a single computer or to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple poorly protected corporate sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Private_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of [[Electricity, Oil and Natural Gas | energy]] and/or [[Communications | communication systems]] or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Kinetic_Attack | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[International Law (including Laws of War) | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, [[Regulation/Liability |law,  legislation]], politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between [[Privacy | privacy]] and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Metrics | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to Use this Wiki&amp;quot;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Our &#039;&#039;&#039;[[Annotated Bibliography | Comprehensive Index]]&#039;&#039;&#039; presents and summarizes all of the resources we&#039;ve collected by key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed&lt;br /&gt;
&#039;&#039;&#039;[[Annotated Bibliography | Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | &amp;quot;Issues-&amp;gt;Cybercrime&amp;quot;]] or [[Financial Institutions and Networks |Security Targets-&amp;gt;Private Critical Infrastructure-&amp;gt;Financial Institutions and Networks]].&lt;br /&gt;
&lt;br /&gt;
If you are interested in a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
Alternately, you can access the readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;Resource Type&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039; and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.  &lt;br /&gt;
&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
A comprehensive &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Comprehensive Index]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
References may also be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Suggested_References_to_Add_to_Wiki&amp;diff=3149</id>
		<title>Suggested References to Add to Wiki</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Suggested_References_to_Add_to_Wiki&amp;diff=3149"/>
		<updated>2010-07-01T14:13:43Z</updated>

		<summary type="html">&lt;p&gt;Caroline: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;Please add links to reference pages for Redmine articles you believe should be added to the cybersecurity wiki here.&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Entries should look just like any other entry on a topic page, i.e., &amp;quot;&amp;lt;lastname&amp;gt;, &amp;lt;firstname&amp;gt; &#039;&#039;(&amp;lt;year&amp;gt;)&#039;&#039; [&amp;lt;Title as a link to the reference page&amp;gt;]&amp;quot;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Aloise, Gene, Barkakati, Nabajyoti, and Wilshusen, Gregory C. (2008) [[Nuclear Security]]&lt;br /&gt;
&lt;br /&gt;
Bauer, Johannes M. and van Eeten, Michel J. G. (2009) [[Cybersecurity]] &lt;br /&gt;
&lt;br /&gt;
Bellovin, Steven M. (2009) [[The Government and Cybersecurity]]&lt;br /&gt;
&lt;br /&gt;
Besunder, Allison A. (2009) [[Best Practices for Data Protection and Privacy]]&lt;br /&gt;
&lt;br /&gt;
Burstein, Aaron J. (2008) [[Amending The ECPA To Enable a Culture of Cybersecurity Research]]&lt;br /&gt;
&lt;br /&gt;
Cetron, Marvin J. and Davies, Owen (2009) [[World War 3.0: Ten Critical Trends for Cybersecurity]]&lt;br /&gt;
&lt;br /&gt;
Cornish, Paul (2009) [[Cyber Security and Politically, Socially and Religiously Motivated Cyber Attacks]]&lt;br /&gt;
&lt;br /&gt;
Cornish, Paul, Hughes, Rex, and Livingstone, David (2009) [[Cyberspace and the National Security of the United Kingdom]]&lt;br /&gt;
&lt;br /&gt;
ENISA (2010) [[Introduction to Country Reports]]&lt;br /&gt;
&lt;br /&gt;
Gable, Kelly A. (2010) [[Cyber-Apocalypse Now]]&lt;br /&gt;
&lt;br /&gt;
GAO (2009) [[Critical Infrastructure Protection]]&lt;br /&gt;
&lt;br /&gt;
GAO (2010) [[Information Security]]&lt;br /&gt;
&lt;br /&gt;
Geer, Daniel E. and Conway, Daniel G. (2010) [[Nothing Ventured, Nothing Gained]]&lt;br /&gt;
&lt;br /&gt;
Intelligence Squared US (IQ2US) Video Debate &#039;&#039;(2010)&#039;&#039; [[The Cyber War Threat Has Been Grossly Exaggerated]]&lt;br /&gt;
&lt;br /&gt;
Kobayashi, Bruce H. (2005) [[An Economic Analysis of the Private and Social Costs of the Provision of Cybersecurity and other Public Security Goods]]&lt;br /&gt;
&lt;br /&gt;
Lan, Tang et al. (2010) [[Global Cyber Deterrence]]&lt;br /&gt;
&lt;br /&gt;
Lewis, James Andrews (2005) [[Cyber Security and Regulation in the United States]]&lt;br /&gt;
&lt;br /&gt;
Madnick, Stuart (2009) [[Experiences and Challenges with Using CERT Data to Analyze International Cyber Security]]&lt;br /&gt;
&lt;br /&gt;
Maughan, Douglas (2010) [[The Need for a National Cybersecurity Research and Development Agenda]]&lt;br /&gt;
&lt;br /&gt;
Nojeim, Gregory T. (2009) [[Cybersecurity: Preventing Terrorist Attacks and Protecting Privacy in Cyberspace]]&lt;br /&gt;
&lt;br /&gt;
Nye, Joseph S. (2010) [[Cyber Power]]&lt;br /&gt;
&lt;br /&gt;
OECD (2009) [[Cybersecurity and Economic Incentives]]&lt;br /&gt;
&lt;br /&gt;
OECD (2009) [[The Market Consequences of Cybersecurity]]&lt;br /&gt;
&lt;br /&gt;
Perkins, Earl (2009) [[Evolving Cybersecurity Issues in the Utility Industry]]&lt;br /&gt;
&lt;br /&gt;
Rollins, John and Wilson, Clay (2007) [[Terrorist Capabilities for Cyberattack]]&lt;br /&gt;
&lt;br /&gt;
Rue, Rachel and Pfleeger, Shari Lawrence (2009) [[Making the Best Use of Cybersecurity Economic Models]]&lt;br /&gt;
&lt;br /&gt;
Santos, Joost R., et. al (2007) [[A Framework for Linking Cybersecurity Metrics to the Modeling of Macroeconomic Interdependencies]]&lt;br /&gt;
&lt;br /&gt;
Schneidewind, Norman (2010) [[Metrics for Mitigating Cybersecurity Threats to Networks]]&lt;br /&gt;
&lt;br /&gt;
Shackelford, Scott J. (2010) [[Estonia Three Years Later]]&lt;br /&gt;
&lt;br /&gt;
Shah, Shashi K. (2004) [[The Evolving Landscape of Maritime Cybersecurity]]&lt;br /&gt;
&lt;br /&gt;
Stohl, Michael (2006) [[Cyber Terrorism: A Clear and Present Danger, the Sum of All Fears, Breaking Point or Patriot Games]]&lt;br /&gt;
&lt;br /&gt;
Theohary, Catherine A. and Rollins, John (2010) [[Cybersecurity: Current Legislation, Executive Branch Initiatives, and Options for Congress]] &lt;br /&gt;
&lt;br /&gt;
van Eeten, Michael and Bauer, Johannes M. (2009) [[Emerging Threats to Internet Security]]&lt;br /&gt;
&lt;br /&gt;
Wilshusen, Gregory C. and Powner, David A. (2009) [[Continued Efforts are Needed to Protect Information Systems from Evolving Threats]]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Keyword_Index_and_Glossary_of_Core_Ideas&amp;diff=3148</id>
		<title>Keyword Index and Glossary of Core Ideas</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Keyword_Index_and_Glossary_of_Core_Ideas&amp;diff=3148"/>
		<updated>2010-07-01T14:10:34Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Air-Gapped Network */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Index and Glossary of Core Ideas==&lt;br /&gt;
&lt;br /&gt;
===Air-Gapped Network===&lt;br /&gt;
Air gapping is a security measure that isolates a secure network from unsecure networks physically, electrically and electromagnetically.  &lt;br /&gt;
&lt;br /&gt;
See also: [[Index_and_Glossary_of_Core_Ideas#Sneakernet | Sneakernet]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Antivirus===&lt;br /&gt;
Software which attempts to identify and delete or isolate [[#Malware |malware]].  Antivirus software may use both a database containing signatures of known threats and heuristics to identify malware.  Usually run as a background service to scan files and email copied to the protected system.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Black Hat===&lt;br /&gt;
A black hat is a computer [[#Hacker | hacker]] who works to harm others (e.g., steal identities, spread computer viruses, install bot software).&lt;br /&gt;
&lt;br /&gt;
See also: [[#White_Hat | White Hat]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Blacklist===&lt;br /&gt;
A list of computers, IP addresses, user names or other identifiers to block from access to a computing resource.&lt;br /&gt;
&lt;br /&gt;
See also: [[#Whitelist | Whitelist]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[The_Impact_of_Incentives_on_Notice_and_Take-down | Moore and Clayton]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Botnet===&lt;br /&gt;
A portmanteau of &amp;quot;robot&amp;quot; and &amp;quot;network.&amp;quot;  Refers to networks of sometimes millions of infected machines that are remotely controlled by malicious actors.  A single infected computer may be referred to as a zombie computer.  The owners of the computer remotely controlled is often unaware of the infection.  The owners of a botnet may use the combined network processing power and bandwidth to send [[#SPAM | SPAM]], install [[#Malware | malware]] and mount [[#DDoS_Attack | DDoS attacks]] or may rent out the botnet to other malicious actors.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Why_Information_Security_is_Hard | Anderson]], [[Security_Engineering | [2]]]&lt;br /&gt;
* [[Security_Economics_and_the_Internal_Market | Anderson et. al.]]&lt;br /&gt;
* [[Emerging_Threats_to_Internet_Security_-_Incentives%2C_Externalities_and_Policy_Implications | Bauer and van Eeten]]&lt;br /&gt;
* [[World_War_3.0:_Ten_Critical_Trends_for_Cybersecurity | Cetron and Davies]]&lt;br /&gt;
* [[Cyber_War | Clarke]]&lt;br /&gt;
* [[An_Inquiry_into_the_Nature_and_Causes_of_the_Wealth_of_Internet_Miscreants | Franklin et. al.]]&lt;br /&gt;
* [[An_Introduction_to_Key_Themes_in_the_Economics_of_Cyber_Security | Gandal]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Cyber_Power | Nye]]&lt;br /&gt;
* [[Estonia_Three_Years_Later | Shackelford]]&lt;br /&gt;
* [[The_Underground_Economy | Thomas and Martin]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===&#039;&#039;Casus Belli&#039;&#039;===&lt;br /&gt;
The justification for going to war.  From the Latin &amp;quot;&#039;&#039;casus&#039;&#039;&amp;quot; meaning &amp;quot;incident&amp;quot; or &amp;quot;event&amp;quot; and &amp;quot;&#039;&#039;belli&#039;&#039;&amp;quot; meaning &amp;quot;of war.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[The_Government_and_Cybersecurity | Bellovin]]&lt;br /&gt;
* [[Cyber_Security_and_Politically%2C_Socially_and_Religiously_Motivated_Cyber_Attacks | Cornish]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Civilian Participation===&lt;br /&gt;
The involvement of non-military persons in warfare.  While civilians have often provided support to the military in kinetic wars, in [[Index_and_Glossary_of_Core_Ideas#Cyber_Warfare | cyber warfare]] civilians are able to remotely participate in direct attacks against opponents.    This raises complicated questions of law when the combatants are not uniformed military personnel. &lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
* [[Amending_The_ECPA_To_Enable_a_Culture_of_Cybersecurity_Research | Burstein]]&lt;br /&gt;
* [[Cyberspace_and_the_National_Security_of_the_United_Kingdom | Cornish et. al.]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[Strategy_for_Homeland_Defense_and_Civil_Support | DoD]]&lt;br /&gt;
* [[Combatant_Status_and_Computer_Network_Attack | Watts]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Combatant Status===&lt;br /&gt;
The legal status of combatants in warfare.  Existing law distinguishes between uniformed military and civilian status.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Does_Information_Security_Attack_Frequency_Increase_With_Vulnerability_Disclosure | Arora et. al.]]&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
* [[Combatant_Status_and_Computer_Network_Attack | Watts]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Computer Emergency Response Team===&lt;br /&gt;
A group of experts brought together to deal with computer security issues.  The Computer Emergency Response Team (CERT) mandate is to develop and promote best management practices and technology applications to “resist attacks on networked systems, to limit damage, and to ensure continuity of critical services.” (Software Engineering Institute 2008).  CERT may be formed by governments to handle security at the national level or by academic institutions or individual corporations.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Does_Information_Security_Attack_Frequency_Increase_With_Vulnerability_Disclosure | Arora et. al.]]&lt;br /&gt;
* [[Securing_Cyberspace_for_the_44th_Presidency | Center for Strategic and International Studies]]&lt;br /&gt;
* [[Experiences_and_Challenges_with_Using_CERT_Data_to_Analyze_International_Cyber_Security | Madnick et. al.]]&lt;br /&gt;
* [[Impact_of_Software_Vulnerability_Announcements_on_the_Market_Value_of_Software_Vendors | Telang and Wattal]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Computer Network Attack===&lt;br /&gt;
Includes actions taken via computer networks to disrupt, deny, degrade, or destroy the information within computers and computer networks and/or the computers/networks themselves. [http://www.fas.org/irp/doddir/dod/jp3_13.pdf  Joint Doctrine for Information Operations JP 3-13 at I-9 (1998)]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Cyber_War | Clarke]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[The_Law_and_Economics_of_Cybersecurity | Grady and Parisi]]&lt;br /&gt;
* [[Cyberspace_and_the_National_Security_of_the_United_Kingdom | Cornish et. al.]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]], [[Strategy_for_Homeland_Defense_and_Civil_Support | [2]]]&lt;br /&gt;
* [[Information_Security | GAO]]&lt;br /&gt;
* [[An_Introduction_to_Key_Themes_in_the_Economics_of_Cyber_Security | Gandal]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[Combatant_Status_and_Computer_Network_Attack | Watts]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Communications Privacy Law===&lt;br /&gt;
Laws which regulate access to electronic communications.  In the United States, the [http://www.usiia.org/legis/ecpa.html Electronic Communications Privacy Act (ECPA]) protects electronic communications while in transit and prohibits the unlawful access and disclosure of communication contents.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Amending_The_ECPA_To_Enable_a_Culture_of_Cybersecurity_Research | Burstein]]&lt;br /&gt;
* [[Cybersecurity%2C_Identity_Theft%2C_and_the_Limits_of_Tort_Liability | Johnson, V.]]&lt;br /&gt;
* [[Cybersecurity:_Preventing_Terrorist_Attacks_and_Protecting_Privacy_in_Cyberspace | Nojeim]]&lt;br /&gt;
* [[Cyber_Power | Nye]]&lt;br /&gt;
* [[A_Model_for_When_Disclosure_Helps_Security | Swire]], [[A_Theory_of_Disclosure_for_Security_and_Competitive_Reasons | [2]]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===COTS Software===&lt;br /&gt;
Commercial Off The Shelf Software.  Software that is prepackaged and sold as a commodity rather than custom written for a specific user/organization or purpose. Examples include operating systems, database management programs, email servers, application servers and office product suites. [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD at 18.]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Credit Card Fraud===&lt;br /&gt;
Theft of goods or services using false or stolen credit card information.&lt;br /&gt;
&lt;br /&gt;
See Also: [[#Shoulder_Surfing | Shoulder Surfing]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Cybersecurity_in_the_Payment_Card_Industry | Epstein and Brown]]&lt;br /&gt;
* [[An_Inquiry_into_the_Nature_and_Causes_of_the_Wealth_of_Internet_Miscreants | Franklin et. al.]]&lt;br /&gt;
* [[An_Economic_Analysis_of_Notification_Requirements_for_Data_Security_Breaches | Lenard and Rubin]], [[Much_Ado_About_Notification | [2]]]&lt;br /&gt;
* [[Examining_the_Impact_of_Website_Take-down_on_Phishing | Moore and Clayton]], [[The_Consequence_of_Non-Cooperation_in_the_Fight_Against_Phishing | [2]]], [[The_Impact_of_Incentives_on_Notice_and_Take-down | [3]]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
* [[Do_Data_Breach_Disclosure_Laws_Reduce_Identity_Theft | Romanosky et. al.]]&lt;br /&gt;
* [[Notification_of_Data_Security_Breaches | Schwartz and Janger]]&lt;br /&gt;
* [[The_Underground_Economy | Thomas and Martin]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[A_Model_for_When_Disclosure_Helps_Security | Swire]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Crimeware===&lt;br /&gt;
Software tools designed to aid criminals in perpetrating online crime.  Refers only to programs not generally considered desirable or usable for ordinary tasks.  Thus, while a criminal may use Internet Explorer in the commission of a [[#Cyber_Crime | cybercrime]], the Internet Explorer application itself would not be considered crimeware.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[2007_Malware_Report  |Computer Economics]]&lt;br /&gt;
* [[Cybersecurity | Bauer and van Eeten]], [[Emerging_Threats_to_Internet_Security_-_Incentives%2C_Externalities_and_Policy_Implications | [2]]]&lt;br /&gt;
* [[Cybersecurity_in_the_Payment_Card_Industry | Epstein and Brown]]&lt;br /&gt;
* [[An_Inquiry_into_the_Nature_and_Causes_of_the_Wealth_of_Internet_Miscreants | Franklin et. al]]&lt;br /&gt;
* [[An_Introduction_to_Key_Themes_in_the_Economics_of_Cyber_Security | Gandal]]&lt;br /&gt;
* [[An_Economic_Analysis_of_the_Private_and_Social_Costs_of_the_Provision_of_Cybersecurity_and_Other_Public_Security_Goods | Kobayashi]]&lt;br /&gt;
* [[Economics_of_Malware | van Eeten and Bauer]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Cyber Crime===&lt;br /&gt;
In its broadest definition, cybercrime includes all crime perpetrated with or involving a computer.  Symantec defines it as any crime that is committed using a computer or network, or hardware device. The computer or device may be the agent of the crime, the facilitator of the crime, or the target of the crime. The crime may take place on the computer alone or in addition to other locations. [http://www.symantec.com/norton/cybercrime/definition.jsp Symantec]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Security_Economics_and_the_Internal_Market | Anderson et. al.]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[Cybersecurity_in_the_Payment_Card_Industry | Epstein and Brown]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[The_Impact_of_Incentives_on_Notice_and_Take-down | Moore and Clayton]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Cyber Security as an Externality===&lt;br /&gt;
Economists define externalities as instances where an individual or firm’s actions have &lt;br /&gt;
economic consequences for others for which there is no compensation. One important &lt;br /&gt;
distinction is between positive and negative externalities. Instances of the latter are most &lt;br /&gt;
commonly discussed, such as the environmental pollution caused by a plant, which may &lt;br /&gt;
have impacts on the value of neighboring homes. Important examples of positive &lt;br /&gt;
externalities are so common in communications networks that there is a class of &amp;quot;network &lt;br /&gt;
externalities. For instance, the simple act of installing telephone service to one additional &lt;br /&gt;
customer creates positive externalities on everyone on the telephone network because &lt;br /&gt;
they can now each reach one additional person.&lt;br /&gt;
Several attributes of computer security suggest that it is an externality. Most importantly, &lt;br /&gt;
the lack of security on one machine can cause adverse effects on another. The most &lt;br /&gt;
obvious example of this is from electronic commerce, where credit card numbers stolen &lt;br /&gt;
from machines lacking security are used to commit fraud at other sites.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Pricing_Security | Camp and Wolfram]], [[Economics_of_Information_Security | 2]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[An_Introduction_to_Key_Themes_in_the_Economics_of_Cyber_Security | Gandal]]&lt;br /&gt;
* [[The_Law_and_Economics_of_Cybersecurity | Grady and Parisi]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Is_Cybersecurity_a_Public_Good | Powell]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[Economics_of_Malware | van Eeten and Bauer]]&lt;br /&gt;
* [[System_Reliability_and_Free_Riding | Varian]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Cyber Security as a Public Good===&lt;br /&gt;
In economics, a public good is a good that is non-rivalrous and non-excludable. Non-rivalry means that consumption of the good by one individual does not reduce availability of the good for consumption by others; and non-excludability that no one can be effectively excluded from using the good.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Economics_of_Information_Security | Camp and Wolfram]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[An_Economic_Analysis_of_the_Private_and_Social_Costs_of_the_Provision_of_Cybersecurity_and_Other_Public_Security_Goods | Kobayashi]]&lt;br /&gt;
* [[Is_Cybersecurity_a_Public_Good | Powell]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[System_Reliability_and_Free_Riding | Varian]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Cyber Terrorism===&lt;br /&gt;
A criminal act perpetrated by the use of computers and telecommunications capabilities, resulting in violence, destruction and/or disruption of services to create fear by causing confusion and uncertainty within a given population, with the goal of influencing a government or population to conform to a particular political, social, or ideological agenda. [http://judiciary.senate.gov/hearings/testimony.cfm?id=1054&amp;amp;wit_id=2995 FBI]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[World_War_3.0:_Ten_Critical_Trends_for_Cybersecurity | Cetron and Davies]]&lt;br /&gt;
* [[Cyber_War | Clarke]]&lt;br /&gt;
* [[Critical_Infrastructure_Threats_and_Terrorism | DCSINT]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[Strategy_for_Homeland_Defense_and_Civil_Support | DoD]]&lt;br /&gt;
* [[Cyber-Apocalypse_Now_-_Securing_the_Internet_Against_Cyberterrorism_and_Using_Universal_Jurisdiction_as_a_Deterrent | Gable]]&lt;br /&gt;
* [[The_Law_and_Economics_of_Cybersecurity | Grady and Parisi]]&lt;br /&gt;
* [[Terrorist_Capabilities_for_Cyberattack:_Overview_and_Policy_Issues | Rollins and Wilson]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[The_Evolving_Landscape_of_Maritime_Cybersecurity | Shah]]&lt;br /&gt;
* [[Cyber_Terrorism | Stohl]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Cyber Warfare===&lt;br /&gt;
Actions by a nation-state to penetrate another nation’s computers or networks for the purposes of causing damage or disruption. [[Cyber_War | Clarke]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Cyber_War | Clarke]]&lt;br /&gt;
* [[Cyber_Security_and_Politically%2C_Socially_and_Religiously_Motivated_Cyber_Attacks#Full_Citation | Cornish]]&lt;br /&gt;
* [[Critical_Infrastructure_Threats_and_Terrorism | DCSINT]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Global_Cyber_Deterrence | Lan]]&lt;br /&gt;
* [[Estonia_Three_Years_Later | Shackelford]]&lt;br /&gt;
* [[Combatant_Status_and_Computer_Network_Attack | Watts]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Data Mining===&lt;br /&gt;
The process of extracting hidden information and correlations from one or more databases or collections of data that would not normally be revealed by a simple database query.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Best_Practices_for_Data_Protection_and_Privacy#Synopsis | Besunder]]&lt;br /&gt;
* [[The_Law_and_Economics_of_Cybersecurity | Grady and Parisi]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Department of Homeland Security===&lt;br /&gt;
Cabinet level department of the United States assigned, &#039;&#039;inter alia&#039;&#039;, the task of protecting against terrorist threats and helping state and local authorities prepare for, respond to and recover from domestic disasters.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Cyber_War | Clarke]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]], [[Strategy_for_Homeland_Defense_and_Civil_Support | [2]]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[Information_Security | GAO]]&lt;br /&gt;
* [[Hardening_The_Internet | National Infrastructure Advisory Council]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Digital Pearl Harbor===&lt;br /&gt;
A cyberwarfare attack similar in scale and surprise to the 1941 attack on Pearl Harbor.  The expression is often invoked by those who argue that a cyber-based attack is either imminent or inevitable and that by not being properly prepared, the United States will suffer significant and unnecessary losses.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[World_War_3.0:_Ten_Critical_Trends_for_Cybersecurity | Cetron and Davies]]&lt;br /&gt;
* [[Cyber_Terrorism | Stohl]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===DDoS Attack===&lt;br /&gt;
The disabling of a targeted website or Internet connection by flooding it with such high levels of Internet traffic that it can no longer respond to normal connection requests.  Often mounted by directing an army of zombie computers (see [[#Botnet | botnet]]) to connect to the targeted site simultaneously.  The targeted site may crash while trying to respond to an overwhelming number of connections requests or it may be disabled because all available bandwidth and/or computing resources are tied up responding to the attack requests. &lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Why_Information_Security_is_Hard | Anderson]], [[Security_Engineering | [2]]]&lt;br /&gt;
* [[An_Inquiry_into_the_Nature_and_Causes_of_the_Wealth_of_Internet_Miscreants | Franklin. et. al]]&lt;br /&gt;
* [[Critical_Infrastructure_Threats_and_Terrorism | DCSINT]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Is_Cybersecurity_a_Public_Good | Powell]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Disclosure Policy===&lt;br /&gt;
A policy that governs the disclosure to clients and other stakeholder by a provider of a computer program or system of defects discovered in those products. &lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Does_Information_Security_Attack_Frequency_Increase_With_Vulnerability_Disclosure | Arora et. al.]]&lt;br /&gt;
* [[Overcoming_Impediments_to_Information_Sharing | Aviram and Tor]]&lt;br /&gt;
* [[The_Price_of_Restricting_Vulnerability_Publications | Granick]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[An_Economic_Analysis_of_Notification_Requirements_for_Data_Security_Breaches | Lenard and Rubin]], [[Much_Ado_About_Notification | [2]]]&lt;br /&gt;
* [[Examining_the_Impact_of_Website_Take-down_on_Phishing | Moore and Clayton]], [[The_Consequence_of_Non-Cooperation_in_the_Fight_Against_Phishing | [2]]], [[The_Impact_of_Incentives_on_Notice_and_Take-down | [3]]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
* [[Do_Data_Breach_Disclosure_Laws_Reduce_Identity_Theft | Romanosky et. al.]]&lt;br /&gt;
* [[Notification_of_Data_Security_Breaches | Schwartz and Janger]]&lt;br /&gt;
* [[A_Model_for_When_Disclosure_Helps_Security | Swire]], [[A_Theory_of_Disclosure_for_Security_and_Competitive_Reasons | [2]]]&lt;br /&gt;
* [[Impact_of_Software_Vulnerability_Announcements_on_the_Market_Value_of_Software_Vendors | Telang and Wattal]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Distributed Denial of Service (DDoS)===&lt;br /&gt;
See: [[#DDoS_Attack | DDoS Attack]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Dumpster Diving===&lt;br /&gt;
A method of obtaining  proprietary, confidential or useful information by searching through trash discarded by a target.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Einstein===&lt;br /&gt;
The operational name of the National Cybersecurity Protection System (NCPS).  Cas created in 2003 by the United States Computer Emergency Readiness Team (US-CERT)14 in order to aid in its ability to help reduce and prevent computer network vulnerabilities across the federal government. The initial version of Einstein provided an automated process for collecting, correlating, and analyzing agencies’ computer network traffic information from sensors installed at their Internet connections. The Einstein sensors collected &lt;br /&gt;
network flow records15 at participating agencies, which were then analyzed by US-CERT to detect certain types of malicious activity.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Information_Security | GAO]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===E.U. Cybersecurity===&lt;br /&gt;
Discussions relating to cybersecurity of the European Union and of European Union states.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Economics_and_the_Internal_Market | Anderson et. al.]]&lt;br /&gt;
* [[Securing_Cyberspace_for_the_44th_Presidency | Center for Strategic and International Studies]]&lt;br /&gt;
* [[Introduction_to_Country_Reports | ENISA]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Geneva Conventions===&lt;br /&gt;
Four treaties and three additional protocols that regulates the conduct of hostilities between states and set the standards for humanitarian treatment of the victims of war.&lt;br /&gt;
&lt;br /&gt;
See also: [[#Laws_of_War | Laws of War]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Combatant_Status_and_Computer_Network_Attack | Watts]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Generativity===&lt;br /&gt;
Generativity is a system’s capacity to produce unanticipated change through unﬁltered contributions from broad and varied audiences. &lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
&lt;br /&gt;
*[[The_Future_of_the_Internet_and_How_To_Stop_It | Zittrain]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Hacker===&lt;br /&gt;
Advanced computer users who spend a lot of time on or with computers and work hard to find vulnerabilities in IT systems. [[Critical_Infrastructure_Threats_and_Terrorism | DCSINT]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
* [[Cybersecurity_in_the_Payment_Card_Industry | Epstein and Brown]]&lt;br /&gt;
* [[Critical_Infrastructure_Threats_and_Terrorism | DCSINT]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Cybersecurity%2C_Identity_Theft%2C_and_the_Limits_of_Tort_Liability | Johnson, V.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[The_Underground_Economy | Thomas and Martin]]&lt;br /&gt;
* [[A_Model_for_When_Disclosure_Helps_Security | Swire]], [[A_Theory_of_Disclosure_for_Security_and_Competitive_Reasons | [2]]]&lt;br /&gt;
* [[Impact_of_Software_Vulnerability_Announcements_on_the_Market_Value_of_Software_Vendors | Telang and Wattal]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Hacktivism===&lt;br /&gt;
The nonviolent use of illegal or legally ambiguous digital tools in pursuit of political ends. These tools include web site defacements, redirects, denial-of-service attacks, information theft, web site parodies, virtual sit-ins, virtual sabotage, and software development.  [http://www.alexandrasamuel.com/dissertation/index.html Samuel, A.]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[World_War_3.0:_Ten_Critical_Trends_for_Cybersecurity | Cetron and Davies]]&lt;br /&gt;
* [[Cyber_Terrorism | Stohl]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Hacktivist===&lt;br /&gt;
A portmanteau of [[#Hacker | &amp;quot;hacker&amp;quot;]] and &amp;quot;activist.&amp;quot; Individuals that have a political motive for their activities, and identify that motivation by their actions, such as defacing opponents’ websites with counter-information or disinformation.&lt;br /&gt;
&lt;br /&gt;
See also: [[#Hacktivism | Hacktivism]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Critical_Infrastructure_Threats_and_Terrorism | DCSINT]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Honeypot===&lt;br /&gt;
A computer, network or other information technology resource set as a trap to attract attacks.  Honeypots may be used to collect metrics (how long does it take for an unprotected system to be breached), to test defenses, to examine methods of attack or to catch attackers.  A honeypot system may also be used to collect [[#SPAM | SPAM]] so it can be added to a [[#Blacklist | blacklist]].&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Does_Information_Security_Attack_Frequency_Increase_With_Vulnerability_Disclosure | Arora et. al.]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Identity Fraud/Theft===&lt;br /&gt;
The exploitation by malevolent third parties of unwarranted access to clients&#039; or consumers&#039; identities.  Often the result of lax data security or privacy measures.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Economics_of_Information_Security | Camp and Wolfram]]&lt;br /&gt;
* [[2007_Malware_Report | Computer Economics]]&lt;br /&gt;
* [[Cybersecurity%2C_Identity_Theft%2C_and_the_Limits_of_Tort_Liability | Johnson, V.]]&lt;br /&gt;
* [[An_Economic_Analysis_of_Notification_Requirements_for_Data_Security_Breaches | Lenard and Rubin]], [[Much_Ado_About_Notification | [2]]]&lt;br /&gt;
* [[The_Impact_of_Incentives_on_Notice_and_Take-down | Moore and Clayton]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
* [[The_Underground_Economy | Thomas and Martin]]&lt;br /&gt;
* [[Do_Data_Breach_Disclosure_Laws_Reduce_Identity_Theft | Romanosky et. al.]]&lt;br /&gt;
* [[Notification_of_Data_Security_Breaches | Schwartz and Janger]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Information Asymmetries===&lt;br /&gt;
Information asymmetry deals with the study of decisions in transactions where one party has more or better information than the other. This creates an imbalance of power in transactions which can sometimes cause the transactions to go awry.&lt;br /&gt;
&lt;br /&gt;
The software market suffers from the same information asymmetry. Vendors may make claims about the security of their products, but buyers have no reason to trust them. In many cases, even the vendor does not know how secure its software is. So buyers have no reason to pay more for protection, and vendors are disinclined to invest in it.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[The_Economics_of_Information_Security | Anderson and Moore]]&lt;br /&gt;
* [[Security_Economics_and_the_Internal_Market | Anderson et. al.]]&lt;br /&gt;
* [[Overcoming_Impediments_to_Information_Sharing | Aviram and Tor]]&lt;br /&gt;
* [[Economics_of_Information_Security | Camp and Wolfram]]&lt;br /&gt;
* [[Cyber_War | Clarke]]&lt;br /&gt;
* [[The_Price_of_Restricting_Vulnerability_Publications | Granick]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Is_Cybersecurity_a_Public_Good | Powell]]&lt;br /&gt;
* [[System_Reliability_and_Free_Riding | Varian]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Intelligence Infrastructure/Information Infrastructure===&lt;br /&gt;
The network of computers and communication lines underlying critical services that American society has come to depend on: financial systems, the power grid, transportation, emergency services, and government programs. Information infrastructure includes the Internet, telecommunications networks, “embedded” systems (the built-in microprocessors that control machines from microwaves to missiles), and “dedicated” devices like individual personal computers. [http://www.cfr.org/publication/10212/targets_for_terrorism.html Council on Foreign Relations]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Nuclear_Security | Aloise]]&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
* [[Law_and_War_in_the_Virtual_Era | Beard]]&lt;br /&gt;
* [[Securing_Cyberspace_for_the_44th_Presidency | Center for Strategic and International Studies]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Cyber_Power | Nye]]&lt;br /&gt;
* [[Evolving_Cybersecurity_Issues_in_the_Utility_Industry | Perkins]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Interdependencies===&lt;br /&gt;
The inter-connections between supposedly independent but often interdependent systems.&lt;br /&gt;
&lt;br /&gt;
See also: [[#SCADA_Systems | SCADA Systems]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Overcoming_Impediments_to_Information_Sharing | Aviram and Tor]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[Cybersecurity_and_Economic_Incentives | OECD]]&lt;br /&gt;
* [[Evolving_Cybersecurity_Issues_in_the_Utility_Industry | Perkins]]&lt;br /&gt;
* [[A_Framework_for_Linking_Cybersecurity_Metrics_to_the_Modeling_of_Macroeconomic_Interdependencies | Santos et. al.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[Economics_of_Malware | van Eeten and Bauer]]&lt;br /&gt;
* [[System_Reliability_and_Free_Riding | Varian]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===International Humanitarian Law===&lt;br /&gt;
That part of international law which seek, for humanitarian reasons, to limit the effects of armed conflict. It protects persons who are not or are no longer participating in the hostilities and restricts the means and methods of warfare. International humanitarian law is also known as the law of war or the law of armed conflict.  International law is the body of rules governing relations between States.  It is contained in agreements between States (treaties or conventions), in customary rules, which consist of State practise considered by them as as legally binding, and in general principles.  [http://www.icrc.org/web/eng/siteeng0.nsf/html/humanitarian-law-factsheet ICRC]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
* [[Law_and_War_in_the_Virtual_Era | Beard]]&lt;br /&gt;
* [[Combatant_Status_and_Computer_Network_Attack | Watts]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Internet Relay Chat (IRC)===&lt;br /&gt;
A method of real-time Internet communication often used by criminals to buy and sell purloined information such as credit card numbers and personal identity information.  IRC chatrooms may be open or private.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[The_Underground_Economy | Thomas and Martin]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Internet Service Providers===&lt;br /&gt;
A company that offers access to the Internet.  Internet Service Providers may also provide add-on services such as web hosting, electronic mail, virus scanning, SPAM filtering, etc.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[The_Law_and_Economics_of_Cybersecurity | Grady and Parisi]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[The_Market_Consequences_of_Cybersecurity | OECD]]&lt;br /&gt;
* [[Economics_of_Malware | van Eeten and Bauer]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Keylogger===&lt;br /&gt;
Software or hardware that monitors and logs the keystrokes a user types into a computer.  The keylogger may store the key sequences locally for later retrieval or send them to a remote location.  A hardware keylogger can only be detected by physically inspecting the computer for unusual hardware.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[2007_Malware_Report | Computer Economics]]&lt;br /&gt;
* [[Critical_Infrastructure_Threats_and_Terrorism | DCSINT]]&lt;br /&gt;
* [[The_Underground_Economy | Thomas and Martin]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== Kinetic Attack===&lt;br /&gt;
Traditional mode of warfare in which arms are used to kill opponents and/or destroy an opponent&#039;s infrastructure.  Usually used to distinguish a cyber attack in which destruction of the opponent&#039;s resources is accomplished through targeted information system attacks without resorting to bullets, bombs or explosives.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Lawfare===&lt;br /&gt;
The use of international law to damage an opponent in a war without use of arms.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Law_and_War_in_the_Virtual_Era | Beard]]&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Laws of War===&lt;br /&gt;
The body of law that define the legality of using armed force to resolve a conflict (&#039;&#039;jus ad bellum&#039;&#039;) and the laws that define the legality of the actual hostilities and related activities (&#039;&#039;jus in bello&#039;&#039;).&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
* [[Law_and_War_in_the_Virtual_Era | Beard]]&lt;br /&gt;
* [[Cyber-Apocalypse_Now | Gable]]&lt;br /&gt;
* [[Cyber_Power | Nye]]&lt;br /&gt;
* [[Combatant_Status_and_Computer_Network_Attack | Watts]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Malware===&lt;br /&gt;
A variety of computer software designed to infiltrate a user&#039;s computer specifically for malicious purposes.  Includes, &#039;&#039;inter alia&#039;&#039;, computer virus software, botnet software, computer worms, spyware, trojan horses, crimeware and rootkits.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Critical_Infrastructure_Threats_and_Terrorism | DCSINT]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[2007_Malware_Report | Computer Economics]]&lt;br /&gt;
* [[Cybersecurity_in_the_Payment_Card_Industry | Epstein and Brown]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[The_Underground_Economy | Thomas and Martin]]&lt;br /&gt;
* [[Economics_of_Malware | van Eeten and Bauer]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===National Cybersecurity Strategy (U.S.)===&lt;br /&gt;
A comprehensive policy to secure America’s digital infrastructure as part of the Administrative Branch&#039;s [http://www.whitehouse.gov/cybersecurity/comprehensive-national-cybersecurity-initiative Comprehensive National Cybersecurity Initiative].  The goals of the policy are: to establish a front line of defense against current immediate threats; to defend against threats by enhancing U.S. counterintelligence capabilities and; to strengthen the future cybersecurity environment by expanding cyber education and redirecting research and development efforts to define and develop strategies to deter hostile or malicious activity in cyberspace.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Cyber_Security_and_Regulation_in_the_United_States | Lewis]]&lt;br /&gt;
* [[Cybersecurity:_Current_Legislation%2C_Executive_Branch_Initiatives%2C_and_Options_for_Congress | Theohary and Rollins]]&lt;br /&gt;
* [[Securing_Cyberspace_for_the_44th_Presidency | Center for Strategic and International Studies]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===National Security===&lt;br /&gt;
Broadly refers to the requirement to maintain the survival of the nation-state through the use of economic, military and political power and the exercise of diplomacy. [http://en.wikipedia.org/wiki/National_security Wikipedia]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Nuclear_Security | Aloise]]&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
* [[Cyberspace_and_the_National_Security_of_the_United_Kingdom | Cornish et. al.]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]], [[Strategy_for_Homeland_Defense_and_Civil_Support | [2]]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[Terrorist_Capabilities_for_Cyberattack:_Overview_and_Policy_Issues | Rollins and Wilson]]&lt;br /&gt;
* [[Cybersecurity:_Current_Legislation%2C_Executive_Branch_Initiatives%2C_and_Options_for_Congress | Theohary and Rollins]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Notice and Take-down===&lt;br /&gt;
Most commonly used to remove infringing web material under copyright law, a notice and take-down regime is a procedure by which an infringing web site is removed from a service provider&#039;s (ISP) network, or access to an allegedly infringing website, disabled. Websites violating copyright are subject to notice and take-down, as are phishing websites.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[The_Impact_of_Incentives_on_Notice_and_Take-down | Moore and Clayton]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Organized Crime===&lt;br /&gt;
Groups having some manner of a formalized structure and whose primary objective is to obtain money through illegal activities. Such groups maintain their position through the use of actual or threatened violence, corrupt public officials, graft, or extortion, and generally have a significant impact on the people in their locales, region, or the country as a whole.  [http://www.fbi.gov/hq/cid/orgcrime/glossary.htm FBI]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Security_Economics_and_the_Internal_Market | Anderson et. al]]&lt;br /&gt;
* [[Cyberspace_and_the_National_Security_of_the_United_Kingdom | Cornish et. al.]]&lt;br /&gt;
* [[Cybersecurity_in_the_Payment_Card_Industry | Epstein and Brown]]&lt;br /&gt;
* [[An_Inquiry_into_the_Nature_and_Causes_of_the_Wealth_of_Internet_Miscreants | Franklin et. al]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Outreach and Collaboration===&lt;br /&gt;
Working across government and with the private sector to share information on threats and other data, and to develop shared approaches to securing cyberspace. [http://www.fas.org/sgp/crs/natsec/R40836.pdf CRS Report for Congress, at 6 (2009).]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Overcoming_Impediments_to_Information_Sharing | Aviram and Tor]]&lt;br /&gt;
* [[Pricing_Security | Camp and Wolfram]]&lt;br /&gt;
* [[Securing_Cyberspace_for_the_44th_Presidency | Center for Strategic and International Studies]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]], [[Strategy_for_Homeland_Defense_and_Civil_Support | [2]]]&lt;br /&gt;
* [[The_National_Strategy_for_the_Physical_Protection_of_Critical_Infrastructures_and_Key_Assets | DHS]]&lt;br /&gt;
* [[Introduction_to_Country_Reports | ENISA]]&lt;br /&gt;
* [[The_Price_of_Restricting_Vulnerability_Publications | Granick]]&lt;br /&gt;
*[[The_Law_and_Economics_of_Cybersecurity | Grady and Parisi]]&lt;br /&gt;
* [[An_Economic_Analysis_of_the_Private_and_Social_Costs_of_the_Provision_of_Cybersecurity_and_other_Public_Security_Goods | Kobayashi]]&lt;br /&gt;
* [[Experiences_and_Challenges_with_Using_CERT_Data_to_Analyze_International_Cyber_Security | Madnick et. al.]]&lt;br /&gt;
* [[The_Consequence_of_Non-Cooperation_in_the_Fight_Against_Phishing | Moore and Clayton]]&lt;br /&gt;
* [[Cybersecurity:_Current_Legislation%2C_Executive_Branch_Initiatives%2C_and_Options_for_Congress | Theohary and Rollins]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Password Weakness===&lt;br /&gt;
Security threats caused by the use of easily guessable passwords which protect vital stores of confidential information stored online.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Cybersecurity%2C_Identity_Theft%2C_and_the_Limits_of_Tort_Liability | Johnson, V.]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Patching===&lt;br /&gt;
Patching refers to the installation of a piece of software designed to fix problems  with, or update a computer program or its supporting data. This includes fixing security vulnerabilities and other bugs, and improving the usability  or performance. Though meant to fix problems, poorly designed patches can sometimes introduce new problems. [http://en.wikipedia.org/wiki/Patch_%28computing%29 Wikipedia]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Does_Information_Security_Attack_Frequency_Increase_With_Vulnerability_Disclosure | Arora et. al.]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Phishing===&lt;br /&gt;
The criminally fraudulent process of attempting to acquire sensitive information such as usernames, passwords and credit card details by masquerading as a trustworthy entity in an electronic communication.&lt;br /&gt;
&lt;br /&gt;
References: &lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Security_Economics_and_the_Internal_Market | Anderson et. al.]]&lt;br /&gt;
* [[2007_Malware_Report | Computer Economics]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Examining_the_Impact_of_Website_Take-down_on_Phishing | Moore and Clayton]], [[The_Consequence_of_Non-Cooperation_in_the_Fight_Against_Phishing | [2]]], [[The_Impact_of_Incentives_on_Notice_and_Take-down | [3]]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Privacy Law===&lt;br /&gt;
Laws which regulate the protection of confidential personal information stored in private records or disclosed to a professional.  Also includes laws which regulate the gathering of electronic data in which personal information is accumulated or misappropriated.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Best_Practices_for_Data_Protection_and_Privacy | Besunder]]&lt;br /&gt;
* [[Securing_Cyberspace_for_the_44th_Presidency | Center for Strategic and International Studies]]&lt;br /&gt;
* [[Strategy_for_Homeland_Defense_and_Civil_Support | DoD]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Risk Modeling===&lt;br /&gt;
The creation of a model to estimate risk exposure, policy option efficacy and cost-benefit analysis of a particular threat and solution. See [http://cisac.stanford.edu/publications/how_much_is_enough__a_riskmanagement_approach_to_computer_security/ Soo Hoo, Kevin J.]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Nothing_Ventured%2C_Nothing_Gained | Geer and Conway]]&lt;br /&gt;
* [[An_Economic_Analysis_of_the_Private_and_Social_Costs_of_the_Provision_of_Cybersecurity_and_other_Public_Security_Goods | Kobayashi]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Making_the_Best_Use_of_Cybersecurity_Economic_Models | Rue and Pfleeger]]&lt;br /&gt;
* [[A_Framework_for_Linking_Cybersecurity_Metrics_to_the_Modeling_of_Macroeconomic_Interdependencies | Santos et. al.]]&lt;br /&gt;
* [[Metrics_for_Mitigating_Cybersecurity_Threats_to_Networks | Schneidewind]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Research &amp;amp; Development===&lt;br /&gt;
Research and development (R&amp;amp;D) addressing cyber security and information infrastructure protection.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Pricing_Security | Camp and Wolfram]]&lt;br /&gt;
* [[Toward_a_Safer_and_More_Secure_Cyberspace | Commission on Improving Cybersecurity Research in the U. S.]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Research_Agenda_for_the_Banking_and_Finance_Sector | Financial Services Sector Coordinating Council for Critical Infrastructure Protection]]&lt;br /&gt;
* [[Nothing_Ventured%2C_Nothing_Gained | Geer and Conway]]&lt;br /&gt;
* [[Hard_Problem_List | INFOSEC Research Council]]&lt;br /&gt;
* [[Cyber_Security_Research_and_Development_Agenda | Institute for Information Infrastructure Protection]]&lt;br /&gt;
* [[The_Need_for_a_National_Cybersecurity_Research_and_Development_Agenda | Maughan]]&lt;br /&gt;
* [[Hardening_The_Internet | National Infrastructure Advisory Council]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===SCADA Systems===&lt;br /&gt;
SCADA stands for &amp;quot;supervisory control and data acquisition&amp;quot; and in the cybersecurity context usually refers to industrial control systems that control infrastructure such as electrical power transmission and distribution, water treatment and distribution, wastewater collection and treatment, oil and gas pipelines and large communication systems.  The focus is on whether as these systems are connected to the public Internet they become vulnerable to a remote attack.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Cyber_Power | Nye]]&lt;br /&gt;
* [[A_Framework_for_Linking_Cybersecurity_Metrics_to_the_Modeling_of_Macroeconomic_Interdependencies | Santos et. al.]]&lt;br /&gt;
* [[Metrics_for_Mitigating_Cybersecurity_Threats_to_Networks | Schneidewind]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Scareware===&lt;br /&gt;
Software or web site that purports to be security software reporting a threat against a user&#039;s computer to convince the user to purchase unneeded software or install malware.&lt;br /&gt;
&lt;br /&gt;
*[[2007_Malware_Report | Computer Economics]]&lt;br /&gt;
*[[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Script Kiddie===&lt;br /&gt;
A derogatory term for a [[#Black_Hat | Black Hat]] who uses canned tools and programs written by more skillful [[#Hacker | hackers]] to commit cyber crime without understanding how they work.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Security Trade-Offs===&lt;br /&gt;
There is no single correct level of security; how much security you have depends on what you’re willing to give up in order to get it. This trade-off is, by its very nature, subjective—secu- rity decisions are based on personal judgments. Different people have different senses of what constitutes a threat, or what level of risk is acceptable. What’s more, between different commu- nities, or organizations, or even entire societies, there is no agreed-upon way in which to define threats or evaluate risks, and the modern technological and media-filled world makes these evaluations even harder. [http://www.scribd.com/doc/12185921/beyond-fear-thinking-sensibly-about-security-in-an-uncertain-world-bruce-schneier-copernicus-books-2003 Bruce Schneier]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Shoulder Surfing===&lt;br /&gt;
The process of obtaining passwords or other sensitive information by covertly watching an authorized user enter information into a computer system.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Sneakernet===&lt;br /&gt;
Describes the transfer of data between computers or networks that are not physically, electrically or electromagnetically connected requiring information to be shared by physically transporting media contain the shared information from one computer to another.  Initially described systems lacking the technology to network together, now usually refers to systems deliberately isolated for security reasons.&lt;br /&gt;
&lt;br /&gt;
See also: [[#Air-Gapped_Network | Air-Gapped Network]]&lt;br /&gt;
&lt;br /&gt;
===Social Engineering===&lt;br /&gt;
Conning a human into supplying passwords, computer access or other sensitive information by pretending to be a person with rights to the information or who the target believes they must surrender the information to.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Emerging_Threats_to_Internet_Security_-_Incentives%2C_Externalities_and_Policy_Implications | Bauer and van Eeten]]&lt;br /&gt;
* [[Cyber_Power | Nye]]&lt;br /&gt;
* [[The_Market_Consequences_of_Cybersecurity:_Defining_Externalities_and_Ways_to_Address_Them | OECD]], [[Cybersecurity_and_Economic_Incentives | [2]]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Social Network===&lt;br /&gt;
A software application or website that allows a large group of users to interact with each other, often allowing the creation of online portals or identities to share with specific people or the online world at large.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Software Vulnerability===&lt;br /&gt;
&lt;br /&gt;
A software vulnerablilty refers to the existence of a flaw -- or &amp;quot;bug&amp;quot; -- in software that may allow a third party or program to obtain unauthorized access to the flaw and exploit it. [http://www.spi.dod.mil/tenets.htm U.S. Air Force Software Protection Initiative]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Does Information Security Attack Frequency Increase With Vulnerability Disclosure | Arora et. al.]]&lt;br /&gt;
* [[Mission Impact of Foreign Influence on DoD Software | DoD]]&lt;br /&gt;
* [[The Price of Restricting Vulnerability Publications | Granick]]&lt;br /&gt;
* [[A_Model_for_When_Disclosure_Helps_Security | Swire]], [[A_Theory_of_Disclosure_for_Security_and_Competitive_Reasons | [2]]]&lt;br /&gt;
* [[Impact_of_Software_Vulnerability_Announcements_on_the_Market_Value_of_Software_Vendors | Telang and Wattal]]&lt;br /&gt;
* [[Economics_of_Malware | van Eeten and Bauer]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===SPAM===&lt;br /&gt;
Unwanted or junk email usually sent indiscriminately in bulk selling illegal or near illegal goods or services.  Even with low response rates and heavy filtering, SPAM can stil be economically viable because of the extremely low costs in sending even huge quantities of electronic messages.  Commonly believed to be named after the [http://www.youtube.com/watch?v=anwy2MPT5RE Monty Python skit] where the breakfast meat Spam overwhelms all other food choices.&lt;br /&gt;
&lt;br /&gt;
References: &lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[The_Impact_of_Incentives_on_Notice_and_Take-down | Moore and Clayton]]&lt;br /&gt;
* [[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
* [[The_Underground_Economy | Thomas and Martin]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Sponsored Attacks===&lt;br /&gt;
[[#Computer_Network_Attack | Computer network attacks]] commissioned by, supported by or carried out by a state or government.&lt;br /&gt;
&lt;br /&gt;
Reverences:&lt;br /&gt;
* [[The_Government_and_Cybersecurity | Bellovin]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===State Affiliation===&lt;br /&gt;
Under the control or command of a recognized state or government.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Cyber_Security_and_Politically%2C_Socially_and_Religiously_Motivated_Cyber_Attacks | Cornish]]&lt;br /&gt;
* [[Cyberspace_and_the_National_Security_of_the_United_Kingdom | Cornish et. al.]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Cyber-Apocalypse_Now_-_Securing_the_Internet_Against_Cyberterrorism_and_Using_Universal_Jurisdiction_as_a_Deterrent | Gable]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Combatant_Status_and_Computer_Network_Attack | Watts]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Tragedy of Commons===&lt;br /&gt;
A situation, first described in an influential article written by ecologist Garrett Hardin for the journal Science, in 1968, in which multiple individuals, acting independently, and solely and rationally consulting their own self-interest, will ultimately deplete a shared limited resource even when it is clear that it is not in anyone&#039;s long-term interest for this to happen. The term can be applied to any issue related to the management of a shared resource, from energy to the public domain, to cybersecurity.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Why_Information_Security_is_Hard | Anderson]]&lt;br /&gt;
* [[Economics_of_Information_Security | Camp and Wolfram]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Is_Cybersecurity_a_Public_Good | Powell]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Transparency===&lt;br /&gt;
A set of policies, practices and procedures that allow citizens to have accessibility, usability, informativeness, understandability and auditability of information and process held by centers of authority.  [http://en.wikipedia.org/wiki/Transparency_(social) Wikipedia]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Overcoming_Impediments_to_Information_Sharing | Aviram and Tor]]&lt;br /&gt;
* [[Research_Agenda_for_the_Banking_and_Finance_Sector | Financial Services Sector Coordinating Council for Critical Infrastructure Protection]]&lt;br /&gt;
* [[An_Economic_Analysis_of_Notification_Requirements_for_Data_Security_Breaches | Lenard and Rubin]], [[Much_Ado_About_Notification | [2]]]&lt;br /&gt;
* [[Managing_Information_Risk_and_the_Economics_of_Security | Johnson, E.]]&lt;br /&gt;
* [[Do_Data_Breach_Disclosure_Laws_Reduce_Identity_Theft | Romanosky et. al.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
* [[A_Model_for_When_Disclosure_Helps_Security | Swire]], [[A_Theory_of_Disclosure_for_Security_and_Competitive_Reasons | [2]]]&lt;br /&gt;
* [[Impact_of_Software_Vulnerability_Announcements_on_the_Market_Value_of_Software_Vendors | Telang and Wattal]]&lt;br /&gt;
* [[The_Future_of_the_Internet_and_How_To_Stop_It | Zittrain]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Trojan===&lt;br /&gt;
[[#Malware | Malware]] which masquerades as some other type of program such as a link to a web site, a desirable image, etc. to trick a user into installing it.  Named for the Ancient Greek legend of the [http://www.mlahanas.de/Greeks/Mythology/TrojanHorse.html Trojan Horse].&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
*[[The_Economics_of_Online_Crime | Moore et. al.]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Virtual Military Technologies===&lt;br /&gt;
Warfare made possible by advances in remotely controlled or semiautomated military technologies which remove the operator from risk of harm while attacking an opponent.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
* [[Law_and_War_in_the_Virtual_Era | Beard]]&lt;br /&gt;
* [[Global_Cyber_Deterrence_Views_from_China | Lan]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Virtual Warfare===&lt;br /&gt;
&lt;br /&gt;
See: [[#Virtual_Military_Technologies | Virtual Military Technologies]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
*[[Information_Warfare_and_International_Law_on_the_Use_of_Force | Barkham]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===White Hat===&lt;br /&gt;
A white hat is a computer [[#Hacker | hacker]] who works to find and fix computer security risks.  White hat consultants are often hired to attempt to break into their client&#039;s network to see if all security holes have been addressed.&lt;br /&gt;
&lt;br /&gt;
See also: [[#Black_Hat | Black Hat]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Whitelist===&lt;br /&gt;
A list of computers, IP (Internet Protocol) addresses, user names or other identifiers to specifically allow access to a computing resource.  Normally combined with a default &amp;quot;no-access&amp;quot; policy.&lt;br /&gt;
&lt;br /&gt;
See also: [[#Blacklist | Blacklist]]&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Worm===&lt;br /&gt;
A type of malware that replicates itself and spreads to other computers through network connections.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[Beyond_Fear | Schneier]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
===Zero-Day Exploit===&lt;br /&gt;
[[#Malware | Malware]] designed to exploit a newly discovered security hole unknown to the software developer.  &amp;quot;Zero-day&amp;quot; refers to the amount of time a developer has between learning of a security hole and the time it becomes public or when [[#Black_Hat | black hat]] [[#Hacker | hackers]] find out about it and try to use the security hole for nefarious purposes.&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
* [[Security_Engineering | Anderson]]&lt;br /&gt;
* [[Does_Information_Security_Attack_Frequency_Increase_With_Vulnerability_Disclosure | Arora et. al.]]&lt;br /&gt;
* [[Mission_Impact_of_Foreign_Influence_on_DoD_Software | DoD]]&lt;br /&gt;
* [[The_Price_of_Restricting_Vulnerability_Publications | Granick]]&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;[[Index_and_Glossary_of_Core_Ideas | Jump to top of Glossary]]&#039;&#039;&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3086</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=3086"/>
		<updated>2010-06-30T19:33:13Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Key Resources */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from [[Cybercrime]] to [[Cyberwar]]. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone [[Keyword_Index_and_Glossary_of_Core_Ideas#Hacker | Hacker]] breaking into a single computer to an [[Keyword_Index_and_Glossary_of_Core_Ideas#Organized_Crime | organized network of computer criminals]] collecting thousands or millions of [[Keyword_Index_and_Glossary_of_Core_Ideas#Credit_Card_Fraud | credit card numbers]] and/or [[Keyword_Index_and_Glossary_of_Core_Ideas#Identity_Fraud.2FTheft | personal information records]] from multiple sources. Responses to cybercrime range from offering [[Incentives | incentives]] to individuals, manufacturers and/or corporations to protect against [[Keyword_Index_and_Glossary_of_Core_Ideas#Malware | malware]] and [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | botnet attacks]] to decisions about [[Insurance | insurance]] and [[Risk_Management_and_Investment | risk management]].&lt;br /&gt;
&lt;br /&gt;
[[Cyberwar| Cyberwarfare]] includes covert [[Espionage | espionage]] attacks against secure systems to collect sensitive [[Keyword_Index_and_Glossary_of_Core_Ideas#National_Security | national security]] information, distributed attacks against the [[Public_Critical_Infrastructure | civilian infrastructure]] to cause widespread failures of energy and/or communication systems or targeted attacks against [[Government_Networks_(.gov) | military targets]] with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver [[Keyword_Index_and_Glossary_of_Core_Ideas#Botnet | kinetic attacks]]. These attacks all create complicated questions of [[Attribution | attribution]] and [[Regulation/Liability | law]], as the normal [[Keyword_Index_and_Glossary_of_Core_Ideas#Laws_of_War | laws of war]] are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, [[Deterrence| deterrence]], offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of [[Economics_of_Cybersecurity | economics]], incentives, law, legislation, politics, [[Public-Private_Cooperation | government-private cooperation]] and [[International_Cooperation |international diplomacy]]. Government, industry, the military and the public must all play a role in deciding [[Keyword_Index_and_Glossary_of_Core_Ideas#Cyber_Security_as_a_Public_Good | how much cybersecurity is needed]] and who will pay for it. These stakeholders must also address the tradeoffs between privacy and security that often arise in addressing cyber threats. Finally, there needs to be a way to [[Keyword_Index_and_Glossary_of_Core_Ideas#Research_.26_Development | measure the threat]] and the protections put in place so that the players can make intelligent choices in allocating scare resources.&lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to Use this Wiki&amp;quot;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Our &#039;&#039;&#039;[[Annotated Bibliography | Annotated Bibliography]]&#039;&#039;&#039; presents and summarizes all of the resources we&#039;ve collected by key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
Because this bibliography encompasses such a wide range of cybersecurity issues, the most direct way to get started is to look through the detailed&lt;br /&gt;
&#039;&#039;&#039;[[Annotated Bibliography | Table of Contents]]&#039;&#039;&#039; and select &#039;&#039;&#039;Specific Issues or Themes&#039;&#039;&#039; of interest.  For example, [[Cybercrime | &amp;quot;Issues-&amp;gt;Cybercrime&amp;quot;]] or [[Financial Institutions and Networks |Security Targets-&amp;gt;Private Critical Infrastructure-&amp;gt;Financial Institutions and Networks]].&lt;br /&gt;
&lt;br /&gt;
If you are interested in a broad topic area, however, you might choose to start your search from one of the &#039;&#039;&#039;[[Broad Topics]]&#039;&#039;&#039;.  This allows you to search within the broad categories of &#039;&#039;&#039;[[Overview]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Threats_and_Actors | Threats and Actors]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Issues | Issues]]&#039;&#039;&#039;, and &#039;&#039;&#039;[[Approaches | Approaches]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
Alternately, you can access the readings that we&#039;ve summarized by&lt;br /&gt;
&#039;&#039;&#039;Resource Type&#039;&#039;&#039;, which includes &#039;&#039;&#039;[[Government Reports]]&#039;&#039;&#039;, &#039;&#039;&#039;[[Industry Reports]]&#039;&#039;&#039; and &#039;&#039;&#039;[[Books]]&#039;&#039;&#039;.  &lt;br /&gt;
&lt;br /&gt;
For a more targeted review by &#039;&#039;&#039;Key Word&#039;&#039;&#039;, please review our &#039;&#039;&#039;[[Keyword Index and Glossary of Core Ideas]]&#039;&#039;&#039;, which will enable you to search definitions and references related to specific terms, from [[Keyword_Index_and_Glossary_of_Core_Ideas#Air-Gapped_Network| Air-Gapped Network]] to [[Keyword_Index_and_Glossary_of_Core_Ideas#Zero-Day_Exploit | Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
A comprehensive &#039;&#039;&#039;List of All Articles&#039;&#039;&#039; in the bibliography is available in the &#039;&#039;&#039;[[Comprehensive Index]]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
References may also be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: &#039;&#039;&#039;[http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]&#039;&#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2811</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2811"/>
		<updated>2010-06-30T14:22:25Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Key Resources */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Organized by Topic | Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from cybercrime to cyberwarefare. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone hacker breaking into a single computer to an organized network of computer criminals collecting thousands or millions of credit card numbers and/or personal information records from multiple sources. Responses to cybercrime range from offering incentives to individuals, manufacturers and/or corporations to protect against malware and botnet attacks to decisions about insurance and risk management.&lt;br /&gt;
&lt;br /&gt;
Cyberwarfare attacks include covert espionage attacks against secure systems to collect sensitive national security information, distributed attacks against the civilian infrastructure to cause widespread failures of energy and/or communication systems or targeted attacks against military targets with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver kinetic attacks. These attacks all create complicated questions of attribution and law, as the normal laws of war are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, deterrence, offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of economics, incentives, law, legislation, politics, government-private cooperation and international diplomacy. Government, industry, the military and the public must all play a role in deciding how much cybersecurity is needed and who will pay for it. These stakeholders must also address the tradeoffs between privacy and security that often arise in addressing cyber threats. Finally, there needs to be a way to measure the threat and the protections put in place so that the players can make intelligent choices in allocating scare resources. &lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
Our [[Organized by Topic | Annotated Bibliography]] presents and summarizes all of the resources we&#039;ve collected and summarized on key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to use this wiki&amp;quot;&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
We suggest you start your inquiry with the [[Organized by Topic#Overview | Table of Contents]].&lt;br /&gt;
&lt;br /&gt;
From there, you can get easy access to some of the key readings that we&#039;ve summarized, according to&lt;br /&gt;
&#039;&#039;&#039;Resource Types&#039;&#039;&#039;, which includes [[Government Reports]], [[Industry Reports]] and [[Books]].  &lt;br /&gt;
&lt;br /&gt;
If you are interested in a specific topic area, however, you might alternatively start your search on the &#039;&#039;&#039;Broad Topics&#039;&#039;&#039; page.  This section allows you to search within broad categories such as [[Organized_by_Topic#Threats_and_Actors | Threats and Actors]], [[Organized_by_Topic#Issues | Issues]], and [[Organized_by_Topic#Approaches | Approaches]].&lt;br /&gt;
&lt;br /&gt;
For a more targeted review of &#039;&#039;&#039;Key Words&#039;&#039;&#039;, please review our [[Keyword Index and Glossary of Core Ideas]], which will enable you to search definitions and references related to specific terms, from [[Botnet]] to [[Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
The comprehensive &#039;&#039;&#039;List of Articles&#039;&#039;&#039; is available here: [[Comprehensive Index]]&lt;br /&gt;
&lt;br /&gt;
References can be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: [http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography].&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2810</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2810"/>
		<updated>2010-06-30T14:22:08Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Key Resources */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Organized by Topic | Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from cybercrime to cyberwarefare. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone hacker breaking into a single computer to an organized network of computer criminals collecting thousands or millions of credit card numbers and/or personal information records from multiple sources. Responses to cybercrime range from offering incentives to individuals, manufacturers and/or corporations to protect against malware and botnet attacks to decisions about insurance and risk management.&lt;br /&gt;
&lt;br /&gt;
Cyberwarfare attacks include covert espionage attacks against secure systems to collect sensitive national security information, distributed attacks against the civilian infrastructure to cause widespread failures of energy and/or communication systems or targeted attacks against military targets with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver kinetic attacks. These attacks all create complicated questions of attribution and law, as the normal laws of war are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, deterrence, offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of economics, incentives, law, legislation, politics, government-private cooperation and international diplomacy. Government, industry, the military and the public must all play a role in deciding how much cybersecurity is needed and who will pay for it. These stakeholders must also address the tradeoffs between privacy and security that often arise in addressing cyber threats. Finally, there needs to be a way to measure the threat and the protections put in place so that the players can make intelligent choices in allocating scare resources. &lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
Our [[Organized by Topic | Annotated Bibliography]] presents and summarizes all of the resources we&#039;ve collected and summarized on key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to use this wiki&amp;quot;&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
We suggest you start your inquiry with the [[Organized by Topic#Overview | Table of Contents]].&lt;br /&gt;
&lt;br /&gt;
From there, you can get easy access to some of the key readings that we&#039;ve summarized, according to&lt;br /&gt;
&#039;&#039;&#039;Resource Types&#039;&#039;&#039;, which includes [[Government Reports]], [[Industry Reports]] and [[Books]].  &lt;br /&gt;
&lt;br /&gt;
If you are interested in a specific topic area, however, you might alternatively start your search on the &#039;&#039;&#039;Broad Topics&#039;&#039;&#039; page.  This section allows you to search within broad categories such as [[Organized_by_Topic#Threats_and_Actors | Threats and Actors]], [[Organized_by_Topic#Issues | Issues]], and [[Organized_by_Topic#Approaches | Approaches]].&lt;br /&gt;
&lt;br /&gt;
For a more targeted review of &#039;&#039;&#039;Key Words&#039;&#039;&#039;, please review our [[Keyword Index and Glossary of Core Ideas]], which will enable you to search definitions and references related to specific terms, from from [[Botnet]] to [[Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
The comprehensive &#039;&#039;&#039;List of Articles&#039;&#039;&#039; is available here: [[Comprehensive Index]]&lt;br /&gt;
&lt;br /&gt;
References can be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: [http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography].&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2808</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2808"/>
		<updated>2010-06-30T14:21:50Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Key Resources */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Organized by Topic | Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from cybercrime to cyberwarefare. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone hacker breaking into a single computer to an organized network of computer criminals collecting thousands or millions of credit card numbers and/or personal information records from multiple sources. Responses to cybercrime range from offering incentives to individuals, manufacturers and/or corporations to protect against malware and botnet attacks to decisions about insurance and risk management.&lt;br /&gt;
&lt;br /&gt;
Cyberwarfare attacks include covert espionage attacks against secure systems to collect sensitive national security information, distributed attacks against the civilian infrastructure to cause widespread failures of energy and/or communication systems or targeted attacks against military targets with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver kinetic attacks. These attacks all create complicated questions of attribution and law, as the normal laws of war are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, deterrence, offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of economics, incentives, law, legislation, politics, government-private cooperation and international diplomacy. Government, industry, the military and the public must all play a role in deciding how much cybersecurity is needed and who will pay for it. These stakeholders must also address the tradeoffs between privacy and security that often arise in addressing cyber threats. Finally, there needs to be a way to measure the threat and the protections put in place so that the players can make intelligent choices in allocating scare resources. &lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
Our [[Organized by Topic | Annotated Bibliography]] presents and summarizes all of the resources we&#039;ve collected and summarized on key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to use this wiki&amp;quot;&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
We suggest you start your inquiry with the [[Organized by Topic#Overview | Table of Contents]].&lt;br /&gt;
&lt;br /&gt;
From there, you can get easy access to some of the key readings that we&#039;ve summarized, according to&lt;br /&gt;
&#039;&#039;&#039;Resource Types&#039;&#039;&#039;, which includes [[Government Reports]], [[Industry Reports]] and [[Books]].  &lt;br /&gt;
&lt;br /&gt;
However, if you are interested in a specific topic area, however, you might alternatively start your search on the &#039;&#039;&#039;Broad Topics&#039;&#039;&#039; page.  This section allows you to search within broad categories such as [[Organized_by_Topic#Threats_and_Actors | Threats and Actors]], [[Organized_by_Topic#Issues | Issues]], and [[Organized_by_Topic#Approaches | Approaches]].&lt;br /&gt;
&lt;br /&gt;
For a more targeted review of &#039;&#039;&#039;Key Words&#039;&#039;&#039;, please review our [[Keyword Index and Glossary of Core Ideas]], which will enable you to search definitions and references related to specific terms, from from [[Botnet]] to [[Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
The comprehensive &#039;&#039;&#039;List of Articles&#039;&#039;&#039; is available here: [[Comprehensive Index]]&lt;br /&gt;
&lt;br /&gt;
References can be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: [http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography].&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2807</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2807"/>
		<updated>2010-06-30T14:21:02Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Key Resources */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Organized by Topic | Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from cybercrime to cyberwarefare. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone hacker breaking into a single computer to an organized network of computer criminals collecting thousands or millions of credit card numbers and/or personal information records from multiple sources. Responses to cybercrime range from offering incentives to individuals, manufacturers and/or corporations to protect against malware and botnet attacks to decisions about insurance and risk management.&lt;br /&gt;
&lt;br /&gt;
Cyberwarfare attacks include covert espionage attacks against secure systems to collect sensitive national security information, distributed attacks against the civilian infrastructure to cause widespread failures of energy and/or communication systems or targeted attacks against military targets with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver kinetic attacks. These attacks all create complicated questions of attribution and law, as the normal laws of war are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, deterrence, offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of economics, incentives, law, legislation, politics, government-private cooperation and international diplomacy. Government, industry, the military and the public must all play a role in deciding how much cybersecurity is needed and who will pay for it. These stakeholders must also address the tradeoffs between privacy and security that often arise in addressing cyber threats. Finally, there needs to be a way to measure the threat and the protections put in place so that the players can make intelligent choices in allocating scare resources. &lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
Our [[Organized by Topic | Annotated Bibliography]] presents and summarizes all of the resources we&#039;ve collected and summarized on key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to use this wiki&amp;quot;&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
We suggest you start your inquiry with the The [[Organized by Topic#Overview | Table of Contents]].&lt;br /&gt;
&lt;br /&gt;
From there, you can get easy access to some of the key readings that we&#039;ve summarized, according to&lt;br /&gt;
&#039;&#039;&#039;Resource Types&#039;&#039;&#039;, which includes [[Government Reports]], [[Industry Reports]] and [[Books]].  &lt;br /&gt;
&lt;br /&gt;
However, if you are interested in a specific topic area, however, you might alternatively start your search on the &#039;&#039;&#039;Broad Topics&#039;&#039;&#039; page.  This section allows you to search within broad categories such as [[Organized_by_Topic#Threats_and_Actors | Threats and Actors]], [[Organized_by_Topic#Issues | Issues]], and [[Organized_by_Topic#Approaches | Approaches]].&lt;br /&gt;
&lt;br /&gt;
For a more targeted review of &#039;&#039;&#039;Key Words&#039;&#039;&#039;, please review our [[Keyword Index and Glossary of Core Ideas]], which will enable you to search definitions and references related to specific terms, from from [[Botnet]] to [[Zero-Day Exploit]].&lt;br /&gt;
&lt;br /&gt;
The comprehensive &#039;&#039;&#039;List of Articles&#039;&#039;&#039; is available here: [[Comprehensive Index]]&lt;br /&gt;
&lt;br /&gt;
References can be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: [http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography].&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2803</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2803"/>
		<updated>2010-06-30T14:19:45Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Key Resources */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Organized by Topic | Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from cybercrime to cyberwarefare. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone hacker breaking into a single computer to an organized network of computer criminals collecting thousands or millions of credit card numbers and/or personal information records from multiple sources. Responses to cybercrime range from offering incentives to individuals, manufacturers and/or corporations to protect against malware and botnet attacks to decisions about insurance and risk management.&lt;br /&gt;
&lt;br /&gt;
Cyberwarfare attacks include covert espionage attacks against secure systems to collect sensitive national security information, distributed attacks against the civilian infrastructure to cause widespread failures of energy and/or communication systems or targeted attacks against military targets with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver kinetic attacks. These attacks all create complicated questions of attribution and law, as the normal laws of war are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, deterrence, offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of economics, incentives, law, legislation, politics, government-private cooperation and international diplomacy. Government, industry, the military and the public must all play a role in deciding how much cybersecurity is needed and who will pay for it. These stakeholders must also address the tradeoffs between privacy and security that often arise in addressing cyber threats. Finally, there needs to be a way to measure the threat and the protections put in place so that the players can make intelligent choices in allocating scare resources. &lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
Our [[Organized by Topic | Annotated Bibliography]] presents and summarizes all of the resources we&#039;ve collected and summarized on key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to use this wiki&amp;quot;&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
We suggest you start your inquiry with the The [[Organized by Topic#Overview | Table of Contents]].&lt;br /&gt;
&lt;br /&gt;
From there, you can get easy access to some of the key readings that we&#039;ve summarized, according to&lt;br /&gt;
&#039;&#039;&#039;Resource Types&#039;&#039;&#039;, which includes [[Government Reports]], [[Industry Reports]] and [[Books]].  &lt;br /&gt;
&lt;br /&gt;
However, if you are interested in a specific topic area, however, you might alternatively start your search on the &#039;&#039;&#039;Broad Topics&#039;&#039;&#039; page.  This section allows you to search within broad categories such as [[Organized_by_Topic#Threats_and_Actors | Threats and Actors]], [[Organized_by_Topic#Issues | Issues]], and [[Organized_by_Topic#Approaches | Approaches]].&lt;br /&gt;
&lt;br /&gt;
For a more targeted review of &#039;&#039;&#039;Key Words&#039;&#039;&#039;, please review our [[Keyword Index and Glossary of Core Ideas]], which will enable you to search definitions and references related to specific terms, from from Botnet to Zero-Day Exploit.&lt;br /&gt;
&lt;br /&gt;
The comprehensive &#039;&#039;&#039;List of Articles&#039;&#039;&#039; is available here: [[Comprehensive Index]]&lt;br /&gt;
&lt;br /&gt;
References can be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: [http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography].&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
	<entry>
		<id>https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2799</id>
		<title>Main Page</title>
		<link rel="alternate" type="text/html" href="https://cyber.harvard.edu/cybersecurity/?title=Main_Page&amp;diff=2799"/>
		<updated>2010-06-30T14:16:59Z</updated>

		<summary type="html">&lt;p&gt;Caroline: /* Key Resources */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{TOCright}}&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
This Cybersecurity wiki provides a set of evolving resources on cybersecurity, broadly defined, and includes an &#039;&#039;&#039;[[Organized by Topic | Annotated Bibliography]]&#039;&#039;&#039; on relevant articles and literature, which can be searched in a number of ways. Please see below.&lt;br /&gt;
&lt;br /&gt;
This wiki is intended as a tool/resource for researchers, technologists, students, policy-makers and others who are interested in cybersecurity issues more broadly.&lt;br /&gt;
&lt;br /&gt;
==Cybersecurity Overview==&lt;br /&gt;
&lt;br /&gt;
The term “Cybersecurity” encompasses a range of issues from cybercrime to cyberwarefare. These in turn embrace a diverse set of activities and interests.&lt;br /&gt;
&lt;br /&gt;
Cybercrime, for example, can refer to a lone hacker breaking into a single computer to an organized network of computer criminals collecting thousands or millions of credit card numbers and/or personal information records from multiple sources. Responses to cybercrime range from offering incentives to individuals, manufacturers and/or corporations to protect against malware and botnet attacks to decisions about insurance and risk management.&lt;br /&gt;
&lt;br /&gt;
Cyberwarfare attacks include covert espionage attacks against secure systems to collect sensitive national security information, distributed attacks against the civilian infrastructure to cause widespread failures of energy and/or communication systems or targeted attacks against military targets with the intent to render offensive and defensive systems inoperable or to take control of systems with the ability to deliver kinetic attacks. These attacks all create complicated questions of attribution and law, as the normal laws of war are of questionable value when applied to threats delivered domestically from a anonymous source in a distant location. In addition, deterrence, offensive actions and defensive response often become blurred in the cyber realm, requiring a fresh look at what policies such as “no first strike” mean in cyberspace.&lt;br /&gt;
&lt;br /&gt;
Solutions to these problems will involve addressing questions of economics, incentives, law, legislation, politics, government-private cooperation and international diplomacy. Government, industry, the military and the public must all play a role in deciding how much cybersecurity is needed and who will pay for it. These stakeholders must also address the tradeoffs between privacy and security that often arise in addressing cyber threats. Finally, there needs to be a way to measure the threat and the protections put in place so that the players can make intelligent choices in allocating scare resources. &lt;br /&gt;
&lt;br /&gt;
==Key Resources==&lt;br /&gt;
&lt;br /&gt;
Our [[Organized by Topic | Annotated Bibliography]] presents and summarizes all of the resources we&#039;ve collected and summarized on key issues and themes in Cybersecurity. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Reader&#039;s Guide: &amp;quot;How to use this wiki&amp;quot;&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
We suggest you start your inquiry with the The [[Organized by Topic#Overview | Table of Contents]].&lt;br /&gt;
&lt;br /&gt;
From there, you can get easy access to some of the key readings that we&#039;ve summarized, according to&lt;br /&gt;
&#039;&#039;&#039;Resource Types&#039;&#039;&#039;, which includes [[Government Reports]], [[Industry Reports]] and [[Books]].  &lt;br /&gt;
&lt;br /&gt;
However, if you are interested in a specific topic area, however, you might alternatively start your search on the &#039;&#039;&#039;Broad Topics&#039;&#039;&#039; page.  This section allows you to search within broad categories such as [[Organized_by_Topic#Threats_and_Actors | Threats and Actors]], [[Organized_by_Topic#Issues | Issues]], and [[Organized_by_Topic#Approaches | Approaches]].&lt;br /&gt;
&lt;br /&gt;
For a more targeted search of &#039;&#039;&#039;Key Words&#039;&#039;&#039;, please review our [[Keyword Index and Glossary of Core Ideas]], which will  &lt;br /&gt;
&lt;br /&gt;
The comprehensive &#039;&#039;&#039;List of Articles&#039;&#039;&#039; is available here: [[Comprehensive Index]]&lt;br /&gt;
&lt;br /&gt;
References can be accessed in a standard bibliographic format ([http://www.bibtex.org/ BibTeX]) here: [http://cyber.law.harvard.edu/cybersecurity/Special:Bibliography Bibliography]]&lt;br /&gt;
&lt;br /&gt;
==Ongoing Work==&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;A Note on Methodology&#039;&#039;&#039;: The materials featured in this wiki are just a starting point for our inquiry. They were selected as foundational documents on the recommendation of select researchers. During the next phase of the project, experts, policy-makers, academics, and others will be asked to review and evaluate the current collection and make recommendations for additional resources to include.  We have also included a list of suggested materials for review and possible inclusion in the next phase of the project. &lt;br /&gt;
&lt;br /&gt;
Additional articles for consideration are listed here: [[Suggested References to Add to Wiki]]&lt;br /&gt;
&lt;br /&gt;
==About the Project==&lt;br /&gt;
&lt;br /&gt;
This wiki is part of the [http://minerva.dtic.mil/ Minerva Initiative].  &lt;br /&gt;
&lt;br /&gt;
The resources have been assembled by a team at the [http://cyber.law.harvard.edu/ Berkman Center for Internet &amp;amp; Society].  Contributors include: [http://cyber.law.harvard.edu/people/dabrams David Abrams], Jacob Albert, [http://cyber.law.harvard.edu/people/ugasser Urs Gasser], [http://cyber.law.harvard.edu/people/jgoldsmith Jack Goldsmith], Shane Matthews, Caroline Nolan, and Felix Treguer.&lt;br /&gt;
&lt;br /&gt;
If you have feedback, comments, or suggested additional readings/resources, please contact Caroline Nolan: cnolan@cyber.law.harvard.edu&lt;br /&gt;
&lt;br /&gt;
==Templates and Wiki Tools==&lt;br /&gt;
&lt;br /&gt;
[[TemplateForSources | Template for Sources]]&lt;br /&gt;
&lt;br /&gt;
[[Guidelines for adding Bibliography entries]]&lt;br /&gt;
&lt;br /&gt;
Wiki [http://meta.wikimedia.org/wiki/Help:Contents User&#039;s Guide]&lt;/div&gt;</summary>
		<author><name>Caroline</name></author>
	</entry>
</feed>