1887

OECD Digital Economy Papers

The OECD Directorate for Science, Technology and Innovation (STI) undertakes a wide range of activities to better understand how information and communication technologies (ICTs) contribute to sustainable economic growth and social well-being. The OECD Digital Economy Papers series covers a broad range of ICT-related issues and makes selected studies available to a wider readership. They include policy reports, which are officially declassified by an OECD Committee, and occasional working papers, which are meant to share early knowledge.

English, French

Understanding the digital security of products

An in-depth analysis

Economies and societies are increasingly reliant upon “smart products” that contain code and can connect to one another, e.g. through the Internet. Recent cyber-attacks such as Mirai, WannaCry, NotPetya and SolarWinds have underlined that the exploitation of vulnerabilities in smart products can have severe economic and social consequences. Such attacks increasingly threaten users’ safety and well-being, as well. This report shows that economic factors play an important role in the relative “insecurity” of smart products. It develops an analytical framework based on the value chain and lifecycle of smart products, and applies the framework to three case studies: computers and smartphones, consumer Internet of Things (IoT) devices and cloud services. It demonstrates that complex and opaque value chains lead to a misallocation of responsibility for digital security risk management, while significant information asymmetries and externalities often limit stakeholders’ ability to behave optimally.

English

This is a required field
Please enter a valid email address
Approval was a Success
Invalid data
An Error Occurred
Approval was partially successful, following selected items could not be processed due to error