Posts Tagged ‘digital security’

Amnesty’s Detekt: a new tool against government spying launched today

November 20, 2014

Screen Shot 2014-11-20 at 10.24.35

On 20 November 2014 Amnesty International launched a new tool that human rights defenders can use in their struggle against surveillance. It is calledDETEKT. As I have often expressed concern about digital security in this blog (see: https://thoolen.wordpress.com/tag/digital-security/\) here ARE major excerpts from the Questions and Answers that were provided in the press release:

What is Detekt and how does it work?

Detekt is a free tool that scans your computer for traces of known surveillance spyware used by governments to target and monitor human rights defenders and journalists around the world. By alerting them to the fact that they are being spied on, they will have the opportunity to take precautions.

It was developed by security researchers and has been used to assist in Citizen Lab’s investigations into government use of spyware against human rights defenders, journalists and activists as well as by security trainers to educate on the nature of targeted surveillance. Amnesty International is partnering with Privacy International, Digitale Gesellschaft and the Electronic Frontier Foundation.

Why are you launching Detekt now?

The latest technologies enable governments to track, monitor and spy on people’s activities like never before. Through the use of these technologies, governments can read private correspondence and even turn on the camera and microphone of a computer without its owner knowing it. Our ultimate aim is for human rights defenders, journalists and civil society groups to be able to carry out their legitimate work without fear of surveillance, harassment, intimidation, arrest or torture.

Has anyone used Detekt successfully to know if they were being spied on? 

Detekt was developed by researchers affiliated with the Citizen Lab, who used a preliminary version of the tool during the course of their investigations into the use of unlawful surveillance equipment against human rights defenders in various countries around the world.

For example, according to research carried out by Citizen Lab and information published by Wikileaks, FinSpy – a spyware developed by FinFisher, a German firm that used to be part of UK-based Gamma International– was used to spy on prominent human rights lawyers and activists in Bahrain.

How effective is this tool against technologies developed by powerful companies? 

Detekt is a very useful tool that can uncover the presence of some commonly used spyware on a computer, however it cannot detect all surveillance software. In addition, companies that develop the spyware will probably react fast to update their products to ensure they avoid detection. This is why we are encouraging security researchers in the open-source community to help the organizations behind this project to identify additional spyware or new versions to help Detekt keep up to date.

It is important to underline that if Detekt does not find trace of spyware on a computer, it does not necessarily mean that none is present. Rather than provide a conclusive guarantee to activists that their computer is infected, our hope is that Detekt will help raise awareness of the use of such spyware by governments and will make activists more vigilant to this threat.

In addition, by raising awareness with governments and the public, we will be increasing pressure for more stringent export controls to ensure that such spyware is not sold to governments who are known to use these technologies to commit human rights violations.

How widely do governments use surveillance technology?

Governments are increasingly using surveillance technology, and targeted surveillance in particular, to monitor the legitimate activities of human rights activists and journalists. Powerful software developed by companies allows governments and intelligence agencies to read personal emails, listen-in on Skype conversations or even remotely turn on a computers camera and microphone without its owner knowing about it. In many cases, the information they gather through those means is used to detain, imprison and even torture activists into confessing to crimes.

How big is the unregulated trade in surveillance equipment? What are the main companies and countries involved? 

The global surveillance industry is estimated to be worth approximately US$5 billion a year – with profits growing 20 per cent every year. European and American companies have been quietly selling surveillance equipment and software to countries across the world that persistently commit serious human rights violations. Industry self-regulation has failed, and government oversight has now become an urgent necessity.

Privacy International has extensively documented the development, sale and export of surveillance technologies by private companies to regimes around the world. Recipient countries include: Bahrain, Bangladesh, Egypt, Ethiopia, Libya, Morocco, South Africa, Syria and Turkmenistan.

Isn’t publicizing the existence of this tool giving governments a heads up about how they can avoid being caught (by adapting new equipment which avoids detection)?

The technologies that allow governments to efficiently and covertly monitor the digital communications of their citizens are continuously improving. This is happening across the world. The growing trend in indiscriminate mass surveillance on a global scale was laid bare by the Edward Snowden disclosures. In addition to mass surveillance technologies, many governments are using sophisticated tools to target specific human rights defenders and journalists who work to uncover abuses and injustice. The new spyware being developed and used is powerful and dangerous and putting many human rights activists and journalists at risk of abuse.

As surveillance technologies develop in sophistication, it is vital that civil society groups learn how to protect their digital communications. No one tool or intervention will be enough to do this. We hope Detekt will become a new approach for investigating surveillance while sensitizing people to the threats.

However, long term we must also demand that governments live up to their existing commitments to human rights and that they and companies put in place stronger protections to ensure that new technologies are not used to violate human rights.

Surveillance is also used to carry out legitimate criminal investigations, why are you against it? 

Targeted surveillance is only justifiable when it occurs based on reasonable suspicion, in accordance with the law, is strictly necessary to meet a legitimate aim (such as protecting national security or combatting serious crime and is conducted in a manner that is proportionate to that aim and non-discriminatory.

Indiscriminate mass surveillance – the widespread and bulk interception of communication data that is not targeted or based on reasonable suspicion – is never justifiable. It interferes with a range of human rights, particularly the rights to privacy and freedom of expression.

The Detekt tool can be downloaded from: Github page.

http://www.amnesty.org/en/news/detekt-new-tool-against-government-surveillance-questions-and-answers-2014-11-20

 http://gadgets.ndtv.com/internet/news/human-rights-group-amnesty-international-releases-anti-surveillance-tool-623484

Amnestys Detekt tool wants to help you thwart government spying | ZDNet.

Important Report: “Keeping Defenders Safe: A Call to Donor Action”

November 8, 2014

I am sharing with you an important new report on the protection and security of human rights defenders entitled, “Keeping Defenders Safe: A Call to Donor Action”. The report was released this summer but did not get the attention it deserves. The report reviews existing responses to the security challenges that human rights defenders face, with a focus on the grant-makers who support work aimed at strengthening HRD protection and security. The author, Borislav Petranov, conducted more than 150 interviews with defenders and related stakeholders around the world, seeking to capture the viewpoints of activists on the ground.  Monette Zard prepared it for publication. The report’s conclusions suggest changes in focus and approach with recommendations that donors can implement individually as well as collectively to enhance the protection and security of HRDs. While it is not a roadmap or comprehensive analysis of protection mechanisms, it does recommend considered reflection on current policies and practices in the field:  Read the rest of this entry »

Internet guru Bruce Schneier will lecture on: Is it Possible to be Safe Online?

September 30, 2014

On 6 October 2014 Front Line Defenders will be hosting US computer privacy expert and “digital security guru” Bruce Schneier as the key-note speaker for their second Annual Lecture [for those in Ireland: at 6.30 pm in the Trinity Biomedical Science Institute – tickets are available at: https://bruceschneierdublin2014.eventbrite.ie].

This talk, entitled “Is it Possible to be Safe Online? Human Rights Defenders and the Internet”, will explore the issues faced by human rights defenders and everyday people on the ground as the use of computers and the Internet in their work is becoming increasingly commonplace and the threats posed by governments manipulating, monitoring and subverting electronic information, increased surveillance and censorship and the lack of security for digitally communicated and stored information is on the rise. Called a “security guru” by The Economist, Schneier has authored 12 books – including Liars and Outliers: Enabling the Trust Society Needs to Thrive – as well as hundred of article, essays and academic papers. His influential newsletter  Crypto-Gram and his blog Schneier on Security are read by over 250,000 worldwide.

via Is it Possible to be Safe Online? Human Rights Defenders & the Internet – lecture by Bruce Schneier – 06/10.

Today official launch of AI’s Panic Button – a new App to fight attack, kidnap and torture

June 23, 2014

Amnesty International launches new open source ‘Panic Button’ app to help activists facing imminent danger.

Today, 23 June 2014, Amnesty International launches its open source ‘Panic Button’ app to help human rights defenders facing imminent danger. The aim is to increase protection for those who face the threat of arrest, attack, kidnap and torture. In short:

Read the rest of this entry »

New book on Internet Policy and Governance for Human Rights Defenders

June 5, 2014

This week, Global Partners have published the first in their series of “Travel Guides” to the digital world: Internet Policy and Governance for Human Rights Defenders which Becky Hogge authored under contract to them last year.

The aim of the guide is to entice human rights defenders from the Global South to participate in the discussions happening now around our rights online. But it should also serve as a useful introduction to the technologies that underpin the ‘net and the people who can affect our lives online, from governments to corporations, hackers, hacktivists and everything in between.

Global Partners introduces the book as follows: How the internet operates and is governed affects the rights of users – a new field from which human rights expertise is currently absent. Civil society groups at the table are fighting an unequal fight, and urgently need the strength and depth that the human rights community can bring. It is time for human rights defenders to familiarise themselves with the internet, and prepare to defend human rights online. The typesetting and illustrations are by Tactical Studios.

The volume is released Creative Commons and you can download a free .pdf version: https://barefoottechie.files.wordpress.com/2014/06/travel-guide-to-the-digital-worlds.pdf.

 

Help lead our upcoming conversation on documentation tools!

May 29, 2014

 

New Tactics is going to have a on-line conversation on the safe & effective use of documentation tools from 9 to 13 June 2014. They are looking to recruit 10 to 12 human rights practitioners to join Daniel D’Esposito of HURIDOCS and Enrique Piracés of Benetech to help lead the upcoming conversation on Working Safely and Effectively with Documentation Tools Documentation is a crucial aspect of the quest for justice, accountability and transparency.

Read the rest of this entry »

Mobile phone security for human rights defenders

May 7, 2014

mobilesecheader.png

Having posted on the Natalia bracelet and the Panic Button recently as alarm systems for human rights defenders in danger, it is good to also draw attention to the dangers that are inherent in the ‘normal’ use of mobile phones. Tactical Tech has quite a bit to say about  mobile phone security: Human Rights Defenders are exposed to many potential threats – from governments, private companies, organised groups – in the course of their work. Therefore, they should be aware of dangers and necessary security measures to be taken if  deciding to communicate by mobile phone, which remains an easy-to-spy-on device. Tactical Tech has produced a number of resources about phone security.

Security in a Box has a chapter entitled “How to Use Smartphones as Securely as Possible” and one on using mobile phonesas securely as possible.

Me and My Shadow has a chapter on geolocation services for smartphones and the risks they carry, as well as tips for those using SMS and MMS.

Finally, have a look at the Guardian Project’s website, created by a group of activists dedicated to creating open source apps to increase security and privacy on smartphones.

via Mobile phone security | Exposing the Invisible.

https://thoolen.wordpress.com/tag/natalia-project/

https://thoolen.wordpress.com/2014/05/02/amnesty-releases-today-long-awaited-panic-button-for-human-rights-defenders/

Amnesty releases today long-awaited ‘Panic Button’ for human rights defenders

May 2, 2014
Amnesty International is working with activists in 16 countries on how to use "Panic Button".

(AI is now working with HRDs in 16 countries on how to use “Panic Button”. © Amnesty International)

As this blog testifies, across the globe, individuals suspected of posing a threat to state authority are routinely kidnapped, arrested and forcibly disappeared, often without any warning.Amnesty international launches today the easy-to-use app launched by Amnesty International. “Panic Button”, a mobile app for Android, transforms a user’s smart phone into a secret alarm which can be activated rapidly in the event of an emergency, alerting fellow activists and enabling them to respond faster.

Defending human rights is an incredibly dangerous job in large parts of the world, with activists facing anything from threats to imprisonment and even torture as punishment for their legitimate work,” said Tanya O’Carroll, Technology and Human Rights Officer for Amnesty International. “By introducing technology to the fight for human rights ‘Panic Button’ is bringing them a new tool to alert others about the danger they may be facing with a simple click.”

AI is are currently working with HRDs in 16 countries on how to use the tool and on the growing and omnipresent threat of surveillance so they are clear on the risks they take when using a mobile phone in their work,but the official website for the “Panic Button” app is up and running.

[Amnesty International hopes that activists and members of the public will help to improve the tool by downloading and testing Panic Button in their country as part of the beta – or testing – phase. Authorities know that campaigners coordinate meetings, protests and other activities using mobile phones and have ramped up their surveillance capabilities to monitor and track activists, journalists and campaigners. In a bid to mitigate some of these dangers, the “Panic Button” tool uses a screen disguise feature and requires users to enter a pin number before accessing the application. The alarm itself is triggered by rapidly pressing the phone’s power button, after which an SMS message is sent to three pre-entered contacts chosen by the user, alerting them of the distress call. When a GPS function is enabled, this message includes a map link showing the user’s coordinates and the user can pre-set regular location updates so their network is updated every few minutes when active.]

via New ‘Panic Button’ app provides safety net to human rights activists | Amnesty International.

see also: https://thoolen.wordpress.com/2013/09/05/technology-to-protect-human-rights-defenders-great-but-should-there-not-be-more-cooperation/

Security Firm Rift Recon teams up with Human Rights Foundation at Oslo Freedom Forum

April 25, 2014

RIFT RECON announced on 16 April that it will join forces with the Human Rights Foundation to present a comprehensive security workshop at the 2014 Oslo Freedom Forum ‘OFF’ from 12-14 May 2014. Read the rest of this entry »