Cybercrime is a complex phenomenon that spans both technical and human aspects. As such, two disjoint areas have been studying the problem from separate angles: the information security community and the environmental criminology one. Despite the large body of work produced by these communities in the past years, the two research efforts have largely remained disjoint, with researchers on one side not benefitting from the advancements proposed by the other. In this paper, we argue that it would be beneficial for the information security community to look at the theories and systematic frameworks developed in environmental criminology to develop better mitigations against cybercrime. To this end, we provide an overview of the research from environmental criminology and how it has been applied to cybercrime. We then survey some of the research proposed in the information security domain, drawing explicit parallels between the proposed mitigations and environmental criminology theories, and presenting some examples of new mitigations against cybercrime. Finally, we discuss the concept of cyberplaces and propose a framework in order to define them. We discuss this as a potential research direction, taking into account both fields of research, in the hope of broadening interdisciplinary efforts in cybercrime research.
翻译:网络犯罪是一个复杂的现象,既涉及技术方面,也涉及人文方面。因此,有两个互不关联的领域从不同的角度来研究这一问题:信息安全界和环境犯罪学。尽管这些社区在过去几年里开展了大量工作,但这两项研究工作在很大程度上仍然脱节,一方面研究人员没有从另一个方面提出的进步中受益。在本文件中,我们主张,信息安全界不妨研究环境犯罪学中开发的理论和系统框架,以更好地减少网络犯罪。为此目的,我们概述了环境犯罪学研究及其如何应用于网络犯罪的情况。我们然后调查信息安全领域提出的一些研究,明确将拟议的减缓和环境犯罪学理论相提并论,并提出一些针对网络犯罪的新减缓的例子。最后,我们讨论网络场所的概念,并提出一个框架,以便界定这些概念。我们讨论这一潜在研究方向,同时考虑到两个研究领域,希望扩大网络犯罪研究的跨学科努力。