The current internet is like the un-marshaled “Wild West” of the 1800’s.

Internet security and privacy have become so maddeningly vague that the only way to fix the problem is to start over.

What a new internet might look like is still widely debated, but one alternative would be almost like a “gated community” where users would give up their anonymity and certain freedoms in return for safety.

Today this is already the case for many corporate and government internet users.

As a new and more secure network becomes widely adopted, the current internet might end up as the bad neighborhood on the other side of cyberspace.

You would enter at your own risk and keep an eye over your shoulder while you were there.

“Unless we’re willing to rethink today’s internet,” says Nick McKeown, a Stanford engineer involved in building a new Internet, “we’re just waiting for a series of public catastrophes.”

The reality of this threat was driven home late last year, when a malicious software program, thought to have been unleashed by a criminal gang in Eastern Europe, suddenly appeared after easily getting around the world’s best cyberdefenses.

Known as Conficker, it quickly infected more than 12 million computers, ravaging everything from the computer system at a surgical ward in England to the computer networks of the French military.

Conficker remains a ticking time bomb.



This virus now has the power to lash together those infected computers into a vast supercomputer called a botnet that can be controlled clandestinely by its creators.

What comes next remains a puzzle.

Conficker could be used as the world’s most powerful spam engine, perhaps to distribute software programs to trick computer users into purchasing fake antivirus protection.

Or much worse, it might also be used to shut off entire sections of the internet.

But whatever happens, Conficker has demonstrated that the internet remains highly vulnerable to a determined attack.

“If you’re looking for a digital Pearl Harbor, we now have the Japanese ships streaming toward us on the horizon,” Rick Wesson, the chief executive of Support Intelligence, a computer consulting firm, said recently.

The internet’s original designers never predicted that the academic and military research network they created would one day bear the burden of carrying all the world’s communications and commerce.

There was no one central control point and its designers wanted to make it possible for every network to exchange data with every other network. Little attention was given to security.

“In many respects we are probably worse off than we were 20 years ago,” said Eugene Spafford, the executive director of the Center for Education and Research in Information Assurance and Security at Purdue University.

The pioneering internet security researcher states, “because all of the money has been devoted to patching the current problem rather than investing in the redesign of our infrastructure.”

Despite a thriving global computer security industry and the fact that in 2002 Microsoft itself began an intense corporate wide effort to improve the security of its software, internet security has continued to worsen globally.

Even the most heavily protected military networks have proved vulnerable.

Last November, the United States military command in charge of both the Iraq and Afghanistan wars discovered that its computer networks had been purposely infected with software that may have permitted a devastating espionage attack.

In January 2009 a worm infects millions of computers worldwide. This is causing scientists armed with federal research dollars and working in collaboration with the industry to work on figuring out the best way to start over.

At Stanford, where the software protocols for the original internet were designed, researchers are creating a system to make it possible to slide a more advanced network quietly underneath today’s internet. By the end of the summer it will be running on eight campus networks around the country.

A new internet with improved security and the capabilities to support a new generation of not-yet-invented internet applications is the ultimate goal. They also want to correct some things the current internet does poorly such as supporting mobile users.

The Stanford Clean Slate project won’t by itself solve all the main security issues of the internet. It will equip software and hardware designers with a toolkit to make security features a more integral part of the network.

This will ultimately give law enforcement officials more effective ways of tracking criminals through cyberspace. That alone may provide a disincentive.

This is not the first time a replacement has been proposed for the current internet. Modern Windows and Macintosh computers already come equipped to support a new internet protocol known as IPv6 that would fix many of the shortcomings of the current IPv4 version.

Because of cost, performance and compatibility questions this protocol has suffered.

The Stanford engineers are not discouraged and say they are on a mission to “reinvent the internet.” They argue that their new strategy is intended to allow new ideas to emerge in an evolutionary fashion, making it possible to move data traffic seamlessly to a new networking world.

Like the existing internet, the new network will almost certainly have no one central point of control and no one organization will run it. It is most likely to emerge as new hardware and software, which are built in to the router computers that run today’s network and are adopted as internet standards.

The internet’s current design virtually guarantees anonymity to its users. That anonymity is now the most vexing challenge for law enforcement. An internet attacker can route a connection through many countries to hide his location, which may be from an account in an internet cafe purchased with a stolen credit card.

“As soon as you start dealing with the public internet, the whole notion of trust becomes a quagmire,” said Stefan Savage, an expert on computer security at the University of California, San Diego.

A more secure network is one that would almost certainly offer less anonymity and privacy. That is likely to be the great tradeoff for the designers of the next internet. One example, would be to require the equivalent of drivers’ licenses to permit someone to connect to a public computer network.

Proving identity is likely to remain remarkably difficult in a world where it is trivial to take over someone’s computer from half a world away and operate it as your own. As long as that remains true, building a completely trustable system will remain virtually impossible.