duffield
Established Member
That would be ideal, unfortunately:I think the Data Protection Registrar (apparently now called the Information Commissioner) would have more credibility if they actually used their resources to identify and try to block those who perpetrate these raids.
...
- It's well beyond their budget, capabilities and remit. Other organisations exist for that purpose, including the security services and specialist police departments.
- Identification typically leads to dead ends - many of the people and groups involved when they can be identified are beyond our jurisdiction or extradition
- Blocking is essentially impossible since these people and groups use hijacked intermediary devices from around the world, i.e. the ever growing and changing "botnets"; so blocking individual IP addresses, or even entire countries has no real effect.
At the moment, as far as the powers of this nation is concerned, many of the attackers are largely like bad weather or high tides; an unstoppable force of nature we can only prepare for and mitigate against as best we can. The UK can no more catch and punish them than we could a hurricane.
Of course, there is some domestic involvement which is sometimes detected and punished, and some in countries we can extradite from, but really that does not make a significant impact on the overall attack situation.
