The Call to Work Towards Better Governance

Disaster risk governance is entering a critical period. Not only has it been suddenly and overwhelmingly put to the test by the COVID-19 pandemic, but this is also the cutoff year for Target E of the Sendai Framework for Disaster Risk Reduction (2015-2030), the first target to complete its action plan, which calls for a “substantial increase in the number of national and local strategies for disaster risk reduction by 2020.”
It could not be otherwise, therefore, that the focus this year on October 13, the International Day for Disaster Risk Reduction (IDDRR), will be on good governance as a pathway to effective risk reduction. “COVID-19 and the climate emergency are telling us that we need clear vision, plans and competent, empowered institutions acting on scientific evidence for the public good,” says Mami Mizutori, the United Nations Secretary-General’s Special Representative for Disaster Risk Reduction.
The robustness of the COVID-19 pandemic in all sectors has also sent a loud and clear message concerning governance: the risk is systemic, and some risks are increasingly acting in cohort with others to create a cascading impact on the entire system. Beyond the evident undermining of health systems, it is estimated that the GDP for Latin America and the Caribbean could fall by 9.1% in 2020, according to the United Nations report ‘The Impact of COVID-19 on Latin America and the Caribbean’. Moreover, the document foresees a rise of 5.4% in unemployment, 7% in poverty and 4.5% in extreme poverty as well as an increase of 4 million people experiencing a situation of acute food insecurity.
“It is fundamental that each country develop a strategy for analyzing and systematizing the response to COVID-19. Many countries surely need to update key risk governance aspects to foster a clear analysis of the systemic risk confronted by each country, but above all to enable a response to any sort of threat regardless of its source, duration or impact,” declares Ciro Ugarte, Director for Health Emergencies at the Regional Office of the Pan American Health Organization.
Governance leads the way
Extensive evidence indicates that good disaster risk governance springs from the collaboration and alliances among mechanisms and institutions to reduce disaster risk and pave the way toward sustainable development.
As an example, Uruguay’s response to the COVID-19 pandemic resonated throughout the entire region. Through the formation of a comprehensive body that brought together decision makers, scientists and academics, it became possible to apply strategies and plans that shaped the management of the health crisis - only 1500 infections - and reduced the risk of the socio-economic threats that have shaken so many other countries. “The pandemic led to the establishment of various agreements and the beginning of a more holistic focus on risk. It also enhanced and deepened a culture of risk management and awareness,” asserts Sergio Rico, Director of Uruguay’s National Emergency System.
Science and technology have become key allies of good risk governance. The gathering of data and information allows for the construction of threat projections and risk scenarios intended to reduce the impact of disasters, especially in populations afflicted by poverty, exclusion, and inequality.
The Coordinating Center for Disaster Prevention in Central America and the Dominican Republic (CEPREDENAC) has taken advantage of the benefits of technology to strengthen disaster risk management in the region. Through the Information and Coordination Platform for the COVID-19 Emergency, a resource available through the web portal of the Central American Integration System (SICA), these countries consolidated information to complement national efforts, enhancing strategic focuses in the region.
“The digital platform focused on taking steps to characterize the three dimensions of disaster risk (exposure, vulnerability and resilience) in an effort to prevent the creation of new risks, reduce existing risks, increase resilience and create mechanisms that allow us to understand the pandemic’s impact on a regional level,” explains Claudia Herrera, CEPREDENAC Executive Secretary.
Herrera adds that comprehensive efforts are essential to the promotion of good governance to “move the region forward through a combination of work, ideas and experiences across governments and the private sector.”
The private sector in particular has been among the systems with the greatest need to rely on resilience during the pandemic. “The crisis affected demand and supply, increased cost of doing business, reduced working capital and human resource and caused a disruption in logistics and high cost of transportation,” stresses Lizra Fabien, Executive Director of the Dominica Association of Industry & Commerce (DAIC) and former President of the Network of Caribbean Chambers of Commerce (CARICHAM).
In this sense, the Private Sector Alliance for Disaster Resilient Societies (ARISE) has become the preferred platform for a robust private sector that can work hand-in-hand with the public sector in creating good governance. “This process of recuperation will also develop regional collaboration and implement the good practices we learn from one another to ensure that we come out of this crisis as a stronger region,” Fabien adds.
Working toward good governance
In this way, the COVID-19 pandemic and Target E of the Sendai Framework are together creating a favorable environment to improve governance in the region. As Ugarte says: “In times of crisis, it is necessary to continue to strengthen good governance in disaster risk reduction strategies at national, regional and world levels.”
“The most significant driver of disaster risk is weak governance. It is necessary to have clear objectives, plans, directives, and coordination across all sectors. All of us are responsible for reducing disaster risk, which is key to the success of the Sustainable Development Goals. We must build good governance to guarantee a prosperous and safe future,” emphasizes Raúl Salazar, Chief of the Americas/Caribbean Regional Office of the United Nations Office for Disaster Risk Reduction (UNDRR).
Governance must take a broad and deep view of risks and their impact, taking into account their social construction. In its most basic and fundamental justification, it is on a par with life itself, concludes Mami Mizutori: “Good disaster risk governance can be measured by lives saved, fewer people affected and reduced economic losses.”

Study for the creation of a national capabilities assessment framework

ENISA, the EU Agency for cybersecurity, held a workshop to validate the results of the study for the creation of a national capabilities assessment framework together with the EU Member States and related stakeholders. By assessing their National Cybersecurity Strategy objectives both at strategic and at operational level, Member States will be able to possibly enhance existing and build new cybersecurity capabilities. The purpose of the framework is to help Member States perform a self-assessment of their level of maturity. Other benefits include:

  • Identification of elements missing within the strategy;
  • Establish a history of lessons learned;
  • Referencing best practices;
  • Generate credibility and showing transparency for the public, National and international stakeholders and partners.

Sixty participants coming from academia, EU institutions, National Authorities, Ministries, and CSIRTs attended the online workshop. They were all actively engaged in the assessment and validation of the proposed report, which will be published later.

Members of the Hellenic Ministry of Digital Governance and of the Ministry of Justice and Security in the Netherlands also intervened. Each of them gave a short presentation on the recent NCSS efforts conducted in Greece and in the Netherlands respectively. They also shared the main challenges they face as well as good practices and lessons learned.

The representatives identified the following challenges and lessons learned:

  • Most resources tend to be dedicated to the planning and implementation phase. While obviously important, this may lead to a lack of coordination and organisation in the monitoring and evaluation phase of the strategy.
  • The strategy should provide explicit ownership and accountability for the measures identified to reach the objectives. This is not currently the case.
  • Clarifying relations between objectives, measures, resources and expected outputs of the next national strategy will be essential in order to re-structure the policy theory.
  • Cybersecurity is a domain where information is highly confidential and not easily distributed. This is why it is crucial for EU Member States to have common tools and processes based on the shared experience.

Background on National Cybersecurity Strategies

In line with its strategic objectives, the European Agency for Cybersecurity, (ENISA) supports the efforts of Member States in the area of NCSS by:

  • Supporting cybersecurity as an integral part of national policies through the development of guidelines on the NCSS lifecycle and through analysis of existing strategies to outline good practices. The Good Practice Guide on NCSS published in 2016 is one of them.
  • Supports cutting-edge competencies and capabilities through performing deep dives on specific national strategic objectives, such as the publication on the Good practices in Innovation. This can also be done by developing online tools to support the uptake of lessons learned and good practices. Examples of such tools are the NCSS evaluation tool and the NCSS Interactive Map.
  • Empowering and engaging Member States through community building by maintaining an experts group on NCSS and by fostering cooperation and exchange of good practices between MS. Publications on effective collaborative models for PPPs and ISACs are good examples of such effort.

Covid-19 Sparks Upward Trend in Cybercrime

Europol’s 2020 cybercrime report updates on the latest trends and the current impact of cybercrime within the EU and beyond.

So much has changed since Europol published last year’s Internet Organised Crime Threat Assessment (IOCTA). The global COVID-19 pandemic that hit every corner of the world forced us to reimagine our societies and reinvent the way we work and live. During the lockdown, we turned to the internet for a sense of normality: shopping, working and learning online at a scale never seen before. It is in this new normal that Europol publishes its 7th annual IOCTA. The IOCTA seeks to map the cybercrime threat landscape and understand how law enforcement responds to it. Although the COVID-19 crisis showed us how criminals actively take advantage of society at its most vulnerable, this opportunistic behaviour of criminals should not overshadow the overall threat landscape. In many cases, COVID-19 has enhanced existing problems.

CROSS-CUTTING CRIME
Social engineering and phishing remain an effective threat to enable other types of cybercrime. Criminals use innovative methods to increase the volume and sophistication of their attacks, and inexperienced cybercriminals can carry out phishing campaigns more easily through crime as-a-service. Criminals quickly exploited the pandemic to attack vulnerable people; phishing, online scams and the spread of fake news became an ideal strategy for cybercriminals seeking to sell items they claim will prevent or cure COVID-19.

Encryption continues to be a clear feature of an increasing number of services and tools. One of the principal challenges for law enforcement is how to access and gather relevant data for criminal investigations. The value of being able to access data of criminal communication on an encrypted network is perhaps the most effective illustration of how encrypted data can provide law enforcement with crucial leads beyond the area of cybercrime.

MALWARE REIGNS SUPREME
Ransomware attacks have become more sophisticated, targeting specific organisations in the public and private sector through victim reconnaissance. While the COVID-19 pandemic has triggered an increase in cybercrime, ransomware attacks were targeting the healthcare industry long before the crisis. Moreover, criminals have included another layer to their ransomware attacks by threatening to auction off the comprised data, increasing the pressure on the victims to pay the ransom. Advanced forms of malware are a top threat in the EU: criminals have transformed some traditional banking Trojans into modular malware to cover more PC digital fingerprints, which are later sold for different needs.

CHILD SEXUAL ABUSE MATERIAL CONTINUES TO INCREASE
The main threats related to online child abuse exploitation have remained stable in recent years, however detection of online child sexual abuse material saw a sharp spike at the peak of the COVID-19 crisis. Offenders keep using a number of ways to hide this horrifying crime, such as P2P networks, social networking platforms and using encrypted communications applications. Dark web communities and forums are meeting places where participation is structured with affiliation rules to promote individuals based on their contribution to the community, which they do by recording and posting their abuse of children, encouraging others to do the same. Livestream of child abuse continues to increase, becoming even more popular than usual during the COVID-19 crisis when travel restrictions prevented offenders from physically abusing children. In some cases, video chat applications in payment systems are used which becomes one of the key challenges for law enforcement as this material is not recorded.

PAYMENT FRAUD: SIM SWAPPING A NEW TREND
SIM swapping, which allows perpetrators to take over accounts, is one of the new trends in this year’s IOCTA. As a type of account takeover, SIM swapping provides criminals access to sensitive user accounts. Criminals fraudulently swap or port victims’ SIMs to one in the criminals’ possession in order to intercept the one-time password step of the authentication process.

CRIMINAL ABUSE OF THE DARK WEB
In 2019 and early 2020 there was a high level of volatility on the dark web. The lifecycle of dark web market places has shortened and there is no clear dominant market that has risen over the past year. Tor remains the preferred infrastructure, however criminals have started to use other privacy-focused, decentralised marketplace platforms to sell their illegal goods. Although this is not a new phenomenon, these sorts of platforms have started to increase over the last year. OpenBazaar is noteworthy, as certain threats have emerged on the platform over the past year such as COVID-19-related items during the pandemic.

CISA and MS-ISAC Release Joint Ransomware Guide

The Cybersecurity and Infrastructure Security Agency (CISA) and Multi-State Information Sharing and Analysis Center (MS-ISAC) are releasing a joint Ransomware Guide meant to be a one-stop resource for stakeholders on how to be proactive and prevent these attacks from happening and also a detailed approach on how to respond to an attack and best resolve the cyber incident. CISA and MS-ISAC observed there are vast products and resources available, but very few that have them all in one place.

This one-stop guide is divided into two parts:

First, the guide focuses on best practices for ransomware prevention, detailing practices that organizations should continuously do to help manage the risk posed by ransomware and other cyber threats. It is intended to enable forward-leaning actions to successfully thwart and confront malicious cyber activity associated with ransomware. Some of the several CISA and MS-ISAC preventive services that are listed are Malicious Domain Blocking and Reporting, regional CISA Cybersecurity Advisors, Phishing Campaign Assessment, and MS-ISAC Security Primers on ransomware variants such as Ryuk.

The second part of this guide, response best practices and services, is divided up into three sections: (1) Detection and Analysis, (2) Containment and Eradication, and (3) Recovery and Post-Incident Activity. One of the unique aspects that will significantly help an organization’s leadership as well as IT professional with response is a comprehensive, step-by-step checklist. With many technical details on response actions and lists of CISA and MS-ISAC services available to the incident response team, this part of the guide can enable a methodical, measured and properly managed approach.

“It is a CISA priority to help our partners defend against ransomware, advise them on appropriate risk-management actions and provide best practices for a resilient, responsible incident response plan in the event of an cyberattack,” said Bryan Ware, Assistant Director for Cybersecurity, CISA. “The collaborative and consistent engagement with our industry and government partners support our concerted efforts to offer trusted, proactive and timely resources and services. This guide is based on operational insight from CISA and MS-ISAC and our engagements with varied sector partners.”

Recent events stress the important reminder that ransomware can happen at any time to any organizations, so we encourage all organizations with sensitive or important data stored on their network to take steps now to protect it, including backing up data, training employees, and patching systems to blunt the potential impact of ransomware. Malicious actors have adjusted their ransomware tactics over time to include pressuring victims for payment by threatening to release stolen data if they refuse to pay and publicly naming and shaming victims as secondary forms of extortion.

One of the ways this guide can help is with identifying their critical data. It’s hard to have an organization determine after-the-fact what critical data was impacted by a ransomware incident if they did not have that understanding of what critical data they had ahead of time. And, it is hard to revert to backups if an organization does not have or has not properly maintained and tested their backups.

This joint ransomware guide is written primarily for the IT professional, but every level of an organization can benefit from reviewing it. CISA and MS-ISAC are proud to provide this guide that can help them plan for a ransomware incident and understand the risk management, analytical, and response services available to them.

October is European Cyber Security Month

The European Cybersecurity Month (ECSM) is the European Union’s annual campaign dedicated to promoting cybersecurity among EU citizens and organisations, and to providing up-to-date online security information through awareness raising and sharing of good practices.

The ECSM campaign is coordinated by the European Union Agency for Cybersecurity (ENISA) and the European Commission, and supported by EU Member States and hundreds of partners (governments, universities, think tanks, NGOs, professional associations, private sector business) from Europe, and beyond.

The EU Agency for Cybersecurity coordinates the organisation of the ECSM campaign by acting as a “hub” for all participating Member States and EU Institutions, and by providing expert suggestions, generating synergies and promoting common messaging among EU citizens, businesses and public administration. The Agency also publishes new materials and provides expert advice on different cybersecurity topics for Member States’ audiences.

Since the first event in 2012, the European Cybersecurity Month has been reaching its key priorities by bringing together parties from across Europe under the slogan ‘Cybersecurity is a Shared Responsibility’ to unite against cyber threats.

Each year, for the entire month of October, hundreds of activities take place across Europe, including conferences, workshops, training sessions, webinars, presentations and more, to promote digital security and cyber hygiene.

Indonesia rolls out JRC-designed system to enhance Tsunami Early Warning

Indonesia has announced plans to roll out a tsunami early warning system based on the Inexpensive Device for Sea Level Monitoring (IDSL).

The system was developed by the European Commission’s Joint Research Centre with support from the Commission’s department for European Civil Protection and Humanitarian Aid Operations (DG ECHO).

The new plan for IDSL installation foresees the acquisition of 100 new units before the end of 2020 and a more ambitious implementation of an additional 530 units over the coming years, for fisheries, ports and conservation areas across Indonesia.

The IDSL is already installed in 7 locations in Indonesia (Sebesi Island, Marina Jambu, Pandangaran, Sadeng Port and Pelabuhan Ratu on Java Island and Bungus Port on Sumatra Island). It is also being installed in Mentawai Island.

The initiative is part of a collaboration between the JRC, DG ECHO and the Ministry of Maritime and Fisheries, initiated in 2019 when the JRC provided Indonesia with 8 IDSL devices to quickly implement a new Tsunami Warning System in the aftermath of the Anuk Krakatau volcano explosion on 22 Dec 2018. The event triggered a severe Tsunami, killing more than 400 people in the Sunda Strait.

The JRC began developing the IDSL in 2014. It has been installed in 35 locations in the Mediterranean Sea to enhance the monitoring capability of the Tsunami Warning Centres, in collaboration with local institutions and the UNESCO International Oceanographic Commission.

The characteristics of this innovative device are:

its low cost (2.5 k Euro vs 25-30 k Euro of similar devices);
the quick response and transmission (latency less than 5s from measurement to data publication);
the easy installation (less than 2h);
the presence of a software onboard able to detect Tsunami waves or other large sea level variations and send email and SMS to a prescribed list of recipients.
The name of IDSL has been modified to ‘PUMMA’ in the Indonesian language, or Perangkat Ukur Murah untuk Muka Air (Low cost Device for Sea Level Measurement).

It has the same meaning but is easier for Indonesians to recognise and understand its functioning.

Announcing the plans, Indonesian Maritime and Fisheries Minister Edhy Prabowo referred to the geographical position of Indonesia and indicated: “This situation prompts the Indonesian government to formulate a practical tsunami mitigation regime because a large number of coastal communities and villages could be left vulnerable and devastated when a tsunami strikes. In addition, vast coastlines and a large number of coastal communities means that Indonesia needs tsunami early warning systems to be installed in many tsunami prone areas. In this situation, the government needs to develop a tsunami mitigation program that includes the participation of the communities to develop their preparedness and make them more resilient to tsunami."

The new devices will be built with the collaboration of the European Commission and the involvement of local small scale companies and universities.

They will be integrated with the overall monitoring network in Indonesia provided by BIG (Sea Level Monitoring Institution) and BMKG (Tsunami Service Provider).

The IDSL (or PUMMA) will be implemented not only for tsunami early warning, but also for monitoring of fisheries port activities, marine tourisms, marine ecosystem and sea level rise.

Policy brief: technologies for averting, minimizing and addressing loss and damage in coastal zones

Coastal zones are home to about 40 per cent of the world’s population, living within 100 km of the coastline.

The most recent technology needs assessment indicates that one-third of developing countries placed infrastructure, including in coastal zones, as a prioritized sector, and most of the prioritized technologies in this regard were related to coastal protection, including both hard and soft measures.

Today more than 600 million people live in coastal zones that are less than 10 meters above sea level, and approximately 60 per cent of the world’s metropolises whose populations exceed 5 million people are located within 100 kilometers of a coastline. Coastal zones are a critical component of national economies, including shipping, aquaculture, tourism and other coastal services and industries.

Furthermore, entire economic activities in those of small islands developing states and low-lying delta countries, belong to their coasts. And yet coastal areas stand at risk from rising sea level and extreme weather intensity caused by climate change.

Recently as evidenced in many coastal areas, the impacts of these climate change phenomena, including the losses and damages, are increasingly becoming disruptive.

The report aims to inform policy-makers and practitioners on technological solutions to assess and manage climate-related risks comprehensively in coastal zones. It also identifies recovery and rehabilitation measures to address the impacts from tropical cyclones, storm surges, sea level rise, ocean acidification and other climate-change-related impacts.

Download Report from UNFCCC

Source - United Nations Framework Convention on Climate Change

New ACSC report details cyber threats across Australia

The inaugural ACSC Annual Cyber Threat Report outlines key cyber threats and statistics over the period 1 July 2019 to 30 June 2020. Over this period, the ACSC responded to 2,266 cyber security incidents and received 59,806 cybercrime reports at an average of 164 cybercrime reports per day, or one report every 10 minutes.

Key cyber threats highlighted include:

Malicious cyber activity against Australia’s national and economic interests is increasing in frequency, scale, and sophistication. Phishing and spearphishing remain the most common methods used by cyber adversaries to harvest personal information or user credentials to gain access to networks, or to distribute malicious content.

Over the past 12 months the ACSC has observed real-world impacts of ransomware incidents, which have typically originated from a user executing a file received as part of a spearphishing campaign. Ransomware has become one of the most significant threats given the potential impact on the operations of businesses and governments.

The 5G network and IoT devices have the potential to be revolutionary, but they require new thinking about how best to adopt them securely. Insecure or misconfigured systems make it very easy for hackers looking to compromise networks, cause harm and steal information.

Cybercrime is one of the most pervasive threats facing Australia, and the most significant threat in terms of overall volume and impact to businesses and individuals. The Australian Competition and Consumer Commission’s (ACCC) Targeting Scams 2019 report, identified Australians lost over $634 million to scams in 2019.

The ACSC Annual Cyber Threat Report has been developed with law enforcement partners, the Australian Federal Police and the Australian Criminal Intelligence Commission, to provide important information about emerging cyber threats impacting the Australian economy.

Full report avaioable at https://www.cyber.gov.au/sites/default/files/2020-09/ACSC-Annual-Cyber-Threat-Report-2019-20.pdf

FEMA Awards $17.8 Million for Hurricane Irma Recovery in Florida

EMA has awarded grants totaling $17,820,727 for the State of Florida to reimburse applicants for eligible costs of emergency response and repairs to public facilities following Hurricane Irma.

FEMA’s Public Assistance program provides grants to state, tribal, and local governments, and certain types of private nonprofit organizations, including some houses of worship, so that communities can quickly respond to and recover from major disasters or emergencies. The Florida Division of Emergency Management works with FEMA during all phases of the program and conducts final reviews of FEMA-approved projects.

The federal share for projects is not less than 75 percent of the eligible cost. The state determines how the nonfederal share of the cost of a project (up to 25 percent) is split with the subrecipients like local and county governments.

CISA Issues Final Vulnerability Disclosure Policy Directive for Federal Agencies

The Cybersecurity and Infrastructure Security Agency (CISA) issued Binding Operational Directive 20-01, which requires individual federal civilian executive branch (FCEB) agencies to develop and publish a vulnerability disclosure policy (VDP) for their internet-accessible systems and services, and maintain processes to support their VDP. This BOD is part of CISA’s agency-wide priority to make 2020 the “year of vulnerability management,” with a particular focus on making vulnerability disclosure to the civilian executive branch easier for the public.

“Cybersecurity is strongest when the public is given the ability to contribute, and a key component to receiving cybersecurity help from the public is to establish a formal policy that describes how to find and report vulnerabilities legally,” said Bryan Ware, Assistant Director for Cybersecurity, CISA.

Vulnerability disclosure policies enhance the resiliency of the government’s online services by encouraging meaningful collaboration between federal agencies and the public. They make it easier for the public to know where to send a report, what types of testing are authorized for which systems, and what communication to expect.

When agencies integrate vulnerability reporting into their existing cybersecurity risk management activities, they can weigh and address a wider array of concerns. This helps safeguard the information the public has entrusted to the government and gives federal cybersecurity teams more information to protect their agencies. Additionally, ensuring consistent policies across the Executive Branch offers those who report vulnerabilities equivalent protection and a more uniform experience.

1 43 44 45 46 47 48