https://en.wikipedia.org/wiki/International_Committee_of_the_Red_Cross_rules_of_engagement_for_civilian_hackers Jump to content [ ] Main menu Main menu move to sidebar hide Navigation * Main page * Contents * Current events * Random article * About Wikipedia * Contact us * Donate Contribute * Help * Learn to edit * Community portal * Recent changes * Upload file [wikipe] Wikipedia The Free Encyclopedia Search [ ] Search [ ] Appearance * Create account * Log in [ ] Personal tools * Create account * Log in Pages for logged out editors learn more * Contributions * Talk Contents move to sidebar hide * (Top) * 1 Background * 2 Rules * 3 Responses * 4 References * 5 Further reading * 6 External links [ ] Toggle the table of contents International Committee of the Red Cross rules of engagement for civilian hackers [ ] 1 language * Suomi Edit links * Article * Talk [ ] English * Read * Edit * View history [ ] Tools Tools move to sidebar hide Actions * Read * Edit * View history General * What links here * Related changes * Upload file * Special pages * Permanent link * Page information * Cite this page * Get shortened URL * Download QR code * Wikidata item Print/export * Download as PDF * Printable version Appearance move to sidebar hide From Wikipedia, the free encyclopedia 2023 rules for cyber-war conflicts On 4 October 2023 the International Committee of the Red Cross published rules of engagement for civilian hackers involved in conflicts.^[1]^[2] The rules had been described as a "Geneva Code of cyber-war".^[3] Background[edit] Since 2013 there has been a rise in hacking associated with conflicts, such as the Syrian civil war, which led to attacks on Western media.^[1]^[2] This has significantly accelerated after the Russian invasion of Ukraine.^[1]^[2] Rules[edit] The rules are: 1. Do not attack civilian targets.^[1]^[2] 2. Do not use malware or other tools or techniques that spread automatically and attack military and civilian targets indiscriminately.^[1]^[2] 3. When planning a cyber-attack against a military target, do everything possible to avoid or minimise any impact on civilians. ^[1]^[2] 4. Do not conduct any cyber-attack against medical and humanitarian facilities.^[1]^[2] 5. Do not conduct any cyber-attack against anything essential to the survival of the population or that can release dangerous forces.^ [1]^[2] 6. Do not threaten violence to spread terror among civilians.^[1]^ [2] 7. Do not incite violations of international humanitarian law.^[1]^ [2] 8. Comply with these rules even if the enemy doesn't.^[1]^[2] The ICRC has also asked governments to restrain hackers and enforce existing laws against cybercrime.^[1]^[2] Responses[edit] The IT Army of Ukraine has said they will "make best efforts to follow the rules" even if it puts them at a disadvantage with their enemies.^[1] They also said that attacks on healthcare facilities had already been ruled out by them.^[1]^[3] Killnet initially refused to follow the rules, but a couple of days later agreed to abide by them.^[1]^[3] A high-ranking member of Anonymous said they had "always operated based on several principles, including rules cited by the ICRC" but had become disillusioned with the organisation and would not follow the rules.^[1] A representative of Anonymous Sudan said the rules were "not viable and that breaking them for the group's cause is unavoidable".^[1] References[edit] 1. ^ ^a ^b ^c ^d ^e ^f ^g ^h ^i ^j ^k ^l ^m ^n ^o ^p ^q Tidy, Joe (2023-10-04). "Rules of engagement issued to hacktivists after chaos". BBC News. Retrieved 2023-10-15. 2. ^ ^a ^b ^c ^d ^e ^f ^g ^h ^i ^j ^k ^l Starks, Tim; DiMolfetta, David (2023-10-05). "Red Cross officials want civilian hackers to follow rules amid war. Here's why". Washington Post. Retrieved 2023-10-15. 3. ^ ^a ^b ^c Tidy, Joe (2023-10-06). "Ukraine cyber-conflict: Hacking gangs vow to de-escalate". BBC News. Retrieved 2023-10-15 . Further reading[edit] * Rodenhauser, Tilman; Vignati, Mauro (4 October 2023). "8 rules for "civilian hackers" during war, and 4 obligations for states to restrain them". EJIL: Talk! (www.ejiltalk.org). European Society of International Law. Retrieved 16 October 2023. External links[edit] * 8 rules for "civilian hackers" during war, and 4 obligations for states to restrain them - International Committee of the Red Cross blog on Law and Policy * v * t * e Hacking in the 2020s - 2010s Timeline 2030s - * BlueLeaks * Twitter account hijacking * European Medicines Agency data breach * Nintendo data leak 2020 * United States federal government data breach * EasyJet data breach * Vastaamo data breach * Microsoft Exchange Server breach * Ivanti Pulse Connect Secure data breach * Colonial Pipeline ransomware attack * Health Service Executive ransomware attack * Waikato District Health Board ransomware attack 2021 * JBS S.A. ransomware attack * Kaseya VSA ransomware attack * Transnet ransomware attack * Epik data breach * FBI email hack * National Rifle Association ransomware attack Major incidents * Banco de Oro hack * Ukraine cyberattacks * Red Cross data breach * Anonymous and the Russian invasion of Ukraine * Viasat hack 2022 * DDoS attacks on Romania * Costa Rican ransomware attack * LastPass vault theft * Shanghai police database leak * Grand Theft Auto VI content leak * Munster Technological University ransomware attack * Evide data breach 2023 * MOVEit data breach * Insomniac Games data breach * Polish railway cyberattack * British Library cyberattack 2024 * XZ Utils backdoor * Kadokawa and Niconico * Anonymous + associated events * Anonymous Sudan * Berserk Bear * Clop * Cozy Bear * DarkMatter * DarkSide * Dridex * Ghostwriter * GnosticPlayers Groups * Guacamaya * Hafnium * IT Army of Ukraine * Killnet * Lapsus$ * LightBasin * LockBit * REvil * Sandworm * Sakura Samurai * ShinyHunters * Wizard Spider * Graham Ivan Clark Individuals * maia arson crimew * Kirtaner * SMBGhost (2020) * Thunderspy (2020) * PrintNightmare (2021) * FORCEDENTRY (2021) * Log4Shell (2021) Major * Account pre-hijacking (2022) vulnerabilities * Retbleed (2022) publicly disclosed * Downfall (2023) * LogoFAIL (2023) * Reptar (2023) * Terrapin (2023) * GoFetch (2024) * Adrozek 2020 * Drovorub Malware 2021 * Predator 2022 * Cyclops Blink * Pipedream * Retrieved from "https://en.wikipedia.org/w/index.php?title= International_Committee_of_the_Red_Cross_rules_of_engagement_for_civilian_hackers &oldid=1218737606" Categories: * International Red Cross and Red Crescent Movement * Cyberwarfare * Hacking in the 2020s Hidden categories: * Articles with short description * Short description matches Wikidata * This page was last edited on 13 April 2024, at 14:31 (UTC). * Text is available under the Creative Commons Attribution-ShareAlike License 4.0 ; additional terms may apply. By using this site, you agree to the Terms of Use and Privacy Policy. Wikipedia(r) is a registered trademark of the Wikimedia Foundation, Inc., a non-profit organization. * Privacy policy * About Wikipedia * Disclaimers * Contact Wikipedia * Code of Conduct * Developers * Statistics * Cookie statement * Mobile view * Wikimedia Foundation * Powered by MediaWiki *