Home

Anonymous Says DDoS Attacks Like Free Speech

Comments | Mathew J. Schwartz, InformationWeek | January 11, 2013 10:26 AM


Can the Anonymous hacktivist collective hack the First Amendment?

A petition filed this week with the White House seeks to decriminalize distributed denial-of-service (DDoS) attacks, making them a legal form of protesting. In other words, it would extend the First Amendment's protections to protect people's right to disrupt websites.

More Insights

Webcasts

More >>

White Papers

More >>

Reports

More >>

"Distributed denial-of-service (DDoS), is not any form of hacking in any way," claims the "We The People" petition request. "It is the equivalent of repeatedly hitting the refresh button on a webpage. It is, in that way, no different than any 'occupy' protest."

According to the petition, "instead of a group of people standing outside a building to occupy the area, they are having their computer occupy a website to slow (or deny) service of that particular website for a short time." The petition also calls for anyone jailed for a DDoS-related crime to be immediately released, and the related charges to be expunged from people's arrest records.

[ For the latest on the ongoing John McAfee saga, see McAfee Strikes Back: Spyware Sting Targets Belize Government. ]

While the identity of the person who created the petition is partially anonymized -- it's ascribed to "Dylan K" of Eagle, Wis. -- members of the Anonymous collective are clearly backing the petition. "We Need Your Signature! Make, distributed denial-of-service (DDoS), a legal form of protesting," read a Friday YourAnonNews Twitter post.

For the White House to respond to the petition, the request needs to garner 25,000 signatures by Feb. 6. By Friday morning, however, the petition had received only about 2,000 signatures.

The First Amendment enshrines both the right to freedom of speech and "the right of the people peaceably to assemble, and to petition the Government for a redress of grievances." The DDoS petition, then, implies that current laws should be updated to protect people's right to disrupt websites. "With the advance in internet techonology (sic), comes new grounds for protesting," reads the petition.

The request highlights the fact that that there are currently different rules governing website shutdowns vs. interrupting businesses in the real world. For example, in many Western countries, protestors can choke the entrance to a business -- or even city streets -- for a few hours, and it's legal. "And the digital equivalent of that, a DDoS attack that takes a website offline for a few hours, is illegal," said Mandiant VP Grady Summers at last year's RSA conference in San Francisco. The prosecutions of numerous people involved in DDoS attacks -- or in some readings, protests -- further makes that clear.

If the petition gathers sufficient signatures, and the White House responds, would DDoS fans have any chance of seeing website disruptions get classified as a form of protest? Most likely Congress would need to pass a law that protects DDoS attacks as a form of free speech. Given that federal legislators can't even agree on a bill to protect people's privacy rights online, good luck scheduling a DDoS discussion.

In the meantime, law enforcement officials will no doubt continue to prosecute DDoS attacks. But FBI officials have said they're not unaware of concerns over people's right to protest online, and emphasized they're required by law to protect people's civil liberties, including online.

"That is a huge concern for us ... and there are a number of challenges associated with this," said Eric Strom, unit chief for the Cyber Initiative and Resource Fusion Unit Cyber Division at the FBI, at last year's RSA conference. One of the chief challenges, he said, is that many people who launch DDoS attacks are minors.

How does the bureau gauge when online speech or protests cross a legal line? "If they're just complaining about something, or an issue, they have every right to do that and certainly we don't have a problem with that," he said. "It's when they take that step across the line, to make a point ... [and] they hack into a system, or go after say someone in law enforcement and their families … obviously we're going to take a big interest."

Hack.me is a free platform to build, host and share simple and complex vulnerable Web applications. Find out more about it in this free Black Hat webcast on Jan. 17, with Armando Romeo, founder of eLearnSecurity.



Related Reading




Currently we allow the following HTML tags in comments:

Single tags

These tags can be used alone and don't need an ending tag.

<br> Defines a single line break

<hr> Defines a horizontal line

Matching tags

These require an ending tag - e.g. <i>italic text</i>

<a> Defines an anchor

<b> Defines bold text

<big> Defines big text

<blockquote> Defines a long quotation

<caption> Defines a table caption

<cite> Defines a citation

<code> Defines computer code text

<em> Defines emphasized text

<fieldset> Defines a border around elements in a form

<h1> This is heading 1

<h2> This is heading 2

<h3> This is heading 3

<h4> This is heading 4

<h5> This is heading 5

<h6> This is heading 6

<i> Defines italic text

<p> Defines a paragraph

<pre> Defines preformatted text

<q> Defines a short quotation

<samp> Defines sample computer code text

<small> Defines small text

<span> Defines a section in a document

<s> Defines strikethrough text

<strike> Defines strikethrough text

<strong> Defines strong text

<sub> Defines subscripted text

<sup> Defines superscripted text

<u> Defines underlined text

BYTE encourages readers to engage in spirited, healthy debate, including taking us to task. However, BYTE moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. BYTE further reserves the right to disable the profile of any commenter participating in said activities.

COMMENTS

Tune In to BYTE
Facebook Twitter LinkedIn Newsletter RSS
Whitepapers
whitepaper
In this paper you will learn the five trends shaping the future of enterprise mobility. Learn how the rise of social media as a business application, the lurring between work and home, the emergence of new mobile devices, the demand for tech savvy employees and changing expectations of corporate IT will fundamentally change the workplace.
whitepaper
In a survey of more than 1,700 information workers (iWorkers) in North America, notebooks, desktops, and smartphones were found to be “must-have” devices, while tablets, slates, and netbooks were relegated to “nice-to-have” status, according to a commissioned study conducted by Forrester Consulting on behalf of Dell and Intel.
Sponsored by: Dell
Upcoming Events