    Conducting research with school children and data in line with “ethical principles” lawyers at work in the ethics management of the H2020 mathisis project

    Recent advancements in human-computer interaction, machine learning and in artificial intelligence hold the potential to influence both the curriculum and the pedagogy of school children. While the impacts of new technologies remain uncertain, ongoing research and innovation projects are already developing and testing such technologies in schools. This article builds on the experience of the authors as advisors for a Horizon 2020 (H2020) project conducting research with schoolchildren in twenty schools across the United Kingdom, Italy and Spain (the project MaTHiSiS). This contribution presents and discusses how the authors lived up to the obligation of conducting research in line with “ethical principles”

    Avaliações de impacto sobre a proteção de dados na União Europeia : complementando o novo regime jurídico em direção a uma proteção mais robusta dos indivíduos

    Este documento fornece recomendações para a União Europeia (UE) que facilitam o cumprimento da exigência legal de elaboração de relatórios de Avaliação de Impacto sobre a Proteção de Dados (AIPD), conforme definido pelo Regulamento Geral de Proteção de Dados (RGPD), com o objetivo de atingir uma proteção de dados pessoais mais robusta. Em abril de 2016, a UE concluiu a parte central da reforma do seu regime jurídico de proteção de dados pessoais. A UE está, atualmente, preparando medidas e diretrizes de implementação e manuais para dar pleno efeito às novas disposições jurídicas antes da sua entrada em vigor em maio de 2018. Tal reforma introduziu, dentre outras ‘novidades’, uma obrigação legal de elaboração de um AIPD. Entretanto, tal exigência padece de alguns pontos fracos. De forma a remediar essas limitações e para alimentar esse processo contínuo de elaboração de políticas, este documento de política (‘policy brief’) busca esboçar boas práticas para um tipo genérico de avaliação de impacto, i.e., recomendado para diferentes áreas (seção II). A seção III faz uma avaliação preliminar sobre como essas boas práticas se relacionam com os requerimentos específicos determinados pelo RGPD para relatórios de avaliação de impacto, i.e., Data Protection Impact Assessment (DPIA). Essas seções são precedidas por informações contextuais sucintas sobre avaliações de impacto como por exemplo: definição, panorama histórico, suas vantagens e desvantagens (seção I). A Seção IV conclui com recomendações para o cumprimento da exigência de AIPDs pelo RGPD de forma a: (1) expandir o âmbito de aplicação dessa obrigação legal; (2) desenvolver métodos para a realização dessas avaliações de impacto; (3) estabelecer ‘centros de referência’ em AIPD nas autoridades nacionais de controle dos tratamentos de dados pessoais. Este documento de política é endereçado principalmente a formuladores de políticas públicas na União Europeia e em seus Estados-membros, sem prejuízo do potencial interesse que possa despertar nos seus pares ao redor do mundo

    Εκτίμηση αντικτύπου σχετικά με την προστασία δεδομένων στην Ευρωπαϊκή Ένωση : Συμπληρώνοντας το νέο νομικό πλαίσιο προς μία πιο ισχυρή προστασία των φυσικών προσώπων

    Αυτό το άρθρο παρέχει συστάσεις προς την Ευρωπαϊκή Ένωση (ΕΕ) ώστε να συμπληρώσει την απαίτηση εκτίμησης αντικτύπου σχετικά με την προστασία δεδομένων (ΕΑΠΔ), όπως προβλέπεται στον Γενικό Κανονισμό για την Προστασία Δεδομένων (ΓΚΠΔ), στοχεύοντας στην επίτευξη ισχυρότερης προστασίας προσωπικών δεδομένων. Τον Απρίλιο του 2016 η ΕΕ κατέληξε στο κυρίως μέρος της μεταρρύθμισης του νομικού πλαισίου για την προστασία προσωπικών δεδομένων. Η Ένωση αυτήν την στιγμή προετοιμάζει μέτρα εφαρμογής και κατευθυντήριες γραμμές για να εκτελέσει στο ακέραιο τις νέες νομικές διατάξεις πριν από την εφαρμογή τους τον Μάιο του 2018. Αυτή η μεταρρύθμιση εισάγει, μεταξύ άλλων «καινοτομιών», μία νέα νομική υποχρέωση για τη διενέργεια της ΕΑΠΔ. Ωστόσο, σ ’αυτήν την υποχρέωση διαπιστώνονται αδυναμίες. Προκειμένου να αντιμετωπιστεί αυτό, ενημερώνοντας αυτήν τη διαρκή διαδικασία χάραξης πολιτικής, η παρούσα συνοπτική έκθεση αποσκοπεί στο σχεδιασμό βέλτιστων πρακτικών για έναν γενικό τύπο εκτίμησης αντικτύπου, π.χ. που συστήνεται για διαφορετικούς τομείς (Ενότητα ΙΙ). Στην Ενότητα ΙΙΙ επιχειρείται μία πρώιμη αξιολόγηση του πώς αυτές οι βέλτιστες πρακτικές σχετίζονται με τη συγκεκριμένη εκτίμηση αντικτύπου η οποία προβλέπεται στον ΓΚΠΔ, ήτοι την ΕΑΠΔ. Των ενοτήτων αυτών προηγούνται συνοπτικές βασικές πληροφορίες στην εκτίμηση αντικτύπου, όπως: ορισμός, ιστορική επισκόπηση, θετικά και αρνητικά χαρακτηριστικά (Ενότητα Ι). Η Ενότητα ΙV ολοκληρώνει το άρθρο υποβάλλοντας προτάσεις για τη συμπλήρωση της υποχρέωσης ΕΑΠΔ στον ΓΚΠΔ: (1) να επεκταθεί το πεδίο της υποχρέωσης ΕΑΠΔ στον ΓΚΠΔ (2) να αναπτυχθούν μέθοδοι για τη διενέργεια αυτής της εκτίμησης (3) να ιδρυθούν «κέντρα αναφοράς» ΕΑΠΔ στις Αρχές Προστασίας Δεδομένων (ΑΠΔ). Αυτή η συνοπτική έκθεση απευθύνεται κυρίως στους φορείς χάραξης πολιτικής στην ΕΕ – και στο επίπεδο Κρατών-Μελών, παρά το γεγονός ότι μπορεί δυνητικά να γίνει αντικείμενο ενδιαφέροντος για τους ομολόγους τους σε παγκόσμιο επίπεδο

    Research trends, challenges, and emerging topics in digital forensics: A review of reviews

    Due to its critical role in cybersecurity, digital forensics has received significant attention from researchers and practitioners alike. The ever increasing sophistication of modern cyberattacks is directly related to the complexity of evidence acquisition, which often requires the use of several technologies. To date, researchers have presented many surveys and reviews on the field. However, such articles focused on the advances of each particular domain of digital forensics individually. Therefore, while each of these surveys facilitates researchers and practitioners to keep up with the latest advances in a particular domain of digital forensics, the global perspective is missing. Aiming to fill this gap, we performed a qualitative review of all the relevant reviews in the field of digital forensics, determined the main topics on digital forensics topics and identified their main challenges. Despite the diversity of topics and methods, there are several common problems that are faced by almost all of them, with most of them residing in evidence acquisition and pre-processing due to counter analysis methods and difficulties of collecting data from devices, the cloud etc. Beyond pure technical issues, our study highlights procedural issues in terms of readiness, reporting and presentation, as well as ethics, highlighting the European perspective which is traditionally stricter in terms of privacy. Our extensive analysis paves the way for closer collaboration among researcher and practitioners among different topics of digital forensics.Cyber Securit