Unclassified DSTI/ICCP/IIS(2005)1/FINAL
Total Page:16
File Type:pdf, Size:1020Kb
Unclassified DSTI/ICCP/IIS(2005)1/FINAL Organisation de Coopération et de Développement Economiques Organisation for Economic Co-operation and Development 02-Dec-2005 ___________________________________________________________________________________________ _____________ English - Or. English DIRECTORATE FOR SCIENCE, TECHNOLOGY AND INDUSTRY COMMITTEE FOR INFORMATION, COMPUTER AND COMMUNICATIONS POLICY Unclassified DSTI/ICCP/IIS(2005)1/FINAL Working Party on Indicators for the Information Society SCOPING STUDY FOR THE MEASUREMENT OF TRUST IN THE ONLINE ENVIRONMENT English - Or. English JT00195481 Document complet disponible sur OLIS dans son format d'origine Complete document available on OLIS in its original format DSTI/ICCP/IIS(2005)1/FINAL FOREWORD This report was presented to the Working Party on Indicators for the Information Society (WPIIS) in April 2005 and to the Working Party on Information Security and Privacy (WPISP) in May 2005. It was recommended to be made public by the Committee for Information, Computer and Communications Policy (ICCP) in October 2005. The report was prepared by Sam Paltridge, Sheridan Roberts and Brigitte van Beuzekom of the Economic Analysis and Statistics Division of the OECD’s Directorate for Science, Technology and Industry. The authors wish to thank colleagues in the Division for Information, Computer and Communications Policy and delegates of the WPIIS and WPISP for their contributions. The report is published under the responsibility of the Secretary-General of the OECD. Copyright OECD, 2005. Applications for permission to reproduce or translate all or part of this material should be made to: Head of Publications Service, OECD, 2 rue André-Pascal, 75775 Paris Cedex 16, France. 2 DSTI/ICCP/IIS(2005)1/FINAL TABLE OF CONTENTS FOREWORD.................................................................................................................................................. 2 INTRODUCTION .......................................................................................................................................... 5 PART 1: OFFICIAL STATISTICS ON TRUST IN THE ONLINE ENVIRONMENT................................ 8 Introduction................................................................................................................................................. 8 IT security................................................................................................................................................ 8 Other trust issues ..................................................................................................................................... 8 Official statistics on trust............................................................................................................................. 8 Business surveys of ICT use.................................................................................................................... 8 Dedicated surveys of IT security ........................................................................................................... 10 Household surveys of ICT use............................................................................................................... 10 Examples of official data....................................................................................................................... 11 Future developments: the OECD model surveys of business and household use of ICT ......................... 11 Business model survey .......................................................................................................................... 11 Household model survey ....................................................................................................................... 11 PART 2: STATISTICS ON TRUST IN THE ONLINE ENVIRONMENT FROM SEMI-OFFICIAL AND PRIVATE SOURCES................................................................................................................................... 12 Perception, opinion and usage surveys...................................................................................................... 12 The OECD GOV Directorate E-Government Survey............................................................................ 12 The European Commission’s Eurobarometer........................................................................................ 13 Industry surveys..................................................................................................................................... 14 Industry usage surveys........................................................................................................................... 15 The Pew Internet & American Life Project........................................................................................... 15 Consumer Reports ................................................................................................................................. 15 Surveys of security professionals and law enforcement agencies............................................................. 16 Consumer complaint and Internet fraud statistics ..................................................................................... 19 Consumer Sentinel................................................................................................................................. 19 The Internet Fraud Complaint Center.................................................................................................... 19 National Fraud Information Center and Internet Fraud Watch.............................................................. 20 Econsumer.gov ...................................................................................................................................... 20 Online retail sales, security and fraud ....................................................................................................... 20 Crime statistics.......................................................................................................................................... 21 Identity crime and e-crime ........................................................................................................................ 21 European Network Information and Security Agency (ENISA) and other European country security initiatives................................................................................................................................................... 22 Selected Internet threats/attacks/incidents and data availability ...............................................................23 Phishing and pharming .......................................................................................................................... 23 Spyware ................................................................................................................................................. 26 Viruses, worms, trojans and incidents ................................................................................................... 28 Botnets (zombie machines).................................................................................................................... 30 Modem hijacking................................................................................................................................... 32 Click fraud and “search spam” .............................................................................................................. 32 3 DSTI/ICCP/IIS(2005)1/FINAL E-commerce infrastructure security and certification ............................................................................... 34 Secure sockets layer (SSL) .................................................................................................................... 34 ANNEX 1: SELECTED OFFICIAL STATISTICS ON TRUST (IN THE ONLINE ENVIRONMENT) .. 37 Eurostat ..................................................................................................................................................... 37 Enterprise data on IT security................................................................................................................ 37 Household data on IT security............................................................................................................... 38 Australia .................................................................................................................................................... 39 Canada....................................................................................................................................................... 40 Japan.......................................................................................................................................................... 41 United States ............................................................................................................................................. 41 ANNEX 2: OECD DRAFT MODEL QUESTIONS ON TRUST................................................................ 42 OECD draft model questionnaire for ICT use by businesses (at April 2005)........................................... 42 Section A: General information about your business’ use of ICT......................................................... 42 Section B: IT security............................................................................................................................ 43 Section C: How your