Правовий погляд на функціонування технологій “інтернет речей” та “розумний будинок”

Уланська Марія

Дата публікації:

DOI: https://doi.org/10.69724/2786-8834-2024-1-1-233-254

Обкладинка. 1-й випуск

Анотація

В статті досліджено рівень правового врегулювання в світі, відносно нового об’єкту цивільно-правових відносин – технологій інтернету речей (Internet of Things або IoT), безпосередньо розумного будинку. Встановлено, що в різних країнах існує достатньо регулятивних документів стосовно IoT, захисту даних та інш. Але водночас важливими є: 1) відмінності між IoT і штучним інтелектом, 2) сутність технології розумного будинку не тільки як сукупності різних пристроїв, а й цілісного «організму». Логічним постає висновок про те, що наявного наразі стану врегулю- вання окремо приладів IoT або принципів штучного інтелекту, недостатньо для високого, лаконічного і доречного рівня встановленого правового контролю над функціонуванням smart houses.

Враховуючи аналіз судової практики та нормативно-правових актів різних країн в індустрії технологій, до юридичного науково-практичного простору вно- ситься пропозиція для розробки спочатку загальних принципів функціонування розумних будинків, а згодом створення нової бази норм права. Зміст юридично важливих принципів функціонування технології розумного будинку автором статті вбачається у наступному: 1) фундаментальні принцип інформаційної безпеки для всеможливих систем розумного будинку; 2) охорона персональних даних; 3) громадська довіра; 4) повага до приватного життя; 5) науково-практична визначеність.

Посилання

List of legal documents Legislation

  1. The EU General Data Protection Regulation. The EU GDPR (Directive 95/46/

    EC). URL:https://eur-lex.europa.eu/legal-content/EN/TXT/HTML/?amp;from

    =EN&uri=CELEX%3A32016R0679 (in English)

  2. The Directive on security of network and information systems. EU 2016/1148.

    https://eur-lex.europa.eu/legal-content/EN/TXT/PDF/?uri=CELEX:32016L1148&

    from=EN (in English)

  3. IoT Cybersecurity Improvement Act of 2020. URL:https://www.congress.gov/

    bill/116th-congress/house-bill/1668(in English)

    1. Senate Bill No. 327 – Information privacy: connected devices. SB-327. California State Senate. 28 September 2018z URL:https://leginfo.legislature.ca.gov/faces/ billTextClient.xhtml?bill_id=201720180SB327(in English)
    2. House Bill 2395. HB 2395. Oregon House of Representatives. 16 April 2019. (in English)
    3. Code of Practice – Securing the Internet of Things for Consumers. Code of Practice. Australian Government, Department of Home Affairs. October 2020. URL:https:// www.homeaffairs.gov.au/reports-and-pubs/files/code-of-practice.pdf (in English)
    4. Requisitos de seguranзa cibernйtica para equipamentos para telecomunicaзхes. Act n 77, 5th of January 2021. Brazilian Agency of Telecommunications (Anatel). 5 January 2021. URL:https://informacoes.anatel.gov.br/legislacao/atos-de-certificacao- de-produtos/2021/1505-ato-77 (in Portuguese)
    5. Personal Information Protection and Electronic Documents Act. PIPEDA. Office of the Privacy Commissioner of Canada. August 2020. URL:https://www.priv.gc.ca/ en/privacy-topics/technology/gd_iot_man/ (in English)
    6. Guidelines for the Construction of IoT Basic Security Standard Systems (2021 Edition). IoT BSSS. Ministry of Industry and Information Technology (MIIT). 23 September 2021. URL:https://www.miit.gov.cn/cms_files/filemanager/1226211233/ attach/202110/ 6615b008ceb14cb789e20ca9badab163.pdf (in English)
    7. IoT Security Safety Framework. IoT-SSF. Ministry of Economy, Trade and Industry (METI). 5 November 2020. URL:https://www.meti.go.jp/policy/netsecurity/wg1/ IoT-SSF_ver1.0_eng.pdf (in English)
    8. Internet of Things Regulatory Framework. IoT Regulatory Framework. Communication and Information Technology Commission. September 2019. URL:https://www.cst.gov.sa/en/RulesandSystems/RegulatoryDocuments/ Documents/IoT_REGULATORY_FRAMEWORK.pdf (in English)
    9. Cybersecurity labelling scheme. CSL. Cyber Security Agency of Singapore (CSA). October 2020. URL:https://www.csa.gov.sg/our-programmes/certification-and- labelling-schemes/cybersecurity-labelling-scheme (in English)
    10. Internet of Things Regulatory Policy. IoT Regulatory Policy. Telecommunications Regulatory Authority. 22 March 2018. URL:https://tdra.gov.ae/-/media/About/ regulations-and-ruling/EN/Regulatory-Policy—Internet-of-Things–IoT–pdf.ashx (in English)
    11. Decision No. 736/QĐ-BTTTT on 31 May 2021 («Decision») Setting out the List of Baseline Requirements to Ensure Cyber Security for Consumer IoT Devices. List of Baseline Cyber Security Requirements for Consumer IoT. Authority of Information Security (AIS). 31 May 2021. URL:https://mic.gov.vn/Upload_Moi/VanBan/736QD. PDF (in English)
    12. Pro okhoronu prav na vynakhody i korysni modeli. [On the Protection of Rights to Inventions and Utility Models.] Zakon Ukrainy [Law of Ukraine] vid 15.12.1993.

      No 3687-XII URL: https://zakon.rada.gov.ua/laws/show/3687–12#Text (accessed: 22.10.2023) (in Ukrainian).

      1. Proavtorskepravoisumizhniprava.[OnCopyrightandRelatedRights.]ZakonUkrainy

        [Law of Ukraine] vid 01.12.2022. No2811-IX URL: https://zakon.rada.gov.ua/laws/ show/2811–20?find=1&text=%D0%B5%D1%81%D0%BA%D1%96%D0%B7#w1_2 (accessed: 20.10.2023) (in Ukrainian).

      2. Pro okhoronu prav na znaky dlia tovariv i posluh. [On the Protection of Rights to Trademarks and Service Marks] Zakon Ukrainy [Law of Ukraine] vid 15.12.1993. No 3689-XII URL: https://zakon.rada.gov.ua/laws/show/3689–12#Text (accessed: 12.10.2023) (in Ukrainian).

      Cases

      1. John Baker Orange v. Ring LLC and Amazon.com, INC. URL:https://

        www.documentcloud.org/documents/6593079-JOHN-BAKER-ORANGE-v-RING-

        LLC-and-AMAZON-COM–INC (in English)

      2. Ashley Lemay, Dylan Blakeley, Tania Amador, and Todd Craig v. Ring LLC.

        URL:https://www.classaction.org/media/lemay-et-al-v-ring-llc.pdf(in English)

      Bibliography Authored books

      1. Setiawan Awan dan Yulianto Erwin, Keamanan Dalam Media Digital. Bandung:

        Informatika Bandung. 2020 (in English)

      2. Lindsay D., Wilkinson G., Wright E. Regulation of Internet of Things Devices

        to Protect Consumers. June 2022. p. 152 URL:https://accan.org.au/files/ Grants/2022 %20UTS%20IOT/ACCAN%20IoT%20Project%20Final%20 Report_20622_Clean_Accessible.pdf (in English)

      Journal articles

      1. Derev’ianko Yu.V., Krasnikova O. L. Doslidzhennia mozhlyvostei «intelektualnoho

        budynku» [Study of the possibilities of the «intelligent house»] (2010) 1. Pravo

        i Bezpeka. 223–226. URL: https://cutt.ly/DbmPIO9 (in Ukrainian).

      2. Fathur Zaini Rachman. Smart Home Berbasis IoТ. (2017) 2. Snitt Politeknik Negeri

        Balikpapan. Vol (in English)

      3. Duzhak I. O. Rozumnyi budynok. [Smart home.] (2013) 13–14. Avtomatyzatsiia

        tekhnol. i biznes-protsesiv. 31–33. URL: http://journals.uran.ua/atbp/article/

        download/32920/29533 (in Ukrainian).

        1. Spasybo-Fatieieva I. V. Transformery vlasnosti v indyvidualno-suspilnomu aspekti. [ Transformers of property in the individual-social aspect.] (2006.) 1 (44). Visnyk Akademii pravovykh nauk Ukrainy. Pravo, 91–100. (in Ukrainian).
        2. Bilova A. O., Onyshchenko V. V. Metody zabezpechennia bezpeky rozumnoho budynku. [Methods of ensuring the security of a smart home. ] (2019) 2 Kiberbezpeka: osvita, nauka, tekhnika. 134–141. https://u.to/SnFMGw (in Ukrainian).
        3. Kopytko, V., Shevchuk, L., Yankovska, L., Semchuk, Z., & Strilchuk, R. Smart Home and Artificial Intelligence as Environment for the Implementation of New Technologies. Path of Science. 2018. Vol 4(9), 2007–2012. URL:https:// doi.org/10.22178/pos.38–2 (in English)
        4. Pekka Ramula. What AI and IoT Can Do For Smart Homes. URL: https:// www.linkedin.com/pulse/httpswwwonpassivecomreg5f3lanprn4obqpvqidkkzw3d 3d-peter-ramula?utm_source=share&utm_medium=member_ios&utm_campaign =share_via(in English)
        5. Ring Sued in Class Action for Hacking Vulnerability. Law Street Media. (2019, December 30). URL:https://lawstreetmedia.com/news/tech/ring-sued-in-class- action-for-hacking-vulnerability/ (in English)
        6. Report: Orvibo Smart Home Devices Leak Billions of User Records. VpnMentor. URL:https://www.vpnmentor.com/blog/report-orvibo-leak/ (in English)
        7. Exposed Orvibo database leaks two billion records. (2019, July 1). SC Media. URL:https://www.scmagazine.com/news/exposed-orvibo-database-leaks-two-billion- records (in English)
        8. Smart Homes and Liabilities: A Brave New World. The National Law Review. URL:https://www.natlawreview.com/article/smart-homes-and-liabilities-brave-new- world (in English)
        9. The Cybersecurity Act. Regulation (EU) 2019/881 of April 17 2019. URL:https:// eur-lex.europa.eu/legal-content/EN/TXT/PDF/?uri=CELEX:32019R0881& from=EN (in English)
        10. Albany, M., Alsahafi, E., Alruwili, I., & Elkhediri, S. A review: Secure Internet of thing System for Smart Houses. 2022. 201. Procedia Computer Science. 437–444. URL:https://doi.org/10.1016/j.procs.2022.03.057 (in English)

          Nekit K. H. Tsyfrovi dani ta informatsiia yak ob’iekty prava vlasnosti. [Digital data

          and information as objects of property rights.] (2021) 42 Tsyvilistychni problemy IT-prava. 38–43 (in Ukrainian). Conference papers

        36. Pratama, B., & Jasmine, R. Smart Home Appliances Regulation and Principles.

        Proceedings of the 4th International Conference on Indonesian Legal Studies, ICILS 2021, June 8–9 2021, Semarang, Indonesia. URL: https://doi.org/10.4108/ eai.8-6-2021.2314344 (in English)

        37. E. Fernandes, J. Jung, A. Prakash Security Analysis of Emerging Smart Home Applications. 2016 IEEE Symposium on Security and Privacy. http://iotsecurity.eecs.umich.edu/img/Fernandes_SmartThingsSP16.pdf (in English)

        38. V. Sivaraman, D. Chan, D. Earl, and R. Boreli, «Smart-phones attacking smart- homes,» in Proceedings of the 9th ACM Conference on Security & Privacy in Wireless and Mobile Networks. ACM, 2016. http://www2.ee.unsw.edu.au/~vijay/ pubs/conf/ 16wisec.pdf (in English)

        Theses
        39. Kokhanovska O. V. Tsyvilno-pravovi problemy informatsiinykh vidnosyn v Ukraini

        [Civil and legal problems of information relations in Ukraine] (avtoref dys dokt. yuryd nauk, Kyivskyi natsionalnyi universytet imeni Tarasa Shevchenka, 2006) URL:http://referatu.net.ua/referats/7569/165907 (in Ukrainian).

        Websites

        1. How Hackers Are Breaking Into Ring Cameras, Vice, December 11, 2009,

          URL:https://www.vice.com/en_us/article/3a88k5/how-hackers-are-breaking-into-

          ring-cameras (in English)

        2. Hackers are taking Control of Ring Cameras and using them to taunt both adults

          and children, Inc., URL: https://www.inc.com/minda-zetlin/ring-camera-hacked-

          hackers- bitcoin-ransom-security.htm (in English)

        3. Team, T. Why Smart Home Devices Are A Strong Growth Opportunity For Best Buy.

          Forbes. URL: https://www.forbes.com/sites/greatspeculations/2017/07/05/why-

          smart-home-evices-are-a-strong-growth-opportunity-for-best-buy/ (in English)

        43 Prava rozumnoho budynku. Yurydychni fishky IOT. [Smart home rights. Legal chips of IOT.] 2017, December 25. (Legal IT Group.) URL: https://legalitgroup.com/

        prava-rozumnogo-budynku/ (in Ukrainian).

        1. Tarasenko Kh. Yu. Ob’iekty intelektualnoi vlasnosti v systemi rozumnoho budynku.

          [Intellectual property objects in the smart home system.] URL: http://tspartners.lviv.ua/ articles/objekty-intelektualnoji-vlasnosti-v-systemi-rozumnogo-budynku-smart- hauz/ (in Ukrainian).

        2. Discord is a proprietary freeware voice over internet protocol application and digital distribution platform designed for video gaming communities, that specializes in text, image, video and audio communication between users in a chat channel. As of July 2019, there are over 250 million unique users of the software. URL:https://en.wikipedia.org/wiki/Discord_(software) (in English)
        3. Inside the Podcast that Hacks Ring Camera Owners Live on Air, Vice, December 13, 2019, URL: https://www.vice.com/en_us/article/z3bbq4/podcast- livestreams-hacked-ring-cameras-nulledcast (in English)
        4. Nulledcast: a podcast where hackers play live audio of themselves breaking into Ring cameras and tormenting their owners, BoingBoing, December 13, 2019, URL:https://boingboing.net/2019/12/13/nulledcast.html (in English)
        5. Ring camera hacking has become entertainment for some people, Slashgear, December 12, 2019, URL:https://www.slashgear.com/ring-camera-hacking-has- become-entertainment-for-some-people-12603149/ (in English)
          1. Hackers are taking Control of Ring Cameras and using them to taunt both adults and children, Inc., URL:https://www.inc.com/minda-zetlin/ring-camera-hacked- hackers- bitcoin-ransom-security.html (in English)
          2. C. Budd. Wyze data leak. URL:https://www.geekwire.com/2019/wyze-data-leak- key-takeaways-server-mistake-exposed-information-2–4 m-customers/ (in English)
          3. IoT Cybersecurity: regulating the Internet of Things. Thales Group. 2021. URL:https://www.thalesgroup.com/en/markets/digital-identity-and-security/iot/

            inspired/iot-regulations (in English)

          4. Cetome. Panorama of IoT cyber security regulations across the world. Cetome.com. URL:https://cetome.com/panorama (in English)

          53 Hustinx, P. EU Data Protection Law: The Review of Directive 95/46/EC and the

          Proposed General Data Protection Regulation. URL:https://www.statewatch.org/ media /documents/news/2014/sep/eu-2014–09-edps-data-protection-article.pdf (in English)

          54. arch.com/blog/rise-of-smart-homes/ (in English) The Rise of Smart Homes: Integrating Technology in Real Estate. Vakilsearch. 2023. URL:https://vakilse