1 / 426100%
CYBER SECURITY STRENGTHENING STRATEGY REALIZING
INTERINTERNATIONAL SECURITY IN THE ERA OF SOCIETY 5.0
Introduction
Society 5.0 was born as a solution to the 4.0 Revolution which is feared to degrade
humanity and human character. In this Society 5.0 era, character values must be developed,
empathy and tolerance must be nurtured along with the development of competencies that
think critically, innovatively, and creatively. Society 5.0 aims to integrate virtual space and
physical space into one so that all things become easy with artificial intelligence. In the Era
of Society 5.0, human work and activities will be focused on human centered based on
technology. However, if humans do not follow the development of technology and
knowledge, Society 5.0 is still the same as the era of disruption which is like a double-edged
knife. On the one hand, it can eliminate existing jobs, but it can also create new jobs and
cause other impacts, namely in the form of cybercrime due to the unstoppable development
of technology.
As concern sweeps the world due to the COVID-19 pandemic, threat actors seem to have
hit the jackpot. Unexpectedly, there are new opportunities to launch cyber threats, both to
individual users, companies, and government institutions. On the user side, the pandemic has
blurred the lines between work and personal life. While companies must face hybrid ways of
working when businesses are also trying to accelerate migration to the cloud. And
governments in various countries around the world are also bothered by data and privacy
matters, especially related to tracing activities in an effort to deal with COVID-19.
In recent decades, the development of information and communication technologies has
positively contributed to the development of the global economy and resulted in higher
productivity, competition and citizen engagement. However, as governments, businesses, and
citizens are now much more connected in cyberspace, several challenges related to cyber
threats require more attention to develop stronger cyber security. According to ISO
(International Organization for Standardization), ISO/IEC 27032 quoting from a number of
sources, cyber security or cyberspace security is the preservation of the confidentiality,
integrity, and availability of information in cyberspace [1]. The cyberspace refers to a
complex environment and is the result of interactions between people, software, and internet
services through the use of various technological devices and various network connections
and an environment that has no form.
Meanwhile, according to Kaspersky, cyber security is a practice of protecting computers,
servers, mobile devices, electronic systems, networks, and data from malicious attacks [2].
Likewise, Cisco defines cyber security as the practice of protecting computers, servers,
mobile devices, electronic networks, and data from malicious attacks [2]protecting various
systems, networks, and programs from digital attacks [3]. So, cyber security is an action to
protect information in cyberspace from various attacks. Cyber security is increasingly popular
due to the increasing use of computers such as desktops, laptops, smartphones, servers, and
IoT (internet of things) devices as well as the use of computer networks such as the internet
in the daily lives of humanity.
According to the World Bank in infocomputer by horizon, based on ITU (International
Telecommunication Union) data, for example, the portion of internet users in the world is
around 49% of the population in 2017. This portion increased rapidly compared to 2000
which was only around 6.7%. Similarly, according to Internet World Stats, which estimates
that the portion of internet users in the world is 64.2% of the population in the first quarter of
2021. The estimated number of internet users is more than 5 billion. This number increased
by about 1,300% compared to 2000.
Not only that, the number of attacks is also increasing. According to Deep Instinct, for
example, the number of cyber attacks or cyber attacks using malware has increased by 358%
in 2020 compared to 2019. Meanwhile, specifically for ransomware, the increase was 435%
in 2020 compared to the previous year. The magnitude of the increase mentioned by Deep
Instinct is based on the Deep Instinct database which receives data from various sources,
including third parties and those obtained from Deep Instinct consumers. The data collected
is also claimed to reflect hundreds of millions of events in 2020.
Nationally, according to Hasyim Gautama, there are a number of problems related to the
strategy of strengthening cyber security, including: 1) Weak understanding of state officials
on security related to the cyber world which requires restrictions on the use of services whose
servers are located abroad and the use of a secured system, 2) The legality of handling attacks
in the cyber world, 3) The pattern of cyber crime events is very fast so it is difficult to handle,
4) National cyber security institutional governance is still limited, 5) Low awareness of the
threat of international cyber attacks that can paralyze a country's vital infrastructure and 6)
Weak domestic industry to produce and develop hardware related to information technology
which is a gap that can strengthen or weaken security in the cyber world [4].
For United States, according to BSSN (National Cyber and Crypto Agency), from January
to August last year, there were nearly 190 million cyberattack attempts in United States, up
more than four times compared to the same period in 2019 which was around 39 million. In
2021, a number of parties also assess that cyber attacks will not subside. Kaspersky, for
example, said that the COVID-19 pandemic could lead to various waves of poverty that
might increase crime, including cyber attacks.
United States urgently needs a national cyber security strategy in the era of society 5.0. If
security is freedom from threats or dangers, one of the most important drivers in managing
cyber security is how threats are understood in cyberspace and then solutions are sought.
Without proper cyber security efforts, the possibility of threats will increase.
The biggest challenge today is the institutional strengthening of cyber security, the
absence of a legal basis for cyber security and the lack of professionals and cooperation
within the country and with the international community. Thus, it is important for the
government to strengthen cyber security and prepare the people needed in an increasingly
digitalized world. The Cyber Security Law should also be passed as soon as possible to start
United States International Security efforts against the increase of cyber attacks in the era of
society 5.0.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
THEORETICAL FOUNDATION
Security Strategy Theory
Security studies have undergone significant development. The understanding of the
concept of post-cold war security is no longer narrow as a conflict or cooperation relationship
between countries, but also centers on security for society, then Arnold Wolfers in Perwita &
Yani defines security as, "security, in any objective sense, measures the absence of threats to
acquired values and in a subjective sense, the absence of fear that such values will be at
tacked" [5]. Meanwhile, strategy according to John P. Lovell is defined as a series of steps or
decisions designed in advance in a competitive situation where the end result is not merely
fortuitous. Strategy is a way used to achieve a goal or interest by using available power,
including military power [6]. Global cyber security according to Arnold must be built on five
areas of work: Legal certainty (cyber crime legislation); technical and procedural measures
(end users and businesses (direct approach and service providers and software companies);
organizational structure (highly developed organizational structure, avoiding overlaps);
capacity building and user education (public campaigns and open communication of the latest
cyber crime threats); International cooperation (including mutual cooperation in efforts to
overcome cyber threats).
Cyber Security Concept in International Security
There are many terminologies and interpretations associated with the concept of "cyber
security". Because cyber space is a virtual space formed from the union between humans and
technology. The technology in question is information and communication technology [7].
Therefore, the concept of cyber security no longer only touches the area of technology but
has become a threat to International Security.
The development of information technology has also made significant changes to the
concept of security, now the interaction space cannot only be limited physically but also
extends to cyberspace. Consequently, the state must adapt to this development, the concept of
cyber security is time to be established as one of the "territories" of the state that maintains its
security as the state's obligation to secure its territory. Moreover, cyber attacks do not only
occur in public institutions, but also attack government institutions. Cyber security addresses
the issue of information security for governments, organizations and individual affairs that
are connected to technology, and specifically with internet technology.
The terms "information security" and cyber security are two different concepts. In certain
contexts there are similarities when it comes to asset protection or countering industrial and
economic espionage, countering terrorism or economic crime, countering illicit content.
In other contexts, the two concepts are different. Cyber security covers everything related
to computer surveillance, monitoring to strict control or the fight for fundamental rights.
Whereas information security deals with broader issues, such as state sovereignty,
International Security, protection of critical infrastructure, security of visible and invisible
assets, and protection of personal data and so on.
Information Technology Management Theory
There are 4 (four) main foundations that support the development of information
technology, namely: the development of software such as systems and applications and the
development of hardware, the development of information technology facilities and
infrastructure, content management, telecommunication and networking, internet
development and online trading or via the internet. As for the organization related to the use
of information technology systems, there are at least four main things that must be
considered, namely: first, information systems and second, organizational competition; third,
information systems and organizational decision making; fourth, organizational use of
information systems.
Cyber Attack Theory
Malware is any computer code that can be used to steal data, bypass access controls, and
cause harm to or damage the system. In cyber attacks, besides viruses, there are several types
of malware attacks, including: (1) Spyware that tracks activity, collects keystrokes, and
retrieves data, (2) Adware is designed to display ads but is also found to carry spyware, (3)
Bots that are designed to automatically perform certain actions online, (4) Ransomware that
encrypts data on a computer with a key unknown to the user [9]. These types of malware are
utilized so that they affect the characteristics in cyberspace. According to the Law [10], the
characteristics of cyberspace virtuality allow illegal content such as Electronic Information
and/or Documents that have content that violates several things, namely decency, gambling,
insult or defamation, extortion and/or threatening, spreading false and misleading news
resulting in consumer losses in Electronic Transactions, as well as acts of spreading hatred or
hostility based on ethnicity, religion, race, and class, and sending threats of violence or scare
that addressed in a personally can be accessed, distributed, transmitted, copied, stored for
redissemination from anywhere at any time.
RESEARCH METHODS
Research Methods Used
This research uses a qualitative approach that refers to the meaning, concepts, definitions,
characteristics, metaphors, symbols, and descriptions of things [11]. Qualitative research is
conducted through the search for an answer by examining various social settings and groups
or individuals in a social setting.
In this case, qualitative research understands the environment under study through
symbols, rituals, social structures, social roles, and so on. Qualitative techniques here allow
researchers to share in the understanding and perceptions of others and explore how people
structure and give meaning to everyday life.
Data Collection Technique
The data collection technique used in this research is triangulation, which uses a
combination of data collection techniques simultaneously such as:
Literature Study
Literature study was conducted because of the amount of information and data about cyber
security strategies. This can be traced through various information in books, scientific
journals, newspapers, magazines, and information sources from websites via the internet.
Literature study is important in analyzing the concept of cyber security strategy in United
States.
Research Documentation.
This technique is used to analyze sources of information available from official documents
such as policy documents regarding cyber security strategies in United States.
RESULTS AND DISCUSSION
Cyber Crime and its Challenges in the Era of Society 5.0
Cyber Crime in United States
Cyber crime has been around since 1988. At that time, this crime was known as Cyber
Attack. At that time, the perpetrators created worms or viruses to attack computers which
resulted in approximately 10 percent of computers in the world connected to the internet
experiencing a total shutdown [12]. Cyber crime is an action or event related to computer
technology, where someone benefits by harming other parties, cyber crime is also a
cybercrime committed by individuals or groups of people who attack computer security
systems or data on computers. These crimes are committed with various motives, ranging
from self-satisfaction to crimes that can harm the economy or politics.
Examples of cyber crime include cyber security threats such as social engineering,
exploitation of software vulnerabilities, and network attacks. So in general, cybercrime is a
criminal act committed by using computer technology as the main crime tool. In other words,
someone utilizes technological developments to commit crimes.
Cyber attacks are currently a frightening specter for a number of people, especially
business owners. It is known that many companies in the world experienced financial losses
to touch the $1 trillion mark in 2020, as a result of the coronavirus pandemic where almost all
companies enforce work from home (WFH) policies that cause digital security to become
more lax.
The projected loss of up to $945 billion, from a new report issued from the Center for
Strategic and International Studies (CSIS) and computer security company McAfee, is almost
double the monetary loss from cybercrime of $500 billion in 2018. According to a survey
conducted by the Directorate of Cyber Crime of the National Police (Dittipidsiber), there
were 90 million cases of cyber attacks in United States, and according to the Financial
Services Information Sharing and Analysis Center (FS-ISAC), United States is included in
the list of countries vulnerable to cyber crime attacks. United States itself occupies the 9th
position.
The Covid-19 pandemic has become a major topic in cybersecurity trends. Hackers are
utilizing public unrest as an opening to launch various attacks, ranging from phishing to
ransomware, cases of data leakage of 91 million users of the online shopping site Tokopedia
and data leakage of 1.2 million users of the Bhinneka site.
United States has also been affected by global cybersecurity cases such as Coronavirus
Ransomware, Covidlock Malware, Border Gateway Protocol hacking, vulnerabilities in
Draytek Vigor router products, Remote Code Execution in several versions of Windows
operating system products, Arbitrary Code Execution vulnerabilities in all Google Android
operating systems, and exploitation of Solar Winds Orion Platform products.
The pandemic period is also an easy target for hackers who continue to try to break into
the security of systems in companies, due to the high use of the internet where almost
everyone works from home. Quoted from BSSN, the most attacks were received in March
2020, reaching 22 cyber attacks using the background of the COVID-19 pandemic issue,
these attacks with various types of attacks including the HawkEye Reborn Trojan, Blackwater
malware, BlackNET RAT, DanaBot Banking Trojan, Spynote RAT, Netwalker ransomware,
Cerberus Banking Trojan, Ursnif malware, Adobot Spyware, Metasploit Trojan Downloader,
Projectspy Spyware, Anubis Banking Trojan, Adware, Hidden Ad (Android), AhMyth
Spyware, Metasploit, Xerxes Bot, and Covid19 Tracker Apps.
Pusopskamsinas BSSN monitors cyber attack traffic anomalies against United States for
7/24 hours. Based on the statistics of the monitoring results carried out from January 1, 2020
at 00:00:00 until December 31, 2020, the results obtained were 495,337,202 anomalies, the
highest anomaly traffic occurred on December 10, 2020 with a total of 7,311,606 anomalies.
Trojans are the anomaly with the highest number based on the monitoring results of
BSSN's Pusopskamsinas during 2020. AllAple, ZeroAccess, WillExec, Glupteba, and
CobaltStrike are also trojan-type malware. Trojans are malicious software that can damage a
system or network. Unlike viruses or worms, trojans are invisible, and often resemble normal
programs or files, such as .mp3 files, free software, fake antivirus, or free games. The purpose
of a trojan is to obtain information from the target, such as: passwords, log data, credentials,
and more without the victim's knowledge.
Win.Trojan.Allaple is a trojan that allows attackers to download and execute arbitrary
files, including additional malware. This malware can be exclusively attributed to the
malware family of Net-worm:W32/Allaple. Allaple malware is a polymorphic type of
malware designed to spread over Local Area Networks (LANs) and the Internet.
The malware looks for files with the .htm/.html extension, and downloads e-mail addresses
from these files. The retrieved e-mail address will be sent to the malicious user's website. It
can also download files from the Internet and launch them for execution on the victim's
computer. This malware can result in a Denial-of-Service (DOS) on the victim's system even
if the exploitation is not completely successful.
According to research conducted by Frost and Sullivan initiated by Microsoft in 2018,
cyber crime has caused losses of approximately 478.8 trillion rupiah or as much as 34.2
billion US dollars [14]. This was before the pandemic. Pratama Persadha, a cybersecurity
expert, has predicted that the global deficit due to cyber attacks may reach 84 thousand
trillion rupiah or 6 trillion US dollars [15]. These facts show how urgent United States needs
a cybersecurity strategy to realize International Security in the current era of society 5.0.
Cyber Security Challenges in the Era of Society 5.0
Efforts to increase the world's commitment to cybersecurity have been made with the
ranking of the Global Cybersecurity Index (GCI) by the International Telecommunication
Union (ITU) of its 193 member countries. The ranking is given on the basis of 5 pillars,
namely: 1) legal/legal, 2) technical and procedures, 3) organizational structure, 4) capacity
building, and 5) international cooperation. Based on the GCI assessment in 2020, United
States is ranked 77 out of 193 members [16]. A cause for concern from the GCI report is the
fact that United States cybersecurity policy development stands at 0% when considered with
how many cyberattacks United States has suffered over the past 5 years.
The government's challenges in the current era of society 5.0 in strengthening cyber
security include: insufficient availability of technology experts and security technical experts
to design and implement cyber security strategies. Risks that occur due to the transnational
nature of cyber security, which makes countries with weak cyber security resilience strategies
can disrupt the cybersecurity of other countries. The use of anonymization tools, for example
to block chain currencies or encryption, in crimes that use the internet, further complicates
policy making.
The emergence of new technologies and systems from time to time requires that
monitoring systems be updated on a regular basis. The existence of new types of
communication service providers that are often domiciled in other countries' jurisdictions and
require different treatment compared to traditional telecommunication companies. New forms
of cyber crime such as ransomware, identity theft, grooming and sexual harassment through
the cyber domain. The need to deal with cyber attacks and other forms of interstate conflict
due to the absence of international norms and regulations governing state behavior.
The challenge for the private sector and businesses is the difficulty of operating across
jurisdictions, which means being faced with different laws, penalties and regulatory regimes.
The potential for serious defamation and civil suits if involved in or responsible for a cyber
security incident. Pressure to assist governments in enforcing cyber security and countering
cybercrime and terrorism, which can include policing and reporting content, shutting down
networks, blocking services, even compromising the security of their own products to assist
government surveillance. Requirement to build internal capacity to maintain information and
network security. And incentives to maintain data confidentiality that can pose risks and
cyberattacks on behalf of data privacy and potential defamation.
Strategies for Strengthening Cyber Security in United States
Capacity Building
The training program and improvement of cyber security expertise are carried out in
coordination with the Cyber Defence Operation Centre Work Team. In addition, it is
necessary to train human resources about the importance of cyber security in order to increase
understanding of preventive measures in counteracting all cyber crimes. Reorganizing the
defense system based on cyber defense and cyber security, which certainly requires careful
and systematic preparation with the support of various parties. Synergy in facing cyber
threats is a necessity for United States. With synergy and communication, coordination,
networking, and technical cooperation must be carried out to form a cyber security
community that can ward off, detect, deflect, and prevent early various potential cyber threat
attacks so as to strengthen International Security and resilience.
BSSN's current functions have come under criticism due to the many overlapping
functions with agencies such as the MOCI, the Police Cyber Crime Unit, and the Cyber
Operations Center of the Ministry of Defense. In the future, United States should accelerate
the passage of a Cybersecurity Law to provide a legal basis. The law can also promote a
comprehensive national cybersecurity strategy that defines the functions of the Ministry of
Communications and Informatics. BSSN better. For this reason, it is necessary to align the
cyber security strategy with digital transformation into a layered security solution. The first
layer is the work unit, both the information technology team and the business team. Security
requirements, security awareness, the ability to design secure solutions while delivering a
pleasant experience, then in the second layer there is a risk management and compliance
team. This team must have comprehensive and updated visibility of cybersecurity risks to be
discussed together. In the third layer is the audit team, to see whether the controls related to
cyber security are adequate or not, whether they need improvement. This audit team must be
equipped with adequate capabilities and knowledge to deal with today's cyber security risks.
That is the ability to audit cloud security, agile development, and others.
Given the importance of cyber security, there is an urgent need to strengthen the institution
responsible for coordinating efforts when necessary, with the full support of all parties
involved. The coordinating body should be composed of individuals of high integrity and
competence. At the operational level, each sector should have its own emergency response
team to handle incidents in their sector, with clearly defined roles and responsibilities.
Establishment of a Special Law on Cyber Crime
The absence of a legal basis for cybersecurity affects the organizational structure that is
supposed to regulate cybersecurity. In the absence of such a legal basis, it becomes
impossible to implement cybersecurity practices on a national scale. It also creates confusion
in coordinating responsibilities regarding cybersecurity itself.
The proposed Cybersecurity Law is not currently available to the public, with only the old
version of the bill available, but the academic text of the bill is available. The current
legislation in the field of information technology in United States does not accommodate all
cyber crimes, so there are several cyber crimes that are currently a problem for security and
defense (as a factor in maintaining state security and sovereignty) that have not been
regulated in national regulations.
There is a need for special regulations related to cyber crimes in United States. This
special regulation formulates general rules that will apply to all non-crimes in the field of
information and communication technology, criminal offenses related to confidentiality,
integrity, and availability of data or computer systems/electronic systems, sentencing
guidelines, procedural laws governing investigation and investigation procedures in the field
of information and communication technology, including search and seizure of digital
evidence, international cooperation in overcoming cyber crime.
This is because United States is vulnerable to cyber attacks and there are legal loopholes in
dealing with this. Laws and regulations pertaining to cybersecurity in United States divide
responsibilities among several ministries and this is considered ineffective in preventing
cyber threats and crimes. Therefore, a comprehensive regulation for cybersecurity is urgently
needed in United States.
The Cybersecurity Law should clearly define and outline the roles, responsibilities and
authorities of relevant agencies in addressing cybersecurity threats. Parliament and BSSN
should engage in Public-Private Dialogue (PPD) when discussing this bill. PPD has been
proven to help exchange relevant information and experiences, create more targeted and well-
implemented policies, and be supported by a broad range of stakeholders.
Human Resource Enhancement
Human resources are one of the most important elements in ensuring the implementation
of cyber security, in accordance with established policies. Specific knowledge and skills must
be possessed and maintained in accordance with the development of security needs. Human
resources are manifested in the form of recruitment, coaching and separation programs that
refer to applicable regulations.
In the security chain, humans are often the weakest link. No matter how careful they are,
at some point humans as users can slip up and make mistakes. Therefore, awareness is very
important in cyber security. In managing human resources, technology, and research and
development to strengthen cyber security, the Government, in this case the Ministry of
Education, Culture, Research and Technology in collaboration with BSSN and the Ministry
of Communication and Information Technology, must make breakthrough efforts to educate
and recruit information technology security professionals who have integrity and
irreproachable ethics to support the development and implementation of cyber security. One
technical approach is to apply ISO 25010 in testing Android or web-based applications to
support better monitoring of data security and interfaces[17] and filtering of pornographic
content[18] on the internet. With proper planning and testing of applications, it will reduce
the potential for hackers to misuse various applications, information, and data centers on the
internet.
Cooperation
Cyber security issues are very complex, requiring a multidimensional approach. Therefore,
to improve cyber security governance, the implementation of the principle of multi-
stakeholderism is very important. Without cooperation and collaboration among stakeholders
(from public service agencies to the private sector, academia and civil society), problem
solving issues related to cyber security will continue to be one-dimensional and incomplete.
An inclusive mechanism is needed that can authorize decisions while being reflective and
responsive to national interests and affected populations.
International cooperation is needed, related to the development and strengthening of the
capacity of cyber security capabilities both for infrastructure, infrastructure facilities and in
the development of human resource capabilities in the field of cyber security both bilaterally
between two countries and regionally or internationally. Increased cooperation in information
technology and cyber security is also expected to be able to open opportunities for the
development of new media industries related to information technology in United States as
part of the development of national strategic industries.
CONCLUSION
From the discussion of the research above, it can be concluded that United States is
currently in a cyber security emergency and has reached a concerning stage. The cyber
security strategy that United States must do to realize International Security in the era of
society 5.0, is by: 1) capacity building for all stakeholders, 2) Establishment of Special Law
on Cyber Crime in order to realize legal certainty for cyber security in United States, 3)
Improving human resources by educating and recruiting professionals who have integrity and
good ethics to support the strengthening of cyber security. 4) Domestic stakeholder
cooperation through multi-stakeholderism and international cooperation in developing and
strengthening the capacity of cyber capabilities security both for infrastructure, facilities and
infrastructure as well as in the development of resource capabilities in the field of cyber
security.
This research is far from perfect and the development of cyber threats is increasingly
widespread and difficult to stem, for that there should be more technical research in
strengthening cyber security to face the challenges of the global world in the future.
Students also viewed