<mods xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://www.loc.gov/mods/v3" version="3.3" xsi:schemaLocation="http://www.loc.gov/mods/v3 http://www.loc.gov/standards/mods/v3/mods-3-3.xsd" ID="P0b002ee18038e12c">
<name type="corporate">
 <namePart>United States Government Publishing Office</namePart>
 <role>
  <roleTerm authority="marcrelator" type="text">publisher</roleTerm>
  <roleTerm authority="marcrelator" type="code">pbl</roleTerm>
</role>
 <role>
  <roleTerm authority="marcrelator" type="text">distributor</roleTerm>
  <roleTerm authority="marcrelator" type="code">dst</roleTerm>
</role>
</name>
<name type="corporate">
 <namePart>United States</namePart>
 <namePart>Government Accountability Office</namePart>
 <namePart>Accounting and Information Management Division</namePart>
 <role>
  <roleTerm authority="marcrelator" type="text">author</roleTerm>
  <roleTerm authority="marcrelator" type="code">aut</roleTerm>
</role>
 <description>Government Organization</description>
</name>
<typeOfResource>text</typeOfResource>
<genre authority="marcgt">government publication</genre>
<language>
 <languageTerm type="code" authority="iso639-2b">eng</languageTerm>
</language>
<extension>
 <collectionCode>GAOREPORTS</collectionCode>
 <category>Legislative Agency Publications</category>
 <waisDatabaseName>gao</waisDatabaseName>
 <branch>legislative</branch>
 <dateIngested>2010-08-12</dateIngested>
</extension>
<originInfo>
 <publisher>U.S. Government Printing Office</publisher>
 <dateIssued encoding="w3cdtf">2000-05-18</dateIssued>
 <issuance>monographic</issuance>
</originInfo>
<physicalDescription>
 <note type="source content type">deposited</note>
 <digitalOrigin>born digital</digitalOrigin>
 <extent>12 p.</extent>
</physicalDescription>
<classification authority="sudocs">GA 1.13:T-AIMD-00-181</classification>
<identifier type="uri">https://www.govinfo.gov/app/details/GAOREPORTS-T-AIMD-00-181</identifier>
<identifier type="local">P0b002ee18038e12c</identifier>
<identifier type="former package identifier">f:ai00181t</identifier>
<recordInfo>
 <recordContentSource authority="marcorg">DGPO</recordContentSource>
 <recordCreationDate encoding="w3cdtf">2010-08-12</recordCreationDate>
 <recordChangeDate encoding="w3cdtf">2011-03-24</recordChangeDate>
 <recordIdentifier source="DGPO">GAOREPORTS-T-AIMD-00-181</recordIdentifier>
 <recordOrigin>machine generated</recordOrigin>
 <languageOfCataloging>
  <languageTerm type="code" authority="iso639-2b">eng</languageTerm>
</languageOfCataloging>
</recordInfo>
<accessCondition type="GPO scope determination">fdlp</accessCondition>
<extension>
 <docClass>REPORT</docClass>
 <accessId>GAOREPORTS-T-AIMD-00-181</accessId>
 <reportNumber>T-AIMD-00-181</reportNumber>
 <subject>Computer networks</subject>
 <subject>Information systems</subject>
 <subject>Computer crimes</subject>
 <subject>Law enforcement</subject>
 <subject>Electronic mail</subject>
 <subject>Private sector practices</subject>
 <subject>Hackers</subject>
 <subject>Computer security</subject>
 <subject>Information resources management</subject>
 <subject>Computer viruses</subject>
 <identifier>ILOVEYOU Computer Virus</identifier>
 <identifier>Internet</identifier>
 <identifier>Melissa Computer Virus</identifier>
 <type>Testimony</type>
 <seriesAbbrev>AIMD</seriesAbbrev>
</extension>
<titleInfo>
 <title>Critical Infrastructure Protection: &quot;ILOVEYOU&quot; Computer</title>
</titleInfo>
<abstract>Pursuant to a congressional request, GAO discussed the ILOVEYOU computer
virus, focusing on measures that can be taken to mitigate the effects of
future attacks.&lt;p/&gt;GAO noted that: (1) ILOVEYOU is both a virus and a worm; (2) worms
propagate themselves through networks, and viruses destroy files and
replicate themselves by manipulating files; (3) the damage resulting
from this hybrid is limited to users of the Microsoft Windows operating
system; (4) ILOVEYOU typically comes in the form of an electronic mail
(e-mail) message from someone the recipient knows; (5) when opened and
allowed to run, the virus attempts to send copies of itself to all
entries in all of the recipient&apos;s address books; (6) soon after initial
reports of the virus surfaced in Asia, the virus proliferated rapidly
throughout the rest of the world; (7) recognizing the increasing
computer-based risks to the nation&apos;s critical infrastructures, the
federal government has taken steps over the past several years to create
capabilities for effectively detecting, analyzing, and responding to
cyber-based attacks; (8) however, the events and responses spawned by
ILOVEYOU demonstrate both the challenge of providing timely warnings
against information based threats and the increasing need for the
development of national warning capabilities; (9) the National
Infrastructure Protection Center (NIPC) is responsible for serving as
the focal point in the federal government for gathering information on
threats as well as facilitating and coordinating the federal
government&apos;s response to incidents impacting key infrastructures; (10)
once an imminent threat is identified, appropriate warnings and response
actions must be effectively coordinated among federal agencies, the
private sector, state and local governments, and other nations; (11)
NIPC has had some success in providing early warnings on threats, but
had less success with the ILOVEYOU virus; (12) for over 2 hours after
NIPC first learned of the virus, it checked other sources in attempts to
verify the initial information, with limited success; (13) NIPC did not
issue an alert about ILOVEYOU on its own web page until hours after
federal agencies were reportedly hit; (14) agencies themselves responded
promptly and appropriately once they learned about the virus; (15) GAO
found that the few federal components that either discovered or were
alerted to the virus early did not effectively warn others; (16) to
prevent future virus attacks, agencies can teach computer users that
e-mail attachments are not always what they seem and that they should be
careful when opening them; and (17) agencies can ensure that up-to-date
virus detection software has been installed on their systems.</abstract>
<location>
 <url displayLabel="HTML rendition" access="raw object">https://www.govinfo.gov/content/pkg/GAOREPORTS-T-AIMD-00-181/html/GAOREPORTS-T-AIMD-00-181.htm</url>
 <url displayLabel="PDF rendition" access="raw object">https://www.govinfo.gov/content/pkg/GAOREPORTS-T-AIMD-00-181/pdf/GAOREPORTS-T-AIMD-00-181.pdf</url>
</location>
<identifier type="preferred citation">GAO/T-AIMD-00-181</identifier>
<location>
 <url displayLabel="Content Detail" access="object in context">https://www.govinfo.gov/app/details/GAOREPORTS-T-AIMD-00-181</url>
</location>
<note>Testimony</note>
<extension>
 <searchTitle>GAO/T-AIMD-00-181; Critical Infrastructure Protection: &quot;ILOVEYOU&quot; Computer;
            </searchTitle>
</extension>
<subject>
 <topic>Computer networks</topic>
 <topic>Information systems</topic>
 <topic>Computer crimes</topic>
 <topic>Law enforcement</topic>
 <topic>Electronic mail</topic>
 <topic>Private sector practices</topic>
 <topic>Hackers</topic>
 <topic>Computer security</topic>
 <topic>Information resources management</topic>
 <topic>Computer viruses</topic>
 <topic>ILOVEYOU Computer Virus</topic>
 <topic>Internet</topic>
 <topic>Melissa Computer Virus</topic>
</subject>
</mods>