For Blog.

Simple Digital Security Measures YOU Should Implement

As we end #CyberSecurityAwareness month, you have most likely consumed a wealth of information, including dos and don’ts, warnings, and cautionary tales. We understand that some of this content might appear complex or daunting to grasp. So here are a few straightforward yet highly impactful digital security measures that you can implement today to stay one step ahead in the realm of cybersecurity.

Securing Your Messages and Calls 

While most messaging platforms like Signal, WhatsApp, and Telegram offer end-to-end encryption for messages and calls, you can go a step further in fortifying the security of your communications by using Face ID or Finger Print Lock as an additional layer of protection from unauthorized access to your messages.

However, it is important to utilize this feature alongside a pattern unlock or PIN because once biometric data is compromised, it cannot be replaced.

For Apple users, it’s important to limit the scope of your messages and, if necessary, disable messages in iCloud for enhanced privacy and security. By doing this, you can restrict the synchronization of your messages to a single device, minimizing the risk of unauthorized access or data leaks.

Using  VPN for Secure Browsing

In Uganda, many of us primarily associate Virtual Private Networks (VPNs) with bypassing blocked social media platforms like Facebook. However, the utility of VPNs extends far beyond this. They add a crucial layer of security by encrypting your internet connection and shielding your online activities from prying eyes whether you are engaged in tasks within your Google Suite or conducting online banking transactions

Browsers like Opera and Tor come with a built-in VPN, eliminating the need to constantly toggle it on and off. 

Password and Pass-Keys Generators

Managing strong and unique passwords for all your online accounts can be a daunting task. Luckily, both the Play and App stores offer a password generator that can generate and save passwords for your multiple online accounts. However, exercise caution and use this feature on private computers only. Unauthorized access to your Google Account or Apple ID could lead to breaches of your other accounts.

Software Updates 

Downloading and installing software updates for your devices and the applications used on them is one of the simplest methods to maintain optimal digital security. These updates enable tech companies to fix any bugs and vulnerabilities in their products that could be exploited by hackers or malware. Don’t ignore that software update notification on your computer any longer!

By implementing these simple digital security measures, you can significantly enhance your online safety and protect your valuable information from potential threats. Remember to remain vigilant and enjoy secure browsing.

2nd

Harnessing the Potential of Collaboration and Partnerships for Social Impact

The significance of partnerships and collaborative efforts in advancing the goals and activities of civil society has become more evident than ever before. This month, we take a moment to reflect on the profound impact of collaboration and partnership in advancing our mandate.


Fostering Knowledge Exchange
In collaboration with the Civic Advisory Hub and the NPO Coalition on FATF – East and Southern Africa Chapter, we took a significant step forward in advocacy efforts for the adoption of a risk-based approach to the monitoring and legislation of NPOs in the context of countering terrorism financing.


During a successful webinar titled “Understanding NPO Risk Assessment on Terrorism Financing,” NPO leaders from the region shared their experiences, lessons learned, and criteria for NPO risk assessment working groups. Together, we explored the critical role that NGOs play in these assessments and discussed the essential qualities required for effective participation.


Empowering Communities through Digital Security: Our #RoadToFIFAfrica Journey
We embarked on an exhilarating regional campaign known as #RoadToFIFAfrica, spanning from Kampala to Nairobi, Mombasa, and culminating in Dar es Salaam. Throughout this journey, we actively connected with local communities, students, CBOs, and NGOs to address the vital topic of digital security. Our mission was clear: to equip individuals and organizations with essential digital security skills, provide them with valuable tools and knowledge, and empower them to navigate the digital world safely and confidently.


Championing Internet Freedom at FIFAfrica23
With support from CIPESA Uganda and in collaboration with Encrypt Uganda, and HRD Andrew Gole, our commitment to digital security extended to Africa’s largest gathering on Internet freedom, the Forum for Internet Freedom in Africa (#FIFAfrica23). Through the Digital Security Alliance, we extended digital security support to some of the brightest minds in Africa and worldwide, fueling their tireless efforts to safeguard internet freedom both on the continent and globally.


Multi-Sector Support and Collaboration
In addition to these dynamic initiatives, we maintain active engagement with key government ministries and agencies including the Financial Intelligence Authority (FIA) and the National Information Technology Authority (NITA-U) among others.


Our objective is to provide valuable sector insights and foster collaboration to create an enabling and supportive environment for Human Rights Defenders(HRDs) and activists. Through our regional “Talk To Your Regulator” sessions, we aim to strike a delicate balance between fostering compliance and preventing excessive regulation. We achieve this by creating awareness among NGOs about their legal compliance requirements and responsibilities while also engaging regulators on the unintended consequences that overly restrictive regulations can have on the sector. Our ultimate goal is to ensure that members of civil society can effectively fulfill their missions. This month’s engagement took place in Hoima, marking another milestone in this ongoing effort.


Suffice it to say that our journey this month underscores the power of collaboration and partnerships in driving transformative change and fostering social impact. Here’s to more partnerships and collaborations ahead.

Assessing The Levels of Risk

Assessing The Levels of Risk to Which Human Rights NGOs Were Exposed to After Adoption Of Technology Tools For Business Continuity

A week after the World Health Organisation (WHO) declared COVID 19 a global pandemic, Uganda registered its first case. A month later, the disease was widespread across the country, prompting the operationalization of WHOrecommended and Government-imposed emergency measures to contain the spread of the virus. These included partial and eventually total lockdowns, a ban on social gatherings of more than five people, the shutdown of public transport, air travel, and the closure of businesses except for vital sectors like food and health.
To ensure continuity of operations, NGOs, much like other businesses/organizations across the globe, had to heavily depend on digital tools to continue operations which led to the “Zoom-Era.” The era of working from home/remotely aided by digital applications like conferencing platforms like Zoom, which allows for up to 500 participants, voice, and video, messaging apps, and digital collaborative workspaces in the absence of offices and physical engagement.

For the highly tech-driven economies from the developed world, this transition was undoubtedly an inconvenient adjustment; unfortunately for developing countries like Uganda, with substantial deficiencies in ICT infrastructure, where only a sixth (1/6) of the population has access to the internet, and 36% of the non-internet users are digitally illiterate1, it was nothing short of a catastrophe.

The Not-for-profit sector was one of those hardest hit by this transformation since the bulk of their work entails awareness and capacity building engagements, socio-civic advocacy/activism, community meetings, and outreach. This study, therefore, sought to investigate the digital security risks associated with the adoption of technological tools given the human rights landscape in Uganda and against the backdrop of the COVID pandemic.

The study targeted 50 NGOs across the country. To obtain comprehensive data sets, it necessitated the selection of respondents from both frontline officers involved in implementing day-to-day activities of human rights NGOs and critical decision-makers such as Executive Directors, Program Managers, Department Heads and Advocacy Officers.

Guided by the research questions; “Did the adoption of digital platforms expose NGO to any cybersecurity-related challenges? Was the adoption of digital platforms effective in NGOs’ business continuity?” we were able to obtain the following evidence.

Level of Exposure to Digital Tools Prior COVID 19

The research revealed that 50% of the respondents were moderately exposed to digital security tools before the COVID 19 lockdown. Frontline offices pointed out that their work primarily constituted physical engagements with their partners and beneficiaries, which limited the number of tech tools and frequency. The most commonly used digital tools were voice conferencing call facilities, voice over internet services like Skype, digital collaboration tools like Google Suite, Gmail, Google Drive, Google Meet, and Google Docs. Social media platforms including Facebook, Twitter, and YouTube. However, with the outbreak of COVID 19 and subsequent lockdown, NGOs had to adopt “new” tech tools and depend on the ones already in use more heavily to ensure business continuity. Respondents reported to have adopted video conferencing and collaboration platforms; Zoom, BlueJeans, Google Meet, Jitsi, KumoSpace, Microsoft Teams, and GoTo Meetings. These are mainly used to facilitate internal communication/conducting staff meetings (19%), communicate with participants (18%), conducting workshops (15%), communicating and liaising with donors (14%), and providing support to beneficiaries (14%)

Challenges Faced During and as a Result of Adopting Technological Tools

Facilitating business continuity, increasing efficiency, improving time management, and other benefits of tech mainstreaming notwithstanding, the adoption of tech tools was not without challenges. NGO heads reported internet interruptions as their biggest challenge. Interruptions were either unstable or, for the case of rural areas, non-existent networks—slow internet connections due to the minimal broadband coverage. 3G covers only 65% of the population, and LTE/4G covers only 17%.2 NGO staff in urban areas with access to 4G speeds that could support dataintensive apps like video conferencing tools were affected by the high cost of data. Individuals reported having spent on average 127,500 UGX per month purchasing internet data packages—a stretch for most middle seized NGOs without an internet budget big enough to cover 127,000 worth of data for each staff. The above interferences are compounded by frequent power cuts, which affect enabling ICT hardware and infrastructure such as the cell towers, desktops, MiFis, and modems.

Exposure to Digital Security Risks

Much like the COVID 19 pandemic, the adoption of tech tools and mainstreaming of ICT were novel. The timing and abrupt nature of the circumstances also did not allow for adequate preparation and training on using the digital tools and digital security concerns. These, therefore, paused unprecedented risks. 98% of the respondents reported having been exposed to some sort of digital security risk. Of the reported cases, we deduced that 52% of these were exposed to digital threats while using personal computers as opposed to the 48% who faced threats while using organization-provided computers. It was inferred from the findings that the organizations whose works centres on social development, justice, law and order, health, education, ICT, and accountability reported digital threats more frequently. However, this comes as no surprise, especially in the Ugandan context, whose civic environment is marred by intimidation, torture, and killing of social justice leaders, illegal detentions and evictions, and a restrictive legal framework, among others. However, the research findings highlighted the varying degree in threat level exposure as experienced by different genders and reaffirmed the disproportionate impact of COVID 19 on women and children. This is evidenced by NGOs operating in the thematic area of Women’s rights and reporting the most frequent (26%) exposure to digital security risks from using technology tools adopted during COVID-19 lockdown.

Forms of Digital Security Risks/ Threats

Service disruptions
0%
Online harassment
0%
Lack of privacy
0%
Malware
0%
Loss of data
0%
Unauthorized access to organizational documents
0%
After service disruptions (41%), online harassment (13%) was the second most frequent risk respondents reported to have been exposed to due to the adoption of technology tools during COVID-19 lockdown. Others included; online harassment (13%), lack of privacy (8%), malware (8%), loss of data (6%), and unauthorized access to organizational documents. (3%). Video Conferencing digital tools registered the highest incidences of exposure to digital security risks. Respondents reported multiple “Zoom bombing” incidents during which offensive or Not Safe For Work (NSFW) material was displayed during organizational meetings, hacking into video conference meetings by uninvited persons and impersonation.

Reporting and Resolution of Digital Security Incidents

The research also highlighted acute digital literacy levels and the urgent need for increased digital security support for NGOs. Of the 98% of respondents who reported exposure to digital risks, only 29% reported these exposures to their corporate ICT team, service provider, platform owner, or digital security group, the majority (70%) did not report these incidents primarily because they didn’t know that they could or because they did not know where to report.

Conclusion and Recommendations

While the adoption of new tech tools and increased digital streamlining in Human Rights Organisations was sparked by an emergency, the digital revolution has been growing and evolving over three decades and is here to stay. Pandemic or not, HROs, like other organizations, recognize the necessity of leveraging and repurposing digital tools for their work advocacy, service delivery, creative public demonstrations, and meeting emergent needs.
Additionally, it cannot be ignored that with the increased digitalisation are more significant digital threats both in terms of incidence and sophistication. With 98% of the respondents in this study indicating exposure to digital security risks and over 70% of these not reporting the incidents due to ignorance and absence of relevant digital security support, this demonstrates the vulnerabilities, threats, and risks HROs are potentially exposed to within the digital era
This study further exposes how the COVID-19 pandemic has exacerbated digital inequalities and widened the digital divide between rich and poor, urban and rural, and vulnerable and privileged—evidenced by limited access to the internet, digital differentiation, participation gaps, and usage gaps marking the challenges of digitally disadvantaged organizations or communities who cannot take advantage the internet and who are at greater risk of falling behind their digitally resourced counterparts.

Nevertheless, however startling the findings, there-in lies opportunities for HRDs and social activists to;

  • Fill the service provision gap in digital security awareness and digital literacy.
  • Advocacy on digital inequalities and the associated social inequalities.
  • Leverage/develop need-specific digital tools. Tailored to advancing and supporting the work and needs of HRDs in Uganda
  • DIGIsecCON21-banner_2_just

    Digital Security Conference (DigiSecCon21)

    Defenders Protection Initiative will bring together actors from civil society, the private sector, business leaders, government, academicians, technologists, activists, journalists and subject matter experts to tackle pressing issues at the intersection of human rights, technology and security.
    The Digital Security Conference is a premium convening for stakeholders from technological, business and civic arenas to discuss the challenges and opportunities in the promotion and advancement of human rights in a digital era.

    Contrary to the previous editions of the digital security conference, this year’s edition will be a hybrid with both online and physical locations. The programing for this year’s conference will deepen conversations on longstanding issues affecting access to the internet and information, freedom of expression and association, privacy, data protection, digital rights and inclusion. This year the conference is set to attract over 300 participants.

    The aim of the conference is to bring together different sector perspectives (e.g. education and social development, human rights, legal, health, ICT, finance, justice, law & order) to highlight the challenges, drivers and consequences of inequality in the age of digitalisation. In this context, we strive to identify viable solutions to ensure the creation of a self-determined society.

    Digitalisation has transformed the society we live in today: It has changed the way we communicate, learn, work, and live. Digital technologies provide access to information anytime and anywhere and promise to empower users around the world by delivering more and easier opportunities for transparency and social participation. Despite this potential, modern societies are increasingly witnessing a gaping chasm of inequality as social actors experience differential results of ubiquitous digitalisation around the world. Understanding and finding ways to solve this paradox is a primary motivation for the digital security Conference 2021.

    #DigiSecCon21

    DECODING FOUNDATIONAL INEQUALITIES IN A DIGITAL ERA

    Empowering civil society to challenge systemic exclusion

    Policy-Brief

    Policy Brief on AML/CTF Laws: An Examination of their Impact on Civic Space in Uganda

    By virtue of it being a member state, Uganda is enjoined to follow the UN counter terrorism recommendations including the adoption of relevant AML and CTF legislations. Similarly, although Uganda is not a member of FATF, it is obliged to follow its recommendations as a matter of international comity. Besides, Uganda and East Africa as a region have had their own bitter experience with terrorism.

    On July 11, 2010, the country experienced its worst terror attack in the form of twin bombings at two prominent places of entertainment. In both these attacks a substantial number of lives were lost (76 people) while many others were left with permanent injuries.

    amlctf

    AML/CFT Virtual National Dialogue & Report Launch

    Since 2016, Defenders Protection Initiative has enhanced its focus towards mitigating the unintended consequences orchestrated by Financial Action Task Force (FATF) inspired laws/ regulations on the activities of legitimate charities in Uganda. During this period, DPI has been able to broaden her AML/CFT capacity building initiatives in 8 regions of Uganda, conducted research and strategic engagements by and for civil society actors as a pushback strategy against over-regulation.

    As part of her novel initiatives, DPI conducted a Virtual National Dialogue and Report Launch of the study conducted between December 2020 and March 2021, titled: Anti-Money Laundering and Counter-Terrorism Financing (AML/CTF) Laws: “An Examination of Their Impact on Civic Space in Uganda”

    The Virtual National Dialogue and the launch of the report provided an opportunity to share, reflect and disseminate the findings with a diverse group of stakeholders comprising of of advocates, civil society leaders, academia, media practitioners, students, researchers and the donor community.

    Event Recording

    We also want to interest you in