The computer security research community regularly tackles ethical questions. The field of ethics / moral philosophy has for centuries considered what it means to be "morally good" or at least "morally allowed / acceptable". Among philosophy's contributions are (1) frameworks for evaluating the morality of actions -- including the well-established consequentialist and deontological frameworks -- and (2) scenarios (like trolley problems) featuring moral dilemmas that can facilitate discussion about and intellectual inquiry into different perspectives on moral reasoning and decision-making. In a classic trolley problem, consequentialist and deontological analyses may render different opinions. In this research, we explicitly make and explore connections between moral questions in computer security research and ethics / moral philosophy through the creation and analysis of trolley problem-like computer security-themed moral dilemmas and, in doing so, we seek to contribute to conversations among security researchers about the morality of security research-related decisions. We explicitly do not seek to define what is morally right or wrong, nor do we argue for one framework over another. Indeed, the consequentialist and deontological frameworks that we center, in addition to coming to different conclusions for our scenarios, have significant limitations. Instead, by offering our scenarios and by comparing two different approaches to ethics, we strive to contribute to how the computer security research field considers and converses about ethical questions, especially when there are different perspectives on what is morally right or acceptable.
翻译:计算机安全研究界经常处理伦理问题。道德/道德哲学领域几个世纪以来一直在考虑什么是“医学好”或至少“允许/接受”的含义。哲学的贡献包括:(1) 评估行动的道德 -- -- 包括既定的间接和道德框架 -- -- 的框架,以及(2) 道德困境的情景(如牵引问题),这些情景有助于讨论和从思想上研究道德推理和决策的不同观点。在一个经典的电车问题中,结果学和神学分析可能会产生不同的观点。在这个研究中,我们明确制定和探索计算机安全研究中的道德问题与伦理/道德哲学之间的联系,方法是通过创建和分析像计算机安全这样的奇特问题的道德困境,来评估行动的道德道德道德道德道德道德,并在这样做时,我们力求促进安全研究人员之间关于安全研究相关决定的道德问题的对话。我们明确不试图界定道德上正确或错误的内容,也不试图为另一个框架辩护。事实上,我们所研究的理论和伦理框架,除了为我们的假设提出不同观点提出不同的结论之外,还特别通过比较计算机的道德领域,如何在道德上提出可接受的道德观点,我们如何看待不同的选择。</s>