Definition
A technology offense involving unauthorized access, interference, deception, or unlawful interception using electronic systems. It is defined by authorization status, protected system or data, and the required intent or harm elements where applicable. It does not include authorized access or communications conduct that satisfies applicable consent requirements. It safeguards system and data integrity and commonly supports restitution and forfeiture remedies. The concept is generally stable, though coverage expands as technical methods evolve over time.
Principle
Principle
Protection of networked infrastructure: laws distinguish network-level incursions because they can enable widespread access, propagation of malicious code, interception of communications, or impairment of services beyond a single host.
Demonstration
Demonstration
A malicious actor exploits a publicly accessible misconfigured network service to gain a foothold, then moves laterally across the internal network to access additional hosts and intercept traffic between servers.
Misapplication
Misapplication
Treating legitimate passive receipt of broadcast network data on an open channel as unauthorized network access when the channel is publicly exposed; or charging incidental cross-network routing of legitimately obtained data as network intrusion absent intent or restriction.
Consequence
Consequence
When correctly applied, network-access prohibitions allow disruption of attacks, removal of persistent footholds, seizure of network-linked evidence, and imposition of penalties that reflect the broader risk of damage to infrastructure and many users.
Reversal
Reversal
Reversing the concept would permit unrestricted probing and use of networks without consent if no single host shows damage; such a stance would ignore cumulative harms like service degradation or mass interception.
Boundary
Boundary
Covers actions directed at network infrastructure or that use networks to extend unauthorized reach; excludes lawful administration, consensual penetration testing with authorization, purely offline analysis of network traffic lawfully captured, and public networks explicitly advertised for open use.
Semantic Tension
Semantic Tension
Overlaps with unauthorized access to systems and with offenses addressing denial-of-service or interception; tension arises in distinguishing network probing for legitimate research from preparatory acts of intrusion, and in defining whether transient connections constitute access.
Synthesis
Synthesis
Unauthorized access to a computer network comprises unauthorised interactions with networking infrastructure or use of networks to escalate access or impair services, assessed by authorization, intent, and potential to affect multiple systems or users.