Climate Change, Environmental Threats and Cyber-Threats to Critical Infrastructures in Multi-Regulatory Sustainable Global Approach with Sweden as an Example — Oak Academic Publishing
Research ArticleOpen AccessGoogle Scholar indexed
Climate Change, Environmental Threats and Cyber-Threats to Critical Infrastructures in Multi-Regulatory Sustainable Global Approach with Sweden as an Example
Department of Law, Aalborg University and Centre of Cybercrime and Cybersecurity, Aalborg, Denmark
,
Department of Business Administration, Technology and Social Sciences, Luleå University of Technology, Luleå, Sweden
,
Institute for Security and Development Policy, Stockholm, Sweden
,
Sustainable College Bruges (SCB), Bruges, Belgium
,
The International Panel on Climate Change (IPCC) from 2017-19, United Nations Environmental Law Programme UNEP, Geneva, Switzerland
,
School of Law, Western Sydney University (WSU), Sydney, Australia
1 Department of Law, Aalborg University and Centre of Cybercrime and Cybersecurity, Aalborg, Denmark
2 Department of Business Administration, Technology and Social Sciences, Luleå University of Technology, Luleå, Sweden
3 Institute for Security and Development Policy, Stockholm, Sweden
4 Sustainable College Bruges (SCB), Bruges, Belgium
5 The International Panel on Climate Change (IPCC) from 2017-19, United Nations Environmental Law Programme UNEP, Geneva, Switzerland
6 School of Law, Western Sydney University (WSU), Sydney, Australia
This article explores and analyzes the nexus between climate change, environmental threats, and cyber-threats in a multi-regulatory contextual sustainable global approach with Sweden as an example. Research and collection of material have been conducted with the precise aim to draw a parallel between environmental regulations and the cyberspace and cybersecurity systems. Many aspects of the cyber-security system are not known and are highly fragmented. Selected points of the study of the Swedish cyber strategy are being developed in parallel to the environmental regime in order to better understand how to improve the effectiveness of the cyber complex regime from a contextual perspective. One way to better understand the cybersecurity system is to make an interdisciplinary study of how best to coordinate these systems, thus making both cyber law and policy more effective. This leads to bringing evidence on how to take inspiration from a regime system (environmental law or, more concretely, the environmental liability framework) and using it as source of inspiration to understand and shape the formation of another system in another area, namely cybersecurity. The method of this ongoing research consists of choosing and applying key aspects of environmental law (such as concepts and principles) and comparing them with comparable selected cybersecurity key aspects, which are selected because they present strong similarities with their “equivalent” focal points pertaining to the environmental system. When conducting this comparison, multi-level governance is applied too, which means analysis of the sources of law and policy existing at Global/Regional/National (local) levels in order to understand the interactions between different levels. The analytical task of the research consists of choosing some focal points from the environmental liability system that are very similar and comparable to those of the cyber regime.
KeywordsClimate Change and CybersecurityEnvironmental Liability RegimeEnvironmental Threat and Critical InfrastructureSwedish Cyber LawSustainable Cybersecurity
Act (2018:1174). Act on Information Security for Important and Digital Services (p. 1, pp. 11-16).
Baush, C., & Mehling, M. (2013). Alternative Venues of Climate Cooperation: An Institutional Perspective. In E. Hollo et al. (Eds.), Climate Change and the Law (pp. 117-119). Berlin: Springer.
Bray, D. A. (2008). Information Pollution, Knowledge Overload, Limited Attention Spans and Our Responsibilities as IS Professionals. Global Information Technology Management Association (GITMA) World Conference, June 2008. https://doi.org/10.2139/ssrn.962732
Cassotta, S. (2012). Environmental Damage and Liability Problems in a Multilevel Context: The Case of the Environmental Liability Directive. The Netherlands: Kluwer Law International.
Cybersecurity Forum (2013-18). Pivot Point Technology Corp.
De Sadeleer, N. (2006a). Polluter-Pays Precautionary Principle and Liability. In G. Betlem, & E. Brans (Eds.), Environmental Liability. The 2004 Directive Compared with US and Member States Law. Cameron.
De Sadeleer, N. (2006b). Les responsabilité environmentales dans l’espace européen—Point de vue Franco-Belge. Bruxelles: Brulant.
De Sadeleer, N. (2007). Implementing the Precautionary Principle. Approaches from The Nordic Countries, EU and USA, Earthscan.
Directive 2016/1148 of the European Parliament and the Council of 6 July Concerning Measures for a High Common Level of Security of Network and Information System across the Union, OJ, 2016, 194 R 000.
Environmental Liability Directive 2004/35/EC with Regards the Prevention and Remedying of Environmental Damage as Adopted by the European Parliament and of the Council on the 21 April 2004, OJ, 2004, 143/56.
European Commission COM (2004). 702 of 20 October 2004.
Fidler, D. (2015). Whither the Web: International Law, Cybersecurity, and Critical Infrastructure Protection. Bloomington, IN: Law Library Indiana University Press.
Frakes, J. (2003). The Common Heritage and Mankind Principle and the Deep Seabed, Outer Space, and Antarctica: Will Developed and Developing Nations Reach a Compromise? 21, Wis. Int’L L.J., 409.
Hansel, M. (2013). Cyber-Security Governance and the Theory of Public Goods. 27 June 2013, E-International Relations.
Hardin, G. (1968). The Tragedy of the Commons. Science, 162, 1243-1248. https://doi.org/10.1126/science.162.3859.1243
Hathaway, O. A. et al. (2012). The Law of Cyber-Attack, Yale School. California Law Review, Paper 3852, 817-885.
Jan, J. H. (2008). European Environmental Law. Amsterdam: European Law Publishing.
Jensen, E. T. (2014). State Obligations in Cyber Operations. In Baltic Yearbook of International Law (Vol. 14, No. 1). Provo, UT: Bingham Young University School of Law. https://doi.org/10.1163/22115897-90000121
Justitiedepartementet/Justice Department (2017). Skr. 2016/17:213. Nationell strategi för samhällets informations-och cybersäkerhet. National Strategy for Society’s Information- and Cybersecurity.
Kramer, L. (2007). EC Environmental Law. London: Thomson-Sweet and Maxwell.
Lalou, M. et al. (2017). Identifying the Cyber Attack Origin with Partial Observation: A Linear Regression Based Approach. 2nd IEEE International Workshop on Foundations and Applications of Self Systems, Tucson, AZ, 18-22 September 2017, 18-22. https://doi.org/10.1109/FAS-W.2017.168
Monti, A. (2001). Environmental Risks: A Comparative Law and Economics Approach to Liability and Insurance. European Review of Private Law, No. 1, 51-79.
Newman, L. H. (2018). Hacker Lexicon: What Is the Attribution Problem? Security.
Nordhaus W. (2015). Climate Clubs: Overcoming Free-Riding in International Climate Policy. American Economic Review, 105, 1339-1370.
Oates, W. E. (1992). Environmental Economics: A Survey. Journal of Economic Literature, 30, 675-740.
Oberthür, S. et al. (2012). Managing Institutional Complex: Regime Interplay and Global Environmental Change. Cambridge, MA: MIT Press.
OECD (1974). Recommendation of the Council on the Implementation of the Polluter-Pays Principle. 14 November 1974-C (74) 223.
OECD (1977). Recommendation of the Council on Guiding Principles concerning International Economic Aspects of Environmental Policies. 26 May 1972-C (72) 128.
OECD (1989). Recommendation of the Council Concerning the Application of the Polluter-Pays Principle to Accidental Pollution. 1989-C (89) 88/FINAL.
Ophardt, J. A. (2010). Cyberspace and the Crime of Aggression: The Need for Individual Accountability on Tomorrow’s Battlefield. Duke Law & Technology Review, 1-28.
Oran, Y. (2012). Building and International Regime Complex for the Arctic: Current Status and Next Steps. The Polar Journal, 2, 391-407. https://doi.org/10.1080/2154896X.2012.735047
Protocol on Substances that Deplete the Ozone Layer (Montréal Protocol) of September 16 of 1987 to the Vienna Convention for the Protection of the Ozone Layer.
Pursiainen, C. (2018). Critical Infrastructure Resilience: A Nordic Model in the Making? International Journal of Disaster Risk Reduction, 27, 632-641. https://doi.org/10.1016/j.ijdrr.2017.08.006
Radzwill, Y. (2015). Cyber-Attack and the Exploitable Imperfections of International Law. Leiden, Boston: Brill Nijhoff. https://doi.org/10.1163/9789004298309
Redder, M. E., & Hughes, M. P. (2008). Global Commons and Domain Interrelationships: Time for a New Conceptual Framework? Strategic Forum, National Defense University, SF No. 259, 1-11.
Report “Our Common Future”, Brundtland (1987). “World Commission on Environment and Development”, chaired by Gro Harlem Brundtland who in 1987 produced a report titled “Our Common Future” for the UN.
Republican, H. (2011). Cybersecurity Task Force, Conference Recommendation of the House Republican Cybersecurity. Task Force’s Recommendations, 3, 8, 14.
Schmitt, N. M. (2017). Peacetime Cyber Responses and Wartime Cyber Operations under International Law: An Analytical Vade Mecum. Harvard National Security Journal, 8, 245.
Shackelford, S. (2016). On Climate Change and Cyber Attack: Leveraging Polycentric Governance to Mitigate Global Collective Action Problems. Vanderbilt Journal of Entertainment & Technology Law, Kelley School of Business Research Paper No. 15-54. https://doi.org/10.2139/ssrn.2630333
The European Convention on Cybercrime (Council of Europe), CETS, No. 185, 23 November 2001, entered into force on the 1 July 2004.
The Kyoto Protocol adopted in Kyoto, Japan on 11 December 1997, entered into force on 16 February 2005.
The Montréal Protocol on Substances that Deplete the Ozone Layer to the Vienna Convention for the Protection of the Ozone layer, adopted in 1987 and came into force on 1 January 1989.
The Paris Agreement, signed on the 22 April 2016, entered into force on the 12 December 2016.
The United Nations Convention on Climate Change (UNFCCC) (1994). (The United Nations Convention on Climate Change, adopted on the 9 May1992, entered into force the 23 March of 1994.
Tsagourias, N., & Buchan, R. (2016). Chapter 14. Cyber-Threats and International Law. In E. M. Footer, J. Schmitt, D. N. White, & D. L. Bright (Eds.), Security and International Law. Oxford and Portland, Oregon.
Tsagouring, N., & Buchan, R. (2015). Research Handbook on International Law and Cyberspace. Cheltenham: Edward Elgar Publishing.