The availability of public services through online platforms has improved the coverage and efficiency of essential services provided to citizens worldwide. These services also promote transparency and foster citizen participation in government processes. However, the increased online presence also exposes sensitive data exchanged between citizens and service providers to a wider range of security threats. Therefore, ensuring the security and trustworthiness of online services is crucial to Electronic Government (EGOV) initiatives' success. Hence, this work assesses the security posture of online platforms hosted in 3068 governmental domain names, across all UN Member States, in three dimensions: support for secure communication protocols; the trustworthiness of their digital certificate chains; and services' exposure to known vulnerabilities. The results indicate that despite its rapid development, the public sector still falls short in adopting international standards and best security practices in services and infrastructure management. This reality poses significant risks to citizens and services across all regions and income levels.
翻译:通过在线平台提供公共服务,已提升了全球公民基本服务的覆盖率和效率。这些服务还促进了透明度,增强了公民对政府流程的参与度。然而,在线存在的增加也使公民与服务提供商之间交换的敏感数据暴露于更广泛的安全威胁中。因此,确保在线服务的安全性和可信度对于电子政务(EGOV)倡议的成功至关重要。为此,本研究评估了所有联合国成员国中3068个政府域名所托管在线平台的安全态势,从三个维度进行考察:安全通信协议的支持情况;数字证书链的可信度;以及服务对已知漏洞的暴露程度。结果显示,尽管发展迅速,公共部门在服务与基础设施管理中采用国际标准和最佳安全实践方面仍显不足。这一现实对全球各区域和收入水平的公民及服务构成了重大风险。