(6th meeting) Plenary Session, Global Mechanism on ICTs in the Context of International Security (20-24 July) Meetings & Events Date: 22 July 2026 Language: English Transcript: https://transcripts.un.org/ar/asset/k17/k175dwel1d?lang=en Transcripts available through this tool are created by using automatic speech recognition and are not official records nor official documents of the United Nations. Official records and official documents are available on the Official Document System of the United Nations. --- Global Mechanism · Chair [0:05]: A very good afternoon. I call to order the 6th meeting of the Plenary Session 2026 of the Global Mechanism on ICTs in the Context of International Security and Advancing Responsible State Behavior in the Use of ICTs. The meeting is called to order. According to our program of work and also the consensus-based modalities on the participation of stake— non-governmental stakeholders in the works of our mechanism, we will now have our meeting on accredited entities for our work. Right now I have 14 Accredited organizations who have requested the floor. I will give the floor to each speaker for 4 minutes. Before I give the floor to the first speaker, who is Discover MUN Foundation, I'd like to express my thanks to all of you for participating in this first plenary session of the mechanism. Thank you. I know that many of you are not based in New York, so thank you for the interest that you've shown. Thank you for your time and coming and contributing to the work of this mechanism. The chair is very grateful to all of you. I now give the floor to DiscoverMUN Foundation. DiscoverMUN Foundation · Major Group for Children and Youth [1:50]: Madam Chair, I have the honor to take the floor on behalf of the Major Group for Children and Youth, the mandated children and youth constituency at the UN, representing over 20,000 distinct youth organizations. Excellencies, cybersecurity risks and automated exploits are escalating at an unprecedented speed today. Dual-use technologies, from AI-driven malware to deepfake social engineering, are being weaponized to target digital spaces. When everyday ICT tools are repurposed for malicious cyber activities, it is young people, particularly children, who face immediate attacks to their digital safety and rights. In this context, please allow me to deliver the following demands on behalf of children and youth. First, we believe the member states must consider age-related disaggregated data on malicious ICT activity in their submissions under this pillar. We call upon delegations to consider General Comment number 25 of the Committee on Rights of the Child, which establishes that rights of children apply fully and equally in the digital environment. Second, for capacity building, we call for the establishment of a dedicated children and youth track within the mechanism sponsorship and capacity-building activities. We believe that such activities must be modeled on successful examples of capacity-building for marginalized stakeholders in the UN system, such as the Women in International Security and Cyberspace Fellowship organized by the UN Institute for Disarmament Research, which effectively integrates young technical experts experts in national delegations. Third, consistent with the Youth Peace and Security Agenda under Security Council Resolution 2250, we call for meaningful engagement with children and youth to be recognized by the mechanism as a confidence-building measure in its own right. Madam Chair, please allow me now to turn to the critical issue of stakeholder participation. My delegation thanks you for your letter dated 1st June and for your tireless efforts to uphold the transparency required by the modalities document in A/80/257. We note that these modalities were agreed by consensus on the understanding that inclusivity would be the norm and objection be the exception. But objections that are lodged against more than 60 stakeholder entities including non-governmental organizations, universities, and technical bodies without any stated basis whatsoever cannot be considered as inclusivity. We call upon member states to honor the multi-stakeholder principles that they affirmed in both the Global Digital Compact and the World Summit for Information Society +20 review by disclosing the basis of their objections. In this context, we thank the distinguished delegations of the European Union and its member states for acting as a leading example of what transparency means pertaining to stakeholder participation. Excellencies, we fully support the Chair's efforts for mediation, but further demand that this mechanism work towards transparent, criteria-based accreditation practices to ensure predictable, principled, and objective procedures concerning stakeholder and rightholder participation. Excellencies, an open, secure, stable, accessible ICT environment cannot and will never be built behind closed doors. Just like many of our distinguished colleagues present here today, children and youth remain ready to bring constructive contributions. Thank you. Global Mechanism · Chair [5:40]: Muchísimas gracias. Thank you very much. I now give the floor to the Internet Cooperation for Assigning Numbers— for Assigned Numbers, rather, followed by Future Earth Systems. ICANN [5:56]: So thank you, Chair, for the opportunity to contribute to this discussion. Internet Corporation for Assigned Names and Numbers, or otherwise ICANN, coordinates the Internet Unique Identifier Systems and works to help ensure the security, stability, and interoperability of the Domain Name System or the DNS. Addressing harm perpetrated through the DNS is an important part of that mission. Misuse of domain names for phishing, malware, botnets, and pharming possesses risks to internet users around the world and requires coordinated action across the internet ecosystem. ICANN does not regulate internet content or investigate cybercrime. Instead, it plays its part with regard of the wider online harm mitigation efforts by combating misuse of domain names through contractual obligations, consensus policies, technical coordination, capacity development, and collaboration with organizations that operate the DNS. No single stakeholder can address these challenges alone. Registries, registrars, governments, law enforcement, technical experts, civil society, the private sector, and others across the internet community. Each brings different responsibilities, expertise, and capabilities. ICANN works to increase the visibility of capacity-building efforts among UN member states. One example is the Coalition for Digital Africa, which brings together African governments, regional organizations, academia, the private sector, and the technical community to strengthen DNS security and resilience, build local technical expertise, and expand opportunities for participation in the internet governance. ICANN multi-stakeholder model provides the mechanism for this cooperation. Its supporting organizations and advisory committees bring technical expertise, operational experience, business perspective, public interest, and end-user needs into policy development. Governments have a unique and essential role within this model through the Government Advisory Committee, or the GAC. The GAC advises the ICANN Board on public policy issues related to ICANN's mission, including matters affecting the security, stability, and resilience of Internet's unique identifier systems that includes Domain Name System. Through the Government Advisory Committee, governments bring a public policy perspective directly into ICANN's work as integral part of the multi-stakeholder model. I would like to use this opportunity to encourage all member states to actively participate in the work of Government Advisory Committee ensuring the DNS flawless functioning. And if you do not have a representative, please reach out to, to us. We have a staff here in New York, and we would be happy to provide all the information you might need. Last but not least, I would like to invite you to the briefing entitled Demystifying the Internet: Collaborative Security Approaches that ICANN, the Internet Society, and the ITU are giving tomorrow in Conference Room 8 during the lunch break. Madam Chair, Excellencies, dear colleagues, we're looking forward to observing the Global Mechanism plenary sessions, and we are at your disposal should you have any questions on the technical functioning of the Internet. Thank you. Global Mechanism · Chair [9:46]: Muchísimas gracias. Doy ahora la palabra Thank you very much. I now give the floor to Future Earth Systems, followed by Forum of Incident Response and Security Teams First. Future Earth Systems · Chris Sampson [9:59]: Thank you, Madam Chair, for your leadership and the opportunity to address this plenary. My name is Chris Sampson from Future Earth Systems. I have the privilege of participating as an independent accredited stakeholder. I have, I have spent many decades designing whole-of-government systems, ICT policy and strategy, public and private sector innovation, and socioeconomic development, with a special interest in regional, rural, and remote community socioeconomic equity in the digital age. I have also had the benefit of discussing and analyzing the GGE and open-ended working group as part of the ongoing Geneva Dialogue. With many thanks to the Government of Switzerland. I want to highlight the potential value of the practice of enterprise architecture to the work of this General Mechanism. Enterprise architecture maps out how policy intent, legal and regulatory frameworks, capabilities, and processes, data, and technical systems all align. Think of it like a city plan. It ensures that roads, utilities and buildings work together efficiently and can adapt as the city grows. Using architecture practice in this way can bridge from policy and guidance to implemented operational systems, ensuring optimal alignment of resources and a clearer focus on achieving measurable strategic outcomes. This approach can help us harness the positive opportunities of ICTs Including AI and quantum. It forms the blueprints for real-time sensory systems which can adapt themselves much more dynamically to changing conditions and challenges. The— these are the new generation of systems that will enable human society to operate at the next level of complexity with peace and security for all. Madam Chair, Industry is already innovating at this level. We can see it in both regulated and unregulated global trade, including cybercrime. Cyber defense needs to be a globally interconnected ecosystem itself, with much more effective collaborative systems and shared data between our state institutions and our regional and global institutions, so we can strengthen the capabilities collectively and continuously, enabling every community to operate in peace and security. An architectural approach will help us build on the norms as systems and realize the value of the multi-stakeholder participation that you have all worked so hard to bring together. Importantly, such an approach would not alter negotiated outcomes. Rather, it could strengthen the mechanism, improve capacity building, and support implementation for all communities, ensuring human use of ICTs are stewarded responsibly, enabling human flourishing for generations to come. I commend the work of all involved and would be honored to contribute. Thank you very much, Madam Chair. Global Mechanism · Chair [13:18]: Muchísimas gracias. Thank you very much. I give the floor now to FIRST, followed by Center for Humanitarian Dialogue. FIRST [13:26]: Honorable Chair, distinguished delegates and stakeholders, thank you for inviting FIRST to contribute to the first plenary meetings of the UN Global Mechanism. We reiterate our appreciation for the Chair's sincere and sustained effort to engage all stakeholders in an open, transparent, and inclusive manner. In this regard, FIRST supports the Joint Multi-Stakeholder Statement on the objection to the participation of stakeholders in the plenary meeting of the Global Mechanism, in line with the agreed modalities contained in the 2025 OEWG Final Report. Stakeholders from industry, academia, and professional and technical organizations, including FIRST, play indispensable roles in supporting the implementation of cyber norms and confidence-building measures, providing timely operational responses to emerging cyber threats, facilitating the responsible disclosure of vulnerabilities affecting ICT-enabled critical infrastructure, strengthening cybersecurity capacity-building efforts at the national, regional, and global levels. Members of FIRST have participated in their individual capacities in the UNGGE process since 2012, and FIRST has proudly supported the work of the Open-Ended Working Group since 2019. As the global forum of incident response and security teams established 35— over 35 years ago, FIRST membership currently includes 874 incident response and security teams across 118 countries. Our members include national CERTs, private sector, academic CERTs, as well as product security and incident response teams. With respect to the ongoing discussions on international law, the stakeholder community can make valuable contributions by facilitating and expanding capacity-building efforts in this area. In particular, the technical community and especially incident response and security professionals can provide practical experiences and expertise on how international law applies in cyberspace and help strengthen states' cyber resilience and preparedness in support of the UN Framework for Responsible State Behavior in Cyberspace, including the implementation of cyber norms and confidence-building measures. We are pleased to contribute in the past to the OEWG Global Roundtable on Cybersecurity Capacity Building held 2 years ago, and looking ahead, we hope that similar open, transparent, inclusive consultations will continue to convene through the dedicated thematic groups. We emphasize the importance of a holistic approach to cybersecurity that is grounded on good governance, meaningful stakeholder engagement and strong cybersecurity communities. Addressing today's rapidly evolving cyber threats requires diverse expertise, close collaboration among government, industry, academia, and the technical community. During cyber incidents, CERTs and security professionals routinely exchange threat intelligence, coordinated mitigation measures in real time, through trusted, secure, and often informal channels. Forest calls upon states to support international collaboration among incident responders and to ensure that such cooperation remains non-politicized, consistent with the relevant UNGGE 2021 report. We look forward to continuing to support the work of the Global Mechanism and contributing to the shared objectives of a secure, stable, peaceful, and resilient cyberspace. Thank you. Global Mechanism · Chair [17:30]: Muchísimas gracias. Thank you very much. I give the floor to Center for Humanitarian Dialogue, followed by Developing Capacity Ltd. Center for Humanitarian Dialogue [17:40]: Madam Chairperson, thank you for giving me the floor. I'm speaking on behalf of the Center for Humanitarian Dialogue, a private diplomacy organization acting from principles of humanity, impartiality, neutrality, and independence. Allow me to suggest an issue for consideration that the United Nations have not fully explored: confidence-building in the cyber and information domain after an armed conflict. Preparing for peace after war has become timely again. The end of a war is not the beginning of peace. It is the beginning of a volatile in-between situation. Forces are still opposing each other. Trust does not exist. There's a risk of renewed hostilities, and small incidents can carry big consequences. Military and diplomatic experts have learned to address such hazards. They have developed mechanisms to stabilize a truce, surrendering weapons, placing them under third-party control, nominating mediators, exchanging envoys, establishing joint commissions. Such measures typically focus on the physical, reflecting the traditional domains of warfare: land, sea, and air. Technological progress has opened a new non-physical domain, Cyberspace. No ceasefire, armistice, or peace agreement in history ever had to pay heed to the cyber and information domain. This must now change. Designing confidence-building measures for the nonphysical cyber and information domain is a struggle. It is possible to follow troop deployments, to count guns, to observe ships and aircraft, But it is not possible to watch computer code. Nor can algorithms be conveniently cantoned, assembled in one place, or disabled. Malware can be developed anywhere, transported on a chip, deployed from any point of Earth. It is effectively indestructible. Moreover, since cyber operations are often used in hybrid campaigns or to prepare a kinetic battlefield, ICT incidents can raise suspicion. In a no-trust security environment, such as shortly after a war, this is ever more dangerous. With this in mind, I encourage the Global Mechanism to consider and develop ideas for confidence-building in the cyber and information domain after armed conflict. The Centre for Humanitarian Dialogue, which has some expertise in mediating for peace, We'll be happy to assist should you take this up. Thank you. Global Mechanism · Chair [20:31]: Thank you very much. I now give the floor to Developing Capacity LDT, followed by IMQ NSPA. Developing Capacity · Director · Robert Collett [20:40]: Thank you, Madam Chair and distinguished delegates, for the opportunity to speak today. My name is Robert Collett and I'm the Director of Developing Capacity an organization focused on capacity building and AI for diplomacy. During the OEWG, we were pleased to support the process by providing unofficial transcripts, contributing to politically neutral side events, and producing reports in response to the chair's guiding questions. Most significant among these was a series of tabletop exercises on the principles agreed by the OEWG, culminating in a Chatham House Report on how they might be applied in practice. I am pleased to say that stakeholders have already begun mobilizing to support the mechanism. My organization joined meetings in advance of this session to agree how we can best assist, and we hope that more experts will be able to speak alongside us in the future. Several capacity-building practitioners, including myself, have recently published articles with practical suggestions for the mechanism that we will submit to the document repository. But you also have more than 2 decades of research, conference outcomes, and lessons to draw upon. This includes the work of previous OEWGs, organizations in the UN system such as ITU, World Bank and UNIDIR, regional organizations, and specialist forums. Many excellent suggestions have already been made. However, if I were to prioritize 3 areas as you structure the work of DTG II, they would be the following. First, aim for quick wins by coordinating, matchmaking, and mobilizing funding for capacity-building activities that directly support the global mechanism and the implementation of the agreed framework. Second, address the deeper strategic challenge of increasing the resources available for cyber capacity building both internationally and domestically. And third, aim to improve the quality, efficiency, and demand-driven nature of cyber capacity building. This could be achieved by promoting and operationalizing the principles already agreed by the OEWG. Stakeholders stand ready to assist with this work, and Developing Capacity looks forward to contributing. Thank you, Madam Chair. Global Mechanism · Chair [23:12]: Muchísimas gracias. Doy ahora la palabra. Thank you very much. I now give the floor to IMQ Intuity S.p.A., followed by the Most Costate Institute of International Relations. IMQ Intuity S.p.A. · Matteo Tomiazzo [23:23]: Madam Chair, distinguished delegates, Thank you for giving stakeholders the opportunity to contribute to these important discussions. My name is Matteo Tomiazzo, and I represent IMQ Intuiti, an Italian company specializing in cyber resilience through realistic attack simulations, contributing to Italy's national cyber capacity building program. Across hundreds of realistic attack simulations, we have rapidly observed the same pattern. Cyber risk— rarely emerge from a single vulnerability. More often, it may— it emerges from the interaction between technology, people, processes, suppliers, physical infrastructure, and the decisions that connect them. The challenge is no longer the number of vulnerabilities. It is the growing number of interdependencies. As our societies become increasingly interconnected, cyber incidents no longer remain confined to the technology. A technical compromise can rapidly become operational disruption, economic impact, and ultimately societal consequences. Our experience has taught us that resilience begins by turning the map around. Rather than asking how we defend ourselves, we ask different questions. If we were the attacker, where would we begin? Looking at ourselves through the eyes of those who seek to exploit us reveals hidden dependencies, challenges assumptions, and helps us understand what truly matters before a crisis occurs. We have learned another important lesson: resilience is rarely limited by technology alone. More often, it is limited by assumptions that have never been challenged. Technology helps us protect what we already know. Changing perspective helps us discover what we have not yet seen. Realistic simulations do more than test technologies. They reveal systematic interactions, expose cascading effects, and challenge assumptions before real adversaries do. Resilience is not about protecting, protecting everything equally. It begins by understanding what is truly critical. Every security decision is ultimately a decision about risk. Madam Chair, the framework developed through the global mechanisms provides an essential foundation for responsible state behavior in cyberspace. From our operational experience, we would like to offer one practical reflection. Responsible behavior requires responsible preparation. Preparation means more than deploying technologies. It means understanding complexity, recognizing interdependencies, Preparing leaders and institutions to make sound decisions under uncertainty, and challenging assumptions before they become vulnerabilities. Stakeholders have a unique role to play in reaching the open discussion with neutral, factual, and operational evidence from the field. Cybersecurity has become— has been described as a technological challenge. Our experience suggests something different. It is fundamentally a challenge of understanding complexity, and understanding complexity always begins by changing perspective. Thank you, Madam Chair. Global Mechanism · Chair [26:39]: Thank you very much. I now give the floor to the Moscow State Institute of International Relations, followed by the Internet Society. Moscow State Institute of International Relations [26:52]: Madam Chair, distinguished delegates, thank you for the opportunity to address this session. Thank you, Madam Chair, for extensive preliminary work conducted before the start of the session. We appreciate the opportunity to engage with accredited NGOs and interested states on capacity-building initiatives. Gimhae University has a longstanding academic tradition and expertise in international law and security. From this viewpoint, we believe that universal legally binding international agreements in information security domain will deliver sustainable long-term outcomes rather than voluntary non-binding norms of state behavior. On capacity-building initiatives, in 2023, we launched a training program to enhance the digital skills for MGIMO students studying in non-technical fields, including the future diplomats. More than 2,300 students completed the program to date. This year we proposed an educational project called iDENTITE, which stands for ICT Digital Related Education for Non-Technical and International Affairs Talented Youth. And this project was recognized at the World Summit on Information Society in Geneva as a champion in e-learning category. This award allows us to present our best cases, our best practices to a wider audience. By offering free, short-term, open enrollment distant education courses called Digital Weeks, focusing on international agenda in ICT and information security, national IT strategies, fostering, fostering data, AI, and data governance skills, as well as addressing best practices on engaging with IT companies and technology vendors. We are also open to share our curriculum detail— details and competence framework that other universities and training centers can adopt in interested member states. On research agenda, uh, in the research field, MGIMO calls for recognition of importance of neutrality of large language models with regard to international affairs, everyday work of diplomats, and media coverage of world events. We were able to identify profound inconsistencies, irregularities, and sentiment shifts in large language model responses on international affairs issues and problems. Lack of language and cultural diversity in the outputs of LLM is also an area of concern. We're developing a set of reproducible tests or benchmarks designed to identify these anomalies. these anomalies. We believe that this work could be the basis of a standardization of large language model evaluation. McGill University stands ready to cooperate with accredited partners and member states on educational programs, research projects, and practical capacity-building initiatives. Thank you, Madam Chair. Global Mechanism · Chair [29:59]: Thank you very much. I now give the floor to Internet Society, who will be followed by Kenya ICT Action Network. Internet Society [30:08]: Thank you, Madam Chair. As this is my first time participating in the global mechanism on behalf of the Internet Society, I would like to welcome the launch of the first substantive plenary session and congratulate you on your election as chair. This mechanism represents years of hard-won consensus, and its success will be determined by whether it can turn around agreed norms into practical, real-world impact for the billions of people who rely on the internet every day. Since 1992, the Internet Society, a global nonprofit organization founded by internet pioneers, has promoted the development of the internet as a global technical infrastructure, a resource to enrich people's lives, and a force for good in society. Through our community members, special interest groups, and over 130 chapters worldwide, our organization advocates for internet policies and technologies that keep the internet open, globally connected, and secure. We come to the table with operational experience and technical expertise as a part of the broader technical community, which is comprised of various organizations. These organizations build the internet and make it resilient. Specifically, standards developed through the Internet Engineering Task Force, or the IETF, through its open bottom-up process underpin much of the day-to-day security of the internet, and the same open participation model proves that that effective multi-stakeholder collaboration can deliver. Beyond standards, through initiatives like mutually agreed norms in routing security or manners, we support the development of routing security practices to reduce systemic vulnerability and global routing. By working with local communities to build internet infrastructure and skills through community networks and internet exchange points, this mechanism directly advances the capacity building goals that it has Additionally, through our— sorry, through our Global Common Good Cyber Initiative and our engagement with cybersecurity community, we help connect resources seeking to fund nonprofits across the globe whose work support the following objectives: maintenance of critical cybersecurity infrastructure, delivery of scalable support to secure internet users from digital harm, including state-directed cyber activity and digital transnational repression, and the advancement of safer internet for vulnerable groups and high-risk communities, including civil society and journalists. We would be really glad to bring these perspectives to the dedicated thematic groups, particularly that on capacity building. Our core message today is this: we believe that this mechanism's long-term success will be served by meaningful and sustained engagement of nongovernmental stakeholders. This is not a courtesy, it is essential. The internet is not solely run by governments. It is run by a distributed ecosystem of network operators, standard bodies like the IETF and technical experts. Decisions on cyber norms, international law, and confidence building should make the input from these stakeholders who build and secure its infrastructure prioritized. Otherwise, the mechanism risks being disconnected from operational reality. Therefore, we would like to call on member states to ensure stakeholder accreditation and participation modalities are implemented in predictable, transparent, and non-reactive manner to include actors without ECOSOC status through fair application and non-objective process, preserve and strengthen the multi-stakeholder model that keeps the internet resilient, innovative, and globally interoperable, and offer stakeholders an opportunity to contribute substantively to the DTGs, allowing stakeholders to bring their insights and perspectives to continue to contribute and better the results to be be implemented and supported. The Internet Society looks forward to constructively and substantively contributing to the global mechanism. And before I close, I would like to invite you all to the briefing that we'll be co-organizing with the permanent missions of Kenya and Bulgaria alongside ICANN and the ITU entitled Demystifying the Internet: Collaborative Security Approaches. It will be taking place tomorrow at 1:15 in Conference Room 8. I hope to see you there. Lunch will be provided. Thank you. Global Mechanism · Chair [34:09]: Muchísimas gracias. Thank you very much. And I'll give the floor to Kenya ICT Action Network, followed by Association for Progressive Communications. Kenya [34:20]: Thank you so much, Madam Chair. I'm making this statement on behalf of KICTANET, and it reflects outcomes from consultations with a broader multi-stakeholder community that have been taking place in preparation for this week. We congratulate you, Madam Chair, on convening this historic substantive plenary. As this global mechanism establishes its first permanent foundation, we face a decisive choice: either repeat the familiar rituals of diplomatic deliberations or pioneer a collaborative more capable of confronting borderless digital threats. To deliver real stability, this mechanism will need to consider new ground in several ways, as we put it to you. In our humble consideration, one, we would like consideration of consultations with a structural integration that considers multi-stakeholder approaches. We call for the recognition and utilization of non-state expertise to be systematically woven into informal consultations, technical drafting, and policy implementation. So there is need for multi-stakeholder approaches in the ways that things will move from now. 2, we call for the delivery of human-centric, demand-driven, capacity building. And we are saying that digital security is fundamentally about human safety. Resources, therefore, need to move beyond high-level legal meetings towards strengthening local incident response teams, defending civic space, and protecting vulnerable communities from technology-facilitated abuse. 3, make the dedicated thematic groups actionable vehicles for problem solving and aim to create real-world impact. We propose that the DTGs be practical problem-solving spaces where technical experts, civil society, and governments co-design workable responses to critical infrastructure vulnerabilities and AI-amplified harms in space. And finally, 4, anchor policy in ground-level cyber threats. Non-state actors and private sector operate on the front lines of threat detection, incident response, and human rights monitoring. We humbly call for consideration to establish formal channels to ingest grassroots data, in particular from developing nations. This will ensure internal norms respond to real-world harms. And, Chair, we also request that if we can set up meetings, either virtual, where we can just be appraising ourselves either quarterly or half-yearly with you, so that we make this engagement real. And so, to secure cyberspace, we call for shared stewardship across all sectors, and KIK-TANET and the broader multi-stakeholder community that have been participating this week remain fully committed to partnering with member states to ensure our digital future remains safe, open, and anchored in human dignity. Thank you so much, Madam Chair. Global Mechanism · Chair [37:59]: Thank you, KIK-TANET, and I've heard you loud and clear. I now give the floor to Association for Progressive Communications, followed by the Royal Institute of International Affairs. Association for Progressive Communications [38:18]: Chair, colleagues, I speak to you today on behalf of the Association for Progressive Communications. Since this is the first time that APC is taking the floor, let me first congratulate you on your appointment, Madam Chair, and our appreciation for the efforts that you, the Secretary spirit, as well as the co-facilitators have been making at helping us engage and aid the mechanism. For those of you who may be unfamiliar, APC is an international not-for-profit membership organization born in 1990 whose network includes 74 organizational members and many associates across 60 countries. We are also proud to have several of our members present here in the mechanism today. From our beginning, our network has believed that it is crucial for the international system to engage with civil society, public interest technologists, and grassroots communities on the political and policy aspects of technology development. APC has engaged with the UN's discussions on global cybersecurity across the successive OEWGs, and we are glad to see this permanent mechanism come into operation. We do believe that state-led and multilateral system capacity building programs must address the disproportionate impact of cyber threats faced by vulnerable communities, including women LGBTQI+ people, and human rights defenders. The unique threats that different communities in the Global South face are often unrecognized or even unrecorded, and therefore not catered for in these discussions and processes. In effect, they are invisible. Your Excellencies, the reality is that cyber threats, models, and actors are different in different communities. Civil society can support this by providing evidence to better understand and mitigate these differentiated effects. Based on interviews and testimonies from women in public-facing roles, members of the APC Network have documented how digital surveillance is used to intimidate, silence, and restrict women's participation in civic and political life. In that regard, we therefore hope that the global mechanism builds on the recognition documented by the Second OEWG of the harms posed by the global growth of the cyber mercenary hack-for-hire spyware sector and the harms it unleashes on human rights defenders, journalists and activists working on women and LGBTQI issues. We call on further work on the gendered impact and of, of these efforts and how vulnerable communities are impacted by cyber mercenary actors. Chair, as you have heard from me, it has often been society and academic research which has documented the empirical evidence of the harms of matters such as ransomware or more. It is therefore crucial that the global mechanism overcome the injury it inflicted on by the initial locking of so many stakeholders who are— we need to see sitting besides us here. Madam Chair, APCI and its members have been organizing training activities to equip stakeholders with the capacities needed to engage in global cybersecurity policy discussions. We urge you that to ensure this process is both enabling and a safe space so that these communities who we are building capacity with training can take part, and we have civil society, vulnerable communities, and security researchers actively participating here. We also believe that the global mechanism and its DTGs must help states build appropriate cybersecurity laws and policies which aid and do not overreach or oppress. Our members and partners have urged governments to implement gender-sensitive cybersecurity laws that holistically address digital violence and build appropriate rapid response mechanisms. We hope that this is prioritized by the DTGs. Excellencies, we urge you to pay attention to how the race for AI development impacts the global majority. Particularly in an information security context. We believe that the mechanism and the DTGs should focus on how the current race for AI deployment, particularly in the public sector, is impacting security vulnerabilities and in turn affecting vulnerable communities. We also believe that in the sphere of AI and cybersecurity, the mechanism should ensure that the lessons of the last 2 decades of human rights and feminist-built feminist approaches to technology is the foundation we build on. Madam Chair, rest assured that all stakeholders, whether accredited or not, stand ready to help you in this process. We urge you to listen to us. We share critical information that helps patch the problems that we see in our global ICT systems. Thank you. Global Mechanism · Chair [42:17]: Muchísimas gracias. Thank you very much. I now give the floor to the Royal Institute of International Affairs, followed by Internet Love. Royal Institute of International Affairs [42:27]: Thank you, Madam Chair, for the opportunity to speak today and for your tremendous efforts in fostering an inclusive process. And establishing strong foundations for the work of this mechanism. The global mechanism gives us something 2 decades of cyber diplomacy have been working towards: a standing space to continue building shared understanding and to support implementation over time. States have agreed on a framework for responsible state behavior, and that agreement provides an important foundation. Our focus now should be on what it will take to ensure that the framework is reflected in practice. First, on implementation. As many delegations highlighted yesterday, the dedicated thematic groups will be central to closing the implementation gap, and we have shared our views on how best they can be structured, and we will continue to do so. States also have a strong foundation to build on. They have already developed a significant body of guidance through previous UN processes and at the national level, complemented by practical resources from the multistakeholder community, such as, for example, the paper Chatham House developed, on the operationalization of the cyber capacity-building principles that my colleague mentioned. But we should also be honest. The existence of resources is not the same as the capacity to use them. Guidance cannot implement itself. Many states are committed to implementing the framework, but continue to face technical, institutional, or financial constraints, as well as competing priorities, that make doing so difficult, even when practical guidance is readily available. This is where the multistakeholder community is not a bystander but a partner in implementation. Industry, technical organizations, academia, and civil society already help translate the framework into operational guidance, often in direct partnership with states. The challenge is not whether this expertise exists but whether states will make full use of it. We therefore encourage states to draw more deliberately on that expertise, both within and beyond these official sessions, especially as many stakeholders actively working on these issues have had their accreditation to the official meetings denied. Second, while implementation is rightly the priority for this phase of this mechanism, we should not lose sight of the fact that the environment the framework is intended to govern continues to evolve. More states are adopting offensive cyber postures, the growing use of proxy actors, the emergence of frontier AI models and their implications for cybersecurity, and the wider availability of sophisticated cyber intrusion tools are all changing the operational landscape. This is precisely why the mechanism has such an important role to play, not only in supporting implementation of existing commitments, but in continuing to build shared understanding of what responsible behavior means as technology and state practice evolve. Finally, we would note that resonance matters as much as resourcing. The norms will only shape behavior if they are understood beyond this room, not as lists of letters, but as the practical expectations that sit behind them— expectations such as protecting critical infrastructure, cooperating in responding to cyber incidents, or taking reasonable steps to ensure that a state's territory is not used for internationally wrongful ICT activity. Connecting those expectations to real incidents and real operational challenges helps make the framework something people can recognize, relate to, and ultimately implement. Making it tangible is in itself a form of implementation, and multistakeholders can help with that, provided states create space to bring them into that work. We are committed to continuing to coordinate amongst the broader multi-stakeholder community to provide expertise in all ways available to us and help ensure that the global mechanism delivers on its objectives. Thank you. Global Mechanism · Chair [46:05]: Muchísimas gracias. Thank you very much. I now give the floor to Internet Lab and Lastly, to Access Lab. Internet Lab [46:13]: Madam Chair, I'm delivering this statement on behalf of Internet Lab, a Brazilian think tank dedicated to producing knowledge at the intersection of digital technologies and human rights. This statement also reflects consultations with the broader stakeholder community conducted in preparation for this week's discussions. I want to start by briefly manifesting our disappointment with the number of organizations that have been blocked from participating in the formal sessions of the Global Mechanism, many of whom have provided their support and expertise to this process without any political agenda. We therefore appreciate your commitment, Madam Chair, to ensuring broader and meaningful stakeholder participation in the DTGs, including the participation of non-accredited stakeholders, in line with established UN practice for informal working methods. Looking ahead, we encourage discussions that are closely connected to the needs identified by member states during the plenary and that focus on practical implementation. For DTG 1, discussions should examine how emerging developments affect the implementation of existing UN framework rather than creating parallel normative processes. In this regard, we underscore that this framework operates within international law, including international human rights law and, where applicable, international humanitarian law. We also encourage discussions grounded in concrete case studies and implementation expertises. This exercise should be guided by a set of previously identified guiding questions, allowing stakeholders' contributions to address the issue that co-facilitators consider most relevant in light of the views expressed by member states. We also believe that it is essential to examine how the use and misuse of ICTs affect individuals and communities differently. This includes considering specific risks faced by women and other historically marginalized groups. Just a second. An inclusive and evidence-based understanding of these differentiated impacts is necessary to ensure that responses to cybersecurity challenges are both effective and rights-respecting. For instance, for instance, our own research on online gender-based political violence against women politicians in Brazil has documented how coordinated attacks disproportionately target women and members of other historically marginalized communities, with clear implications for democratic participation and for the design of effective rights-respecting cybersecurity responses. For DTG II, we encourage discussions on sustainable, demand-driven, and inclusive cyber capacity building that build on the process achieving the OECD and focus on implementation. Priorities should include better coordination among existing initiatives, support for states with limited resources, and cooperation for secure open-source cybersecurity tools. As an organization for the global majority, we emphasize that effective capacity building requires meaningful engagement with priorities of the global majority states while drawing on the expertise of civil society, academia, the technical community, and the private sector. Capacity-building initiatives should also be accessible, context-sensitive, and responsive to those most affected by cyber threats. Madam Chair, we remain committed to supporting this process in a constructive spirit, spirit, and look forward to continue to work with member states and all stakeholders to ensure that the global mechanism becomes an effective, inclusive, and action-oriented platform. Thank you. Global Mechanism · Chair [50:22]: Thank you very much. I now give the floor to Access Now. Access Now [50:32]: Thank you, Madam Chair. I am making this statement on behalf of Access Now. A grassroots-to-global organization that defends and extends the digital rights of individuals and communities most at risk. Our statement today reflects outcomes from consultations with the broader stakeholder community that have been taking place in preparation for this week. As stakeholders, we look forward to sharing our expertise and experiences during the DTG in December in a constructive and evidence-based manner. On existing and potential threats, Access Now fully aligns itself with the statement made yesterday by Kenya ICT Action Network, particularly the existing threats surrounding the unchecked proliferation of commercial spyware, surveillance, and state-sponsored cyberharassment used to monitor, intimidate, and silence journalists, human rights defenders, and political dissent. With respect to threats posed by ICTs in armed conflict, we echo the statement made yesterday by ICRC regarding the alarming range of ICT operations that have disabled the provision of essential services for civilian populations. Out of the 313 internet shutdowns documented by Access Now and the Keep It On Coalition in 2025, 115 125 shutdowns occurred in situations of conflict, impeding access to essential services and communications. In light of these existing and potential threats, we would like to underscore 3 priority areas for further discussion during the DTGs. First, we urge that the DTGs to make the human cost of critical infrastructure attacks visible and foreground the role of civil society in its defense. This requires direct engagement with and the protection of the human beings who make cybersecurity possible, including those who provide research and handle incident response, especially regarding to digital security threats against those most vulnerable. This cannot remain an aspiration. States must ensure that national critical infrastructure protection frameworks give real operational effect to their human rights obligations. While protecting tools like strong encryption and independent research capabilities that enable civil society to contribute. Second, the rapid increase in capabilities of AI models is a major topic of discussion. We echo calls not to duplicate existing UN processes grappling the questions regarding AI, but rather to build on such discussions with a focus on the unique issues and value of the global mechanism. With that, we call for the specific recognition of how AI tools are beset by glaring security vulnerabilities that have grave consequences for the confidentiality of our data, information integrity, and access to and the availability of systems. These are all problems that a human rights respecting approach can help solve. When human rights are successfully placed at the center of discussions on AI, as witnessed in other UN processes, the outcomes shift to concrete enforceable protections for those most at risk. Third, DTG 1 should build on the substantial body of state practice already affirming that international human rights law and international humanitarian law apply to state cyber behavior and turn consensus into shared understanding implementation. We commend the growing number of states that have proactively published national positions on the application of international law to cyberspace and call on states to ensure that the same rigor is reflected domestically, so that national cybersecurity laws, policies, and strategies are developed and implemented consistent with their international human rights law and international humanitarian law obligations. In conclusion, Madam Chair, we reiterate our intention to support all states present in this room, especially small states and those with limited resources, in delivering on the commitments made in the framework of responsible state behavior and the objectives for the global mechanism. Thank you. Global Mechanism · Chair [54:40]: Muchas gracias. Thank you very much to all of you. First, for your very substantial contributions, all of you who are here in the room, like I said at the beginning of this segment, as well as to all of you who are following us remotely. The community of stakeholders is without a doubt a fundamental part of our work, and you have a lot of experience and considerable knowledge, and we will continue to work closely with you to achieve meaningful progress. My team and I have taken due note of all of your comments, your invitations, the calls to action that you've made. We would also be grateful if you could please share your statements with us, not only with the Secretariat but with the Chair's team, please. We'd be grateful for that. Thank you. I'd now like to open the floor for any delegation who would like to react to any of the statements made by the organizations that we've just heard from this afternoon. In the spirit of having an interactive dialogue, so if any delegation would like to take the floor, you may do so now by pressing your microphone button, and the secretariat will take note of it. Canada, tiene usted el uso de la palabra. Canada, you have the floor. Canada [56:23]: Thank you very much, Madam Chair, for this new opportunity to take the floor on this important matter. We welcome the interventions by the stakeholders that have been accredited to this plenary session. Unfortunately, they, they are too few. A number of interventions delivered today demonstrate the readiness and willingness of colleagues from the multi-stakeholder community to contribute further on practical matters in the context of the dedicated thematic groups. Their contributions span the breadth of priorities identified by States over the course of the week for each of the DTGs, including on technical and other forms of capacity building, on international law and norms implementation, as well as other important matters such as the particular impacts of given threats on gender and youth. While we heard stakeholders from a number of regions today, we would have benefited from much more robust cross-regional representation of stakeholders if they had not been vetoed. I am referring here to stakeholders from Mexico, Brazil, Peru, Panama, Ghana, Nigeria, and South Africa. We look forward to more meaningful and more inclusive opportunities for all stakeholders to engage in December. Thank you, Madam Chair. Global Mechanism · Chair [57:40]: Thank you very much. And I'll give the floor to the delegation of Japan. Japan [57:46]: Well, thank you, Madam Chair. As cybersecurity— cyber threats become increasingly sophisticated and complex, it is critical to draw on the private sector's expertise for recognizing threats and implementing concrete countermeasures. Japan attaches great importance to a multi-stakeholder approach in the global mechanism In this regard, Japan highly values this session and strongly hopes to further strengthen public-private collaboration within the United Nations framework through expert briefings and interactive discussions between the public and private sectors, especially including the discussion at the DTGs with a wide range of stakeholders' participation. We hope that member states' awareness and understanding of cybersecurity will deepen further. Thank you very much. Global Mechanism · Chair [58:47]: Muchísimas gracias. Thank you very much. I'd like to ask whether any other delegation would like to take the floor in this interactive segment. Mexico, you have the floor. Mexico [59:05]: Muchas gracias, Presidente. Thank you very much, Madam Chair. I'd like to begin by thanking you and the Secretariat for organizing this segment, which is a very important one for Mexico. We'd like to welcome the fact that on this occasion the screens reflect the names of the organizations taking the floor, and for Mexico this is a practice that does not only give visibility to the valuable contributions of each and every organization, but also reflects the importance that this mechanism attaches to the meaningful participation of all stakeholders. My country took note of the contributions made in addition to the ones also made in writing, preparing for the meeting on the dedicated thematic groups in December. My country would like to urge stakeholders to consider drafting specific inputs for the issues under discussion so that we can use these not only for the discussions in the meetings but also for the analyses, the technical analyses that member states will be engaging in on this process in their respective capitals. Further, as far as possible, I'd like to ask a question. It's more of a general question. I don't necessarily need a response, but if there's any stakeholder that is in a position to answer it, we'd be grateful to have an answer to it. And of course, we also remain available outside of the room to discuss it. It would be very beneficial if you could be able to share any example of any work, any ongoing work that you are engaging in. For example, any guides, guidelines, methodologies, models, or any good practices to support states to implement the framework on responsible behavior. In particular, Mexico would like to know whether there's any example that you could share that could benefit a developing country like Mexico and that takes account of our perspectives. Global Mechanism · Chair [1:01:23]: Thank you, says the chair, for your question and your statement. Would any delegation like to take the floor Right now, I see there are— is that the European Union? Please go ahead. EU [1:01:42]: Thank you very much, Chair. First of all, thank you very much for offering the opportunity for stakeholders to speak during our session today, but also for your earlier engagement with the stakeholders prior to this plenary session. Also, yesterday, the 2 stakeholders that were able to come in after the threat section, really dedicating their interventions to the topic that we are discussing at that moment, is very useful to bring the stakeholders and states closer to each other when it comes to advancing international security and stability in cyberspace. So we very welcome— much welcome your efforts. We also wanted to say thank you to the stakeholders for participating. We know it's a challenging environment for you, but we are very much interested in your contributions, not only when it comes to the statements that you are able to make today, as well as the statements that you have been able to make in the run-up to this session, but also your contribution when it comes to specific challenges that we will be discussing in the dedicated thematic groups. Furthermore, we encourage you to continue to contribute to this effort by enhancing the cooperation with states, working together on the ground, building capacities also from states in implementing the UN Framework of Responsible State Behavior, and enhancing their cyber resilience through your research, through your trainings, and through the dedicated activities that you employ. And we look very much forward to continue the cooperation with you and with states on this important matter. So thank you. Global Mechanism · Chair [1:03:16]: Thank you very much. Muchísimas gracias. Thank you very much. I don't have any other delegation on my list to take the floor in this segment, so I will give the different stakeholder organizations the opportunity to answer the question posed by the delegation of Mexico on whether you could share any example of any work that you are engaging in, whether it's guide, model methodologies to support states for the implementation of the Framework on Responsible Behavior. If any of you would be interested in briefly answering this question, then please press your microphone button so that we can see who is requesting the floor. Before that, though, I'll give the floor to the International Chamber of Commerce who had asked to take the floor for— in this space, and you have 4 minutes. ICC [1:04:21]: Chair, I have the honor to deliver this statement on behalf of the International Chamber of Commerce, the institutional representative of more than 45 million companies in over 170 countries and an observer to the United Nations General Assembly. ICC has engaged in the Open-Ended Working Group since its inception and looks forward to contributing with the same commitment to the work of the new UN Global Mechanism on Cybersecurity. Security. The mechanism begins its work at a critical moment. Businesses are operating in an environment marked by geopolitical tension, economic uncertainty, and a sustained rise in malicious cyber activity targeting governments, companies, critical infrastructure, and essential services. The success of the mechanism will depend not only on the quality of intergovernmental exchange dialogue, but also on its ability to draw on the expertise, experience, and capabilities of the broader cybersecurity community. The OEWG demonstrated the value of stakeholder engagement, and the global mechanism should build on that experience by ensuring that industry, the technical community, and civil society can contribute in a meaningful, structured, and predictable manner across all areas of its work. The dedicated thematic groups provide an important opportunity to translate dialogue into practical cooperation. Business stands ready to contribute operational expertise, technical knowledge, and implementation experience, particularly in the areas of existing and emerging threats and cybersecurity capacity building. First, on existing and emerging threats, the private sector is often the first to identify, analyze, and respond to new cyber risks. Companies possess real-time visibility into threat trends across networks, sectors, and geographies, as well as practical experience in mitigating attacks and strengthening resilience. This operational insight can help the DTGs develop a more comprehensive understanding of the evolving threat landscape, identify emerging risks, and support the sharing of good practices that reduce cyber risks across the digital ecosystem. Industry's expertise and practical experience can support discussions on topics such as protecting critical infrastructure, essential services, and global supply chains; strengthening cyber resilience and incident preparedness, particularly for small and medium-sized enterprises; improving coordinated vulnerability disclosure and reducing systemic risks; facilitating threat information sharing and public-private cooperation; promoting secure-by-design approaches and responsible security practices. Addressing emerging technological developments and their cybersecurity implications, and supporting the practical implementation of agreed norms and confidence-building measures. Second, capacity building should be an integral part of the mechanism's work. Cybersecurity capacity strengthens confidence in the online environment, supports meaningful digital inclusion, and helps countries protect their citizens, businesses, and critical infrastructure. Yet significant gaps remain, particularly in the development and implementation of national cyber strategies, incident response capabilities, technical expertise, and institutional frameworks. The private sector is making substantial contributions through technical assistance, workforce and skills development, awareness raising, knowledge sharing, incident preparedness, and the provision of practical tools and resources. Businesses also work alongside governments and other stakeholders to strengthen institutional capabilities, improve resilience, and share operational expertise. Finally, meaningful stakeholder participation is not merely desirable, It is essential to the success of the Global Mechanism. Cybersecurity discussions cannot be separated from the systems, services, and infrastructure they seek to secure. Much of the world's digital infrastructure is designed, operated, and maintained by the private sector, while technical experts and civil society bring additional expertise and perspectives that strengthen cybersecurity outcomes. In closing, business looks forward to being a constructive and active partner in the Global Mechanism. We can contribute by sharing real-time threat intelligence, operational expertise, and lessons learned from securing networks, supporting incident response, strengthening supply chain resilience, and helping build cyber capacity where it is most needed. Thank you, Madam Chair. Global Mechanism · Chair [1:08:32]: Muchas gracias. Gracias. Thank you very much. Thank you. I have a request from the delegation of Chile. Please go ahead. Chile [1:08:45]: Thank you very much, Madam Chair. We just wanted to take the floor like Canada and the European Union on this stakeholder segment. And we wish to thank you for facilitating the work of the Global Mechanism, um, to all the organizations. We thank you very much for being here this afternoon with us. Your participation is fundamental. You bring practical experience, specialized knowledge, and talk about concrete challenges that can help us and to support the effective implementation of the mechanism. We reject the amount of objections voiced, um, on your participation, including from institutions from our own region. Your voice is very important in order to reflect— have listened to diverse voices and reflect the reality on the ground, and we hope that you'll be able to continue to contribute through the dedicated thematic groups. Thank you very much. Global Mechanism · Chair [1:09:46]: Thank you. Okay, now we'll give the floor back to the different stakeholders so that they can answer the question made by the Mexican delegation. I'd be grateful if you could do it as briefly and concisely as possible so that we can hear from everyone who's requested the floor. So I'll give the floor first to the Royal Institute of International Affairs, who will be followed by the Association for Progressive Communications. Royal Institute of International Affairs [1:10:15]: Thank you for the delegate from Mexico for this concrete question, and for all other delegations for their words of support. There's already a meaningful body of practical work to draw on. I mentioned in my intervention the Chatham House Report providing concrete recommendations for the operationalization of the Cyber Capacity Building Principles. This could be obviously highly relevant to DTG too. But also other organizations have produced important tools and resources I'll mention the one I'm aware of, and colleagues might want to complement that. The Geneva Dialogues Manual offers concrete guidance on implementing specific norms, like supply chain security and responsible vulnerability disclosure. The Paris Call for Trust and Security in Cyberspace brings together commitments from states, companies, and civil society around shared principles. And organizations like the Cyber Peace Institute, now called PROTECT NGO, have produced sector-specific guidance, for example, on protecting the healthcare sector from cyber harm. We have been discussing as a multi-stakeholder community perhaps mapping these resources and making them available to states, and we welcome views on what would be the most useful format to you when we do so. Thank you. Global Mechanism · Chair [1:11:31]: Thank you very much. Yes, that would certainly be very valuable. I now give the floor to the Association for Progressive Communication. Please go ahead. Association for Progressive Communications [1:11:40]: Thank you so much, Madam Chair, and again, thank you to the delegate from Mexico for the pointed question. As my colleague from the Royal Society for International Affairs mentioned, there are a range of resources the Society makes available. From the Association for Progressive Communications, we also provide direct support and capacity building at key meetings and trainings. In that form, we take— we conduct the African School for Internet Governance, which has been taking place year on year with a range of partners focused on the Africa region, with an increasing focus on cybersecurity, cyber norms, including the OEWG and the norms on international cybersecurity and security. We conduct the Feminist Tech Exchange, which looks at providing security building capacity, particularly for vulnerable communities and others, including understanding how existing international cyber processes and more engage with feminist technology and security conversations. Additionally, we have directly provided frameworks for developing gender-responsive cybersecurity policy and assessment tools in multiple languages, including Spanish. And I believe that that was also referred to and built on by our colleagues in UNIDIR, who launched their compilation of resources on gender and cyber today, which builds off that. We are also very happy to note that partner organizations such as Global Partners Digital and others have tools such as the Inclusive Cyber Norms Toolkit and more. So these are the small set of examples of resources that stakeholders have already prepared and hope to build on for the mechanism and more. Thank you so much. Global Mechanism · Chair [1:13:02]: Muchísimas gracias. Thank you very much. I now give the floor to developing capacity. Developing Capacity · Director · Robert Collett [1:13:10]: So the international community of stakeholders and governments have for several years been building a repository to answer that very question. It's called the Sibel Portal. It has 74 documents which are on the thematic area that you're interested in. And also information on 100 past cyber capacity building projects in that area. It's received a lot of support in the past from the Dutch government. It's currently going through a period of renewal, which I was discussing with other stakeholders earlier today, and it stands ready to be a state and stakeholder platform for hosting these sort of resources going into the future. Global Mechanism · Chair [1:13:56]: Thank you very much. I now give the floor to Foreign Incident Response Force and Security Teams. FIRST [1:14:04]: Okay, thank you for the delegate from Mexico. We really appreciate, you know, any joint cooperation that would result, you know, in supporting Mexico applying the models for best practices in implementing state responsible behavior in cyberspace. In relation to FIRST, the Forum of Incident Response and Security Team, we already have 31 team members from Mexico, which is really a sizable number of members, and there is an upcoming event happening in Mexico City. It's the Mexico City Technical Colloquium taking place next month. Thank you. We have different mechanisms by which we can support efforts in different parts of the world and evidently if we have so many members it sets the ground for further cooperation. We can also share experiences from other parts of the world, so we welcome continuous dialogue with countries that are interested in support from FIRST. And first membership would be more than happy to give that support extended in different shapes and forms depending on the current situation. Thank you. Global Mechanism · Chair [1:15:21]: Muchísimas gracias. Thank you very much. First, I now give the floor to Future Earth Systems. Future Earth Systems · Chris Sampson [1:15:29]: Thank you, Madam Chair. Rather than take time up during this session, I would be happy to meet with the honorable representatives from Mexico as a follow-up. To explore how enterprise architecture can assist states with implementation of the norms. Also, thank you to representatives for your positive feedback to our participation today. Thank you, Madam Chair. Global Mechanism · Chair [1:15:53]: Muchísimas gracias. Thank you very much for your kind availability. I give the floor finally to Internet Society. Internet Society [1:16:03]: Thank you, Madam Chair. I already mentioned the IETF, the Internet Engineering Task Force, The Internet Society specifically offers a policymaker program to policymakers, and it specifically goes over how the internet works, provides visibility on internet standards development processes, and the idea is to work with diplomats to understand how the internet works, how it evolves, and the standards that underpin it so that we can all collectively develop and implement better policies. I'm happy to connect after this as well to provide more information to the Mexican delegate. Thank you. Global Mechanism · Chair [1:16:41]: Thank you very much, all of you, for these responses and follow-up comments. I see that Germany has requested the floor. Germany [1:16:53]: Thank you, Madam Chair, and I would like to take the opportunity to echo what colleagues have said from the EU, Canada, Mexico, and Chile. With regard to the importance of this exchange, and that we also regret once more, and we have to highlight this, that we only had a limited number of participants in this interactive exchange that we very much value. In this regard, we would just want to highlight one piece of work that has been presented by an organization that was not allowed to come here. It's the organization Interface that has presented a study in Serbia that compares the global state of play with regard to CBM implementation, and we consider this survey and this analysis quite useful for the interaction and engagement that we'll have very likely already this afternoon. Thank you very much, Chair. Global Mechanism · Chair [1:17:40]: Muchísimas gracias, Alemania. Thank you very much, Germany, for this information. Once again, thank you very much to all of you. There was just one question from the delegation of Mexico. Nevertheless, that interaction was very valuable with all of you stakeholders. So I'd like to close this part of the meeting, and just like I said this morning, we're going to go back to international law. There are still 6 speakers on my list, so I'll read them out so that we can begin with the statement. So we have Switzerland, the United States, Australia, Nicaragua, Algeria, the African Union, and the ICRC. Switzerland, you have the floor. Switzerland [1:18:40]: Madam Chair, Switzerland fully aligns itself with the Joint Statement on International Law and IHL. That we delivered this morning on behalf of a cross-regional group of states. We will therefore limit ourselves to the following points in our national capacity. Switzerland welcomes the 2nd joint statement on international law delivered by Australia and many other statements in this regard. The number of states that have issued these, more than 40, underscores the relevance of the discussions to date on international law, especially also on IHL and international human rights law. Additionally, more than 36 national and 2 regional positions on the application of international law in cyberspace have been published. All of this shows that there is great interest in continuing these discussions, but not in any manner. The new mechanism offers the opportunity to turn statements and written positions into lively and substantial discussions based on real-world scenarios in the DTGs. That is likely to be an innovative step forward. Madam Chair, Switzerland stands ready to participate actively in the dedicated thematic groups. As mentioned in our joint statement, we support concrete discussions on real-world scenarios, particularly on the protection of critical infrastructure such as hospitals, water systems, and energy networks from malicious ICT operations. Both in times of peace and in armed conflict. We also support expert briefings on specific topics of international law, IHL, and international human rights law, and would also like to once again highlight the importance of the inclusion of stakeholders in these discussions. In our view, the success of the global mechanism is connected to the recording of both emerging convergence, and open questions. Documenting this progression is what will distinguish this mechanism from its predecessors. Madam Chair, discussions on the concrete application of international law take place not only here in New York but also elsewhere. In this regard, we would like to highlight the ICT work stream under the Global Initiative to Galvanize Political Commitment to IHL and the meetings of our Cross-Regional Group on International Law and IHL in cyberspace. Switzerland is honored to co-chair, together with Ghana, Luxembourg, and Mexico, the ICT work stream of the Global IHL Initiative. This process provided an invaluable complementary platform for very substantive discussions on IHL and ICTs among states and key stakeholders. We have moved beyond the question of whether IHL applies to ICT activities in armed conflict to the more practical and pressing question of how it applies. The discussions have reaffirmed that reliable ICT infrastructure and services are indispensable for civilians, governments, and humanitarian actors, particularly in conflict-affected areas. They have equally underscored that civilians and other protected persons and objects must be safeguarded against the dangers arising from ICT activities during armed conflict. We encourage everyone to draw on these rich discussions and the outcome document and to continue developing and promoting a shared understanding on how IHL applies concretely. In addition, in April this year, representatives from 15 states from our cross-regional group gathered for the second time on Mount Rigi in Switzerland to discuss the concrete application of international law and IHL in cyberspace in an informal setting, allowing us to dive deeper into real-world scenarios. Initiatives like these foster a better understanding of other states' concerns and support the discussions in the UN without duplicating them. Finally, we would like to thank the ICRC for submitting their working paper entitled Preventing ICT Threats to the Civilian Population in Times of Armed Conflict: 6 Humanitarian and Legal Priorities to the GMAC. We invite states to use it as a basis for focused discussions on international humanitarian law. While all 6 priorities are important, We believe that the issue of ICT operations targeting medical facilities and humanitarian organizations is one that all states should be interested in addressing urgently. I thank you. Global Mechanism · Chair [1:23:21]: Muchas gracias. Thank you very much. I give the floor to the delegation of the United States, who will be followed by Australia. United States of America [1:23:30]: Thank you, Madam Chair. Further to the statement we set out yesterday, I wanted to reiterate again our view that existing international law applies to activities in cyberspace and remains fit for purpose. The United States will not support language suggesting new binding obligations are required or that existing legal obligations are somehow insufficient. We believe that any proposal to use this pillar or to use it in G1 to relitigate international law as a stalking horse for treaty-making duplicates work that is that has already been done, and it keeps discussions on this topic very stagnant. We have shown extreme flexibility over the course of these discussions in the OEWG, but we will not agree to a discussion topic that will be hijacked for, for that purpose. Our previous discussions on international law have demonstrated that existing legal obligations remain fit for purpose, so further discussion of international law in this mechanism should be anchored in concrete threats and practical tools for addressing them. I believe that's also something that's been echoed throughout the day. Finally, Madam Chair, the United States believes that we should use our time in this GPM to implement the 11 norms states have already committed to and to not to relitigate settled ground to manufacture the appearance of a gap that does not already exist. Thank you so much. Global Mechanism · Chair [1:24:54]: Thank you. Muchas gracias. Doy ahora— Thank you very much. I now give the floor to Australia, who will be followed by Nicaragua. Australia [1:25:02]: Thank you, Chair. Australia is pleased to align with the Pacific Islands Forum statement delivered by Tonga and the cross-regional statement on international law delivered by my colleague, and we make the following remarks in our national capacity. All states have agreed existing international law applies to state conduct in cyberspace. And that, as my colleague from Kiribati powerfully set out, it is indispensable in advancing responsible state behavior in cyberspace and in maintaining the international peace and security on which all states rely. In the GGEs and the OEWG that preceded this forum, and in other valuable platforms, we have discussed and reached convergences on how international law applies to cyber activities. However, we regret that it did not reflect other areas in which states had worked hard to identify common ground, including on the ways in which international human rights law, the law of state responsibility, and international humanitarian law apply. In this respect, the 2 cross-regional groups of states on international law made significant contributions to advance and to document discussions in the OEWG, and the number and diversity of states that joint statements delivered by those groups today demonstrates the broad appetite to prioritize international law in this mechanism. Taking the work of these groups as our baseline and their cross-regional character as our example, we must now take up the opportunity that this mechanism offers to consolidate common understandings between states to actionable effect. This can start by leveraging the integrated and inclusive platform of the DTGs, bringing together legal, technical, and diplomatic expertise to elaborate in substantive ways exactly how these areas of law apply. Here, states can have tangible and cross-cutting engagement on how relevant law intersects with norms and practical measures to address the pressing security threats that states have outlined in recent days. Australia's experience has shown That applying international law to concrete cyber incident scenarios helps to build confidence and shared understanding, demonstrate the practical value and comprehensiveness of the existing legal framework, and connect it tangibly to implementation actions. Incorporating the perspective of legal and technical experts will enrich and ground the outcomes of these discussions. Chair, we echo the views expressed by others in this session that capacity building remains essential to ensuring that the outcomes of our discussion reflect the full breadth of experience in this room. Australia will continue supporting efforts, including through DTG2, to ensure all states can contribute meaningfully to and benefit from the discussions on how international law applies to cyberspace. This includes identifying and championing needs-driven training, and supporting more states to develop and share their national positions. Chair, international law's contribution to peace and stability in relation to cyberspace can only be fully realized when states share common understandings of what our international legal obligations require in practice and a robust commitment to implement and to adhere to them. Australia looks forward to working with you and with all delegations toward this important goal. Thank you. Global Mechanism · Chair [1:28:46]: Muchísimas gracias. Thank you very much. I give the floor now to the delegation of Nicaragua. Nicaragua [1:28:55]: Thank you very much, Madam Chair. For Nicaragua, the particularities of cyberspace require the debate on the application of international law to continue to be engaged in, in a careful, inclusive, and intergovernmental manner. In this regard, for us, it's necessary to continue to build a common understanding on the way international law should apply to this sphere, bearing in mind its specific characteristics and avoiding interpretations that could favor the militarization of cyberspace. The UN Convention Against Cybercrime demonstrates that against the new challenges derived from the use of ICTs, the international community can make headway through dialogue and consensus towards multilateral instruments. This experience confirms the importance of keeping open the debate on the progressive development of the international legal framework, including the possibility of drafting international legally binding instruments that enable us to respond to emerging challenges in this area. Madam Chair, for developing countries, this process must be coupled with effective international cooperation, capacity building, and technology transfer that enable everyone to participate in equal conditions in the debates on and drafting of international National capacities are limited, including by UCMs that widen the digital gap and affect the right to development of our peoples. Nicaragua reiterates its commitment to a balanced mechanism focused on concrete results that promotes the peaceful use of ICTs. Thank you very much, Madam Chair. Global Mechanism · Chair [1:30:37]: Thank you very much. I give the floor now to Algeria. Algeria [1:30:43]: Thank you, Madam Chair. Algeria aligns itself with the statement delivered earlier by Nigeria on behalf of the African Group and wishes to express the following points to share its views on the applicability of international law to cyberspace, a matter of fundamental importance for our collective security and stability. First, Algeria fully endorses the common position of the African Union on the application of international law and the use of ICTs. This common position is grounded in clear principles of international law which form the basis of our engagement in the global mechanism. In this regard, Algeria reaffirms that international law, along with the purposes and principles enshrined in the United Nations Charter, apply fully in cyberspace. State sovereignty, the principles of non-interference in internal affairs, non-intervention govern this— the conduct of states in the cyber domain. The prohibition of the threat or use of force also fully applies to cyberspace. Both international humanitarian law and international human rights law apply offline and online, and the rules of state responsibility and due diligence are fully applicable in this context. Second, Algeria emphasizes that developing countries face unique challenges in meeting their obligation in the applicability of international law in the use of ICTs due to resource constraints, and technical gaps. Algeria calls for enhanced international cooperation and concrete capacity-building measures grounded in state sovereignty, national ownership, and respect for national identified priorities. The legal framework and the development dimension are inseparable since the effective application of international law in cyberspace requires that all states have the capacity needed to implement their obligations meaningfully and equitably. Third, on the question of the elaboration of a legally binding international instrument, Algeria supports the elaboration of such an instrument. While discussions on how existing international law applies to cyberspace remain of paramount importance, we should now move towards a more focused and practical stage, collectively negotiating how states must behave in cyberspace, of course building on the existing relevant United Nations framework. The unique attributes of cyberspace, particularly the speed and sophistication of attacks, the difficulty of attribution, the vulnerability of critical infrastructure, and the evolving nature of cyber threats demand legal clarity and certainty, not interpretative ambiguity. Furthermore, a legally binding international instrument would provide this global mechanism with institutional vitality, direction, and the ability to, to translate decades of productive discussions into meaningful and action-oriented outcomes. The technicity and the complexity of cyberspace alongside time-consuming elaboration of legally binding instruments are without any doubt conditions to be taken into consideration, but they are certainly not insurmountable obstacles. The international community has a longstanding experience and practice in codifying norms and customary law into legally binding international instruments. This is why, since we have successfully and collectively agreed on 11 non-binding norms, we should certainly be able to elaborate legally binding rules. I thank you, Madam Chair. Global Mechanism · Chair [1:35:07]: Muchísimas gracias. Thank you very much. I now give the floor to the African Union. AU [1:35:18]: Thank you, Madam Chair. The African Union aligns itself with the statement of the African Group and welcomes the opportunity to contribute to discussions on the applicability of international law. In the use of ICTs. The AU's engagement on this issue is guided by the Common African Position on the Application of International Law to the Use of ICTs in Cyberspace, which represents an important milestone in strengthening Africa's collective voice on international cyber policy. The Common African Position provides a shared foundation for AU member states to engage constructively in global discussions while recognizing that member states may continue to develop and articulate their own national legal positions. We are encouraged to see that This work is increasingly reflected at the national levels. Some AU member states are already starting to develop their own national positions. These developments demonstrate that AU member states are making meaningful contributions to the evolution of state practice and the clarification of how international law applies in cyberspace. Recognizing that many member states continue to seek technical and legal expertise in this area, the AU has also promoted capacity building. The AU Commission convened a workshop from 1st to 3rd June 2026 in Addis Ababa to strengthen capacity of AU member states to develop national positions on the application of international law to cyberspace. The workshop reflected the growing demand among AU member states for practical support in understanding international law, engaging in legal analysis, and translating global consensus into national policy. Madam Chair, These experiences demonstrate that capacity building is not only about strengthening technical capacity, but it is also including building legal, diplomatic, and institutional expertise to enable all member states to participate effectively and on an equal footing in the development and implementation of international law in cyberspace. In this regard, the AU considers that capacity building on the applicability of international law to be an important area of work for global mechanism, including within the dedicated thematic groups, which will contribute to a more inclusive, informed, and representative global discussions. To conclude, Madam Chair, the AU remains committed to working with regional organizations and international partners to strengthen shared understanding of international law in cyberspace and to ensure that all member states have the capacity to participate meaningfully in shaping a secure, stable, accessible, and peaceful ICT environment. I thank you, Madam Chair. Global Mechanism · Chair [1:39:15]: Muchísimas gracias. Thank you very much. I now give the floor to the ICRC. ICRC [1:39:23]: Muchas gracias, señora Presidenta. Distinguished delegates, the ICRC is grateful for the opportunity to address the global mechanism on the issue of how international law applies to the use of ICTs. As highlighted by many delegations, the use of ICTs by states and non-state actors is a reality in many of today's armed conflicts. Against this background, the ICRC would like to emphasize 3 key points on international law. First, when ICT capabilities are used for military purposes in situations of armed conflicts, their use must comply with the existing rules of IHL. Many delegations have stressed this point in their statements today, as well as in national and regional positions on how international law applies to the use of ICTs. Importantly, in October 2024, the 34th International Conference of the Red Cross and Red Crescent, which brought together all states, adopted a resolution on ICT activities during armed conflict, which affirms that, and I quote, in situations of armed conflict, IHL rules and principles serve to protect civilian populations and other protected persons and objects, including against the risks arising from ICT activities. This should be the starting point for further discussions in this global mechanism. While recognizing that nothing in IHL can be construed as legitimizing or authorizing any act of aggression or any other use of force inconsistent with the Charter of the UN. Building on this acquis, the ICRC urges states to focus discussions on fostering common understanding on how international humanitarian law applies to the use of ICTs by states. As highlighted in our statement on threats yesterday, contemporary armed conflicts show that military ICT activities pose risks to civilian populations, to civilian infrastructure, and to civilian data. While shared understanding on the limits that IHL imposes on the use of ICTs are emerging, for instance, on the obligation to respect and protect medical services, States have recognized that certain questions require further discussion. In this respect, the ICRC calls on States to focus especially on the limits that IHL imposes on ICT activities that result in non-physical damage, because in today's ICT-reliant societies, it is critical to protect the ICT systems that underpin civilian life in societies as well as digital data against damage and destruction. In this respect, and as mentioned also by the joint statement delivered by Switzerland earlier, we invite you to build on the in-depth discussions held by over 100 states and other stakeholders under the ICT workstream of the Global Initiative to Galvanize Political Commitment to International Humanitarian Law, and to consider its forthcoming outcome document on upholding international humanitarian law in the use of ICTs during armed conflicts. The document provides guidance to facilitate the implementation of IHL obligations in a manner consistent with the protective purpose of IHL. Third, with conflict dynamics and technology evolving at great speed, ICRC calls on states to focus parts of the dedicated thematic groups to how international law addresses some of these new developments and technologies. This includes, for instance, identifying legal and practical measures to implement the international law rules that prohibit child recruitment and use in hostilities, agreeing on practical measures that states must take to prevent civilian hackers from committing IHL violations through ICT activities, building shared understanding on the risks that arise when ICT infrastructure such as civilian data centers are used for military purposes, and identify practical measures to protect civilian ICT infrastructure from the dangers of hostilities. In addition, As we have heard by several delegations, the use of artificial intelligence in ICT activities may increase their speed, scale, and potential for harm. While IHL applies to ICT operations in armed conflict, including those that involve the use of AI or other emerging technologies, the ICRC calls on member states to consider whether existing international law provides sufficient safeguards against the harm that increasingly autonomous ICT capabilities can cause, or whether additional limits are needed. We thank you for your attention. Global Mechanism · Chair [1:44:40]: Muchísimas gracias. Thank you very much. We've just heard our last speaker under this agenda item. I thank all of the delegations for this very, very substantial exchange on international law. And like I did for other agenda items that we've dealt with, I'd just like to give you some— a brief recap and some feedback on what we've just heard. I thank you all for your statements, not only on a national level but also for your joint statements made on behalf of groups, and I encourage you to engage in these inter-regional efforts as we engage in these discussions, especially given the limited capacity of small delegations who find it difficult to participate across the process. Now, without attempting to be exhaustive— exhaustive, rather— I'd like to give you a brief summary of what we've just heard. So the majority of the delegations underscored that the global mechanism must continue to encourage the discussions that were begun during the first open-ended working group on the way that international law is applicable to ICTs. Furthermore, it was reaffirmed that the development of a common understanding is fundamental if we are to establish a safe, stable, and predictable digital environment. Some delegations stated that it was still necessary to continue to explore and discuss fundamental legal concepts, including— and I'm just mentioning some of them mentioned in the room— sovereignty, non-interference, the peaceful settlements of disputes, the responsibility of states for, um, internationally illicit acts, international humanitarian law, and international human rights law, among others. I thank the delegations that shared their good practices on the elaboration of their national positions on the way to interpret the applicability of international law in cyberspace, as well as the update of— on previously updated positions. Finally, delegations underscored that these legal debates must be accessible to all states and that capacity building and technical cooperation based on scenarios are fundamental. Furthermore, they underscored that these can support the work undertaken by states to develop national perspectives without losing sight of regional efforts. I'd encourage you to continue your efforts to support capacity building to facilitate these regional exchanges. And also to promote dialogue between the different legal and technical communities to foster an exchange of specialized knowledge. Thank you very much. Right now, we will begin the agenda item on developing and implementing confidence-building measures. You're welcome to press the microphone button to indicate your interest in taking the floor. I would like to make an announcement also that in terms of housekeeping, that the interpreters would be very grateful if you could send your statements to eStatements before you deliver your statement on the floor, um, as far as possible. Thank you very much. Now, just like I mentioned, there's no established time limit. Thank you. For your statements. However, I would be very grateful if you could kindly consider delivering a much shorter abridged version of your statement, and you can send the full version of your statements to the Secretariat and to the chair's team. And this way we can hear from all delegations. Just for reference, we're going to continue to use the countdown clock that will remain visible on the screens. If any of you would like to take the floor on behalf of a group of states, please approach the Secretariat so that we can correctly reflect that on the list of speakers. Finally, we'd be very grateful if you could also take this moment to reflect your interest in taking the floor because It's getting close to 5 PM, and it's very likely we'll be continuing this agenda item tomorrow. So we need to have the full list of speakers. We need to have the full list of all of those who want to take the floor on this agenda item this afternoon. Thank you. Now I give the floor to the delegation of the Dominican Republic, who will be speaking on behalf of a group of states. Dominican Republic · open, informal, cross-regional group of the Global Mechanism Confidence Builders [1:49:42]: Gracias, señora presidenta. I want to start— Thank you, Madam Chair, and a very good afternoon. half of the open, informal, cross-regional group of the Global Mechanism Confidence Builders. Over the years, we have grown into one of the biggest cross-regional groups, now comprising the following states: Argentina, Australia, Brazil, Canada, Chile, Colombia, Czech Republic, Fiji, Germany, Israel, Republic of Korea, Mexico, the Kingdom of the Netherlands, Singapore, Uruguay, and my own, the Dominican Republic. We welcome the adoption of and reaffirm our commitment to the 8 voluntary global confidence-building measures adopted by the previous open-ended working group. These measures constitute a fundamental pillar of the framework for responsible state behavior in cyberspace. The establishment of the global mechanism now provides an important opportunity to move progressively from their endorsement towards their practical and inclusive operationalization and implementation. As a group, we recognize that the Global Mechanisms plenary sessions and the meetings of the dedicated thematic working groups, DTGs, with their modalities in accordance with Annex 1 of the Final Report of the 2021-2025 OEWG, could provide complementary but distinct ways for states to identify areas of convergence and needs for further discussions in the area of CBM implementation. Discussions of the CBMs cannot be had in isolation. It is our view that capacity building and international cooperation are essential to enabling all states, particularly developing countries, to participate meaningfully in the implementation of global CBMs. In addition, the CBMs can support the implementation of the different pillars of the framework by strengthening communication, facilitating cooperation, increasing transparency, and helping states prevent and manage risks associated with ICT incidents. We see the DTGs as playing a particularly important role in facilitating cross-cutting, integrated, and policy-oriented discussions on commonly shared challenges and identifying these synergies across pillars. To this end, this group is currently preparing a working paper ahead of the December session in which we will highlight the practical value of CBMs in addressing specific policy challenges. Drawing on implementation experience at the regional and sub-regional levels, the paper will present best practices and offer a comparative perspective of how CBMs are operationalized in practice. On this basis, it seeks to provide guidance on how CBMs can be integrated in DTG discussions on specific challenges, including by drawing on contributions from stakeholders in accordance with Annex 1 of the final report of the 2021-2025 OEWG. The paper is expected to be ready ahead of the December session and will be uploaded to the website Accordingly, to close, this group looks forward to working with you, Madam Chair, on advancing the implementation of this pillar of the framework in a constructive, inclusive, and practical way. I thank you, Madam Chair. Global Mechanism · Chair [1:53:06]: Muchísimas gracias. Thank you very much. I give the floor to Tonga, speaking on behalf of the Forum of Pacific Island States. Tonga · Pacific Islands Forum [1:53:17]: Thank you, Chair. I have the honor to deliver this statement on behalf of the members of the Pacific Islands Forum. with a presence at the United Nations, namely Australia, the Cook Islands, Fiji, Kiribati, the Federated States of Micronesia, the Republic of the Marshall Islands, Nauru, New Zealand, Palau, Papua New Guinea, Samoa, Solomon Islands, Tuvalu, Vanuatu, and my own country, Tonga. Chair, CBMs are particularly important for regions and states with limited capacity. They help build trust, reduce the risk of misperception and escalation, and create channels that can be used before, during, and after cyber incidents. For the Pacific, regional-level CBMs such as the Pacific Cybersecurity Operational Network are especially valuable. Including CERT-to-CERT cooperation, national and regional exercises, practical incident communication procedures, and opportunities for officials and technical experts to build relationships before a crisis occurs. As with norms, our focus at this stage is the implementation of the existing CBMs. We need support to make the agreed CBMs operational in national and regional contexts. This requires capacity building, technical assistance, guidance, exercises, and sustained engagement. The global mechanism should help states use the CBMs, not simply continue to describe them. The Pacific commends the successful operationalization of the Global Points of Contact, POC, Directory. To remain effective, it is important that this directory is actively maintained, strengthened, and made genuinely useful in practice under the global mechanism, including through regular communication checks and continued support for those states that are still completing their nominations. Confidence-building measures play a critical role in building trust, and they matter most in regions such as ours with limited capacity. For a network of this kind to build trust rather than strain it, it must be used in good faith. We would welcome a shared understanding that the POC network be used proportionately purposefully and with due regard for the capacity constraints of smaller states. Used in that spirit, the directory remains among the most valuable confidence-building tools available to us. I thank you, Chair. Global Mechanism · Chair [1:56:19]: Muchísimas gracias. Thank you very much to Tonga. I now give the floor To the European Union, who will be followed by the following countries: the Republic of Korea, Costa Rica, Albania, Italy, Kiribati, and the United Kingdom. The EU, please. EU [1:56:43]: Chair, colleagues, I have the honor to speak on behalf of the EU and its member states. The candidate countries, Türkiye, North Macedonia, Montenegro, Serbia, Albania, Ukraine, the Republic of Moldova, Bosnia-Herzegovina, and Georgia, and the EFTA country Norway, member of the European Economic Area, as well as San Marino aligned themselves with this statement. Building trust and confidence is a long-term progressive commitment that requires the sustained and genuine engagement of states. Under the Open and Working Group, we have made significant progress in launching concrete initiatives to contribute to this, including the agreement of 8 confidence-building measures. The measures agreed upon under the Open-Ended Working Group, but also those at regional level, are crucial for deepening common understandings, prevent misunderstandings, reducing the risk of misperception and escalation, and increasing the predictability of state behavior, which ultimately will contribute to greater stability in South cyberspace. The work on confidence-building measures under the global mechanism should therefore, as a priority, focus on the operationalization of the voluntary non-exhaustive list of CBNs as agreed under the Open-Ended Working Group. Efforts should aim to encourage active participation by states, as well as to complement the work of regional organizations, notably the OSCE, OAS, ARF, and ECOWAS. In this regard, the global mechanism should initially focus on raising awareness and elaborating on the existing confidence-building measures, both at global and regional level, as well as to provide states and regional groups with practical tools, best practices, and examples to translate the CBNs into our national legislation, policies, and mechanisms. In this context, we welcome simulation exercises exercises that could support the identification of practical measures in this context. The EU and its member states affirm the value of the POC directory as a CBM and as a tool to provide states with direct means of contact in situations where they do not have these means already existing. The global POC directory could facilitate engagement between states in case of cyber incidents when dealing with a lack of understanding on whom to reach out to. In this way, the POC directory could provide a complementary tool to member states' incident response in cases where they do not have these contexts already, or they don't already have existing relationships on cybersecurity matters. To further develop the directory, the EU and its member states initially support the integration of the directory into the GCCP, so the portal that we agreed upon under the OpenNet Working Group, which it could support cooperation and communication under the global mechanism. And we're also open to exploring further development of the directory, however based on lessons learned from its use. We consider it important, however, to avoid duplication of efforts with existing networks of POCs and with existing regional and bilateral relations. We stress that the POC directory is a tool that can be useful when other means are lacking, but which should not replace existing cooperation efforts or established means of contact between states. In addition to the voluntary POC directory, the EU and its member states support the operationalization of the other 8 CBMs. And the plenary and the DDGs could facilitate this work, for instance by sharing national ICT strategies, policies, legislation, concept papers, best practices on a voluntary basis under DTG 1 in line with CBM 3, and in our exchanges on protection of critical infrastructure in line with CBM 7. We could also promote the information exchange on cooperation and partnerships between states to strengthen ICT security capacity and enable CBM implementation, which is in line with CBM 5. And inter-sessionally and in the margins of our sessions, as well as part of our capacity-building efforts, and organizing— we could organize regular seminars, workshops, and training programs on ICT security in line with CBM 6. The global mechanism discussions will enable us to take forward the achievements on the CBMs under the Open-Ended Working Group, further outlining their value in preventing cyber incidents, and in building trust, transparency, and stability in cyberspace. We could also incorporate them into our regional and national practices as complementary tools to the application of international law and norms of responsible state behavior in cyberspace. And we look forward to working with you on this. Thank you very much. Global Mechanism · Chair [2:01:35]: Muchísimas gracias. Doy ahora— Thank you very much. I give the floor now to the Republic of Korea. Republic of Korea [2:01:42]: Thank you, Madam Chair. As technology continues to advance, cyber threats are growing in both scale and sophistication, and such threats have the potential to undermine trust among states. In this context, confidence-building measures are essential to enhance predictability and stability in cyberspace and to prevent misunderstanding and miscalculation among states. Strengthening confidence-building measures at the international level is also indispensable to enhancing resilience in cyberspace. Just as the Open-Ended Working Group itself served as an important confidence-building measure by fostering dialogue and transparency among states, we expect the global mechanism to play a similar role in promoting trust, transparency, and sustained cooperation. The Republic of Korea believes the establishment of the UN Global Mechanism Point of Contact Directory to be one of the most significant achievements of the OEWG. The directory has the potential to strengthen confidence among states by facilitating timely and effective communication during cyber incidents and crises. We therefore look forward to the continued operation of the POC Directory including regular exercise and capacity-building activities under the global mechanism. At the same time, UN POC Directory is intended to be used on a voluntary basis by member states and should not be misused or exploited for purposes inconsistent with its original intent. The POC Directory should be used responsibly and in good faith consistent with its purpose of facilitating cooperation and effective communication among member states. Additionally, we reaffirm our strong support for the joint statement delivered by Dominican Republic. The Republic of Korea looks forward to actively participating in these efforts to further strengthen discussions on confidence-building measures under the global mechanism. In particular, we believe the Experiences and the best practices of regional organizations that have successfully implemented confidence-building measures can provide valuable guidance for developing effective confidence-building measures at the global level as well. I thank you. Global Mechanism · Chair [2:04:10]: Muchísimas gracias. Doy ahora. Thank you very much. I now give the floor to the delegation of Costa Rica, followed by Albania. Costa Rica [2:04:45]: and functional communication channels prior to the onset of a crisis. To this end, Costa Rica supports the voluntary exchange of information, communication protocols for incidents, and regional exercises and simulations that strengthen collective preparedness. Second, Costa Rica highlights the utility of the Global Directory of Points of Contact. This instrument is a valuable operational tool for facilitating urgent communication, managing cross-border incidents, reducing misunderstandings, and preventing escalation in the event of conflict. To fulfill this function, it must be kept up to date, tested periodically, and integrated with actual national capabilities, including computer security incident response teams, competent authorities, diplomatic channels, and regional mechanisms. Third, legal transparency. Also serves as a confidence-building measure. National positions regarding international law in cyberspace provide insight into how states interpret principles such as sovereignty, non-intervention, due diligence, attribution, the use of force, international humanitarian law, and human rights. By publishing its National Position on the Application of International Law in Cyberspace, Costa Rica states its conviction that this type of transparency helps reduce uncertainty, strengthen shared expectations, and facilitate dialogue among States. Finally, building trust in cyberspace requires linking law, technology, and diplomacy. Attribution, evidence, incident response, and crisis communication are simultaneously legal, technical, and political matters. Therefore, the global mechanism must promote forums for exchange among diplomats, legal advisors, technical experts, CSIRTs, the private sector, the technical community, academia, and civil society. Madam Chair, Costa Rica hopes that this mechanism will foster concrete, inclusive, and results-oriented confidence-building measures. Greater communication, transparency, and cooperation mean reduced risks in cyberspace, enhanced security for people, and essential services, and greater international stability. I thank you. Global Mechanism · Chair [2:07:03]: Thank you. I give the floor now to Albania, who will be followed by Italy. Albania [2:07:10]: Thank you, Madam Chair. Albania aligns itself with the EU statement on this item and wishes to add the following on its national capacity. As a country which continues to face persistent malicious cyber activities, against its critical infrastructure. We know firsthand that trust between countries and states built through practical cooperation is what determines how quickly and effectively we can respond when an incident occurs. Confidence-building measures remain for Albania one of the most concrete and immediate useful outcomes of this process. Albania's approach to CBMs rests on cooperation across several layers— political, diplomatic, and technical— through the UN, European Union, OSCE, ITU, Western Balkans, FIRST, Trusted Introducer, and numerous other countries or organizations which we work on bilateral relations, each of those cooperation reinforcing each other. At the United Nations level, Albania has appointed its point of contact at the Global Point of Contact Directory and continues to support its further operationalization as a practical tool that turns confidence into concrete communication channel in time of crisis. We also value highly the Women in Cyber Fellowship, which we consider a confidence-building measure in itself. Having brought valuable perspectives and a more resilient cyberspace. With the support of the Netherlands, Germany, previously from the United States, we have been present and part of these discussions in the UN since 2022. And now at the Global Mechanism, we are present with a bigger delegation, diplomatic and technical. Participation on those meetings have not only increased our confidence and understanding, on the cyberspace, but we understood that Albania has taken the necessary steps forward in cybersecurity, learned from experience of other countries, but also given contribution to share our own experiences. With the European Union, Albania as a candidate country for membership is progressively aligning with the EU cybersecurity acquis, including through the transposition of all the NIS2 Directive into national laws, sub-laws, and numerous procedures, and benefiting from the EU support programs, then strengthen operational cooperation and information sharing among Western Balkan cybersecurity diplomatic and technical bodies. Through the OSCE, Albania actively participates in the Informal Working Group on Cyber CBMs, regularly reporting on implementation of CBM 8 and 15, working particularly on the protection of critical information infrastructure and the exchange of national points of contact. With ITU, Albania engages in joint projects, training dialogues that strengthen collective security while using many resources of ITU in cooperating with other countries. At the regional level, Albania has invested significantly in building trust among Western Balkan states and beyond. This includes initiatives such as the Adriatic Five meetings, the Western Balkan Policy Roundtable supported from the Dutch government, the Western Balkan Cyber Dialogue supported from DCAF, technical workshops supported by UNDP, and numerous training and conferences organized with the WB3C centers. Albania has also launched programs such as Western Balkan Cyber Camps, alumni events for participants, and is preparing for the next regional cyber marathon now under development. These projects bring together young cyber professionals from across the region and help build the professional and institutional relationship on which CBMs ultimately depend. Albania also seeks new and less conventional partnerships because we believe that international relations always leave room for deeper cooperation and confidence-building. For example, just yesterday, we became, as the newest member, of the International Coalition on Cybersecurity Workforce, joining United Kingdom, Canada, United Arab Emirates, Ghana, Japan, Singapore, and Nigeria. For Albania, these different frameworks are not parallel tracks but a single one, mutually reinforcing all the efforts we're doing in cybersecurity. Cooperation with all those frameworks, together with our regional partnership, have directly strengthened our national capacity. And it is this increase of capacities that in turn allow us to be more reliable and predictable partner for the others. This is, in Albania's view, exactly how confidence building is meant to work: cooperation building capacity, capacity building trust, and trust builds still back cooperation among the countries. Albania therefore reiterates its support for the integration of CBMs across the work of the global mechanism. And stands ready to share its national experience with the other states, particularly on the operationalization of points of contact, information-sharing arrangements, and joint training and exercises. At the end of the day, it's important to know who do we call, who we trust, and where we turn for the support in a moment of difficulty when we have a big cyberattack. This is why confidence building sustained through cooperation at every level—global, regional, bilateral—remains for Albania central to a more stable, secure, and predictable cyberspace. Thank you, Madam Chair. Global Mechanism · Chair [2:13:34]: Muchísimas gracias. Thank you very much. I give the floor to the delegation of Italy, followed by Kiribati, the United Kingdom. Papua New Guinea, Canada, Serbia, South Africa. Italy, please. Italy [2:13:52]: Italy fully aligns itself with the statement delivered by the European Union and wishes to add a few considerations from its national perspective, also benefiting from contributions of the 4 stakeholders objected by the Russian Federation. In an environment where cyber threats increasingly transcend national borders, CBMs remain essential tools to strengthen trust, transparency, and cooperation among states. Reducing risks of misunderstanding contributes to preventing escalation and supporting stability in the use of ICTs. The initial list of voluntary global confidence-building measures contained in Annex B to the 3rd OEWG Annual Progress Report was a very useful tool, and we hope that this global mechanism will take that into consideration for its future works. Regarding the implementation of the UN confidence-building measures, I would like to briefly share that Italy has nominated since the very beginning its POCs for the Global Directory. We keep exchanging views on ICT matters at bilateral and multilateral level. We regularly share concept papers, national strategies, policies, and programs. As well as information on ICT institutions and structures, for example, through advisories, alerts, reports of our National Cybersecurity Agency. We promote and support capacity-building projects. We organize workshops and seminars with a whole-of-society approach. We contribute to the EU policies regarding the protection of critical infrastructure and critical information infrastructure. We actively promote opportunities for public-private partnership at national and multilateral level. But more work has to be done, and we are committed to continue on this path. We also would like to emphasize the particular importance of regional confidence-building measures, for instance, those developed by the OSCE, which we regard as highly effective. Among the others, Italy actively contributes to CBM 8 on points of contact and CBM 14 fostering public-private partnerships to address shared cybersecurity challenges. Italy underscores the private sector's pivotal role in enhancing resilience and addressing multifaceted cyber threats. We recognize the importance of cross-regional collaboration to enhance CBMs. By integrating lessons learned from diverse frameworks and sharing experiences, Italy is committed to contribute to a more adaptable and comprehensive approach to trust-building in cyberspace. Existing experiences demonstrate the value of multinational cyber exercises, cyber ranges, crisis management simulations, and structured information-sharing mechanisms involving governments, critical infrastructure operators, industry, academia, and research organisations. Developing common operational playbooks and trusted networks before crises occur can strengthen collective preparedness and coordinated response capabilities. The active involvement of technical stakeholders in all these activities and exchanges can significantly enhance the effectiveness of these measures by providing practical expertise and facilitating cooperation across sectors. This is why, once again, DTGs can play a crucial role also in this area. DTG 1 can discuss how to apply CBMs in a specific situation or scenario, whereas DTG 2 can craft tailored projects to build capacity. Italy always stands ready to share its experiences, lessons learned, and proposals in implementing CBMs. Thank you. Global Mechanism · Chair [2:17:50]: Muchísimas gracias. Thank you very much. I give the floor now to the delegation of Kiribati. Kiribati [2:17:57]: Thank you, Madam Chair. Kiribati aligns itself with a statement delivered by the Kingdom of Tonga on behalf of the Pacific Islands Forum members and adds the following in its national capacity. Madam Chair, if this first session is to To set a pattern for all that follow, confidence-building is where this mechanism can show its value soonest. For small island developing states like Kiribati, CBMs are among the most immediately practical elements of the framework of responsible state behavior. We do not maintain extensive networks of bilateral channels Predictable, trusted mechanisms for communication between states are for us not a convenience. They are the difference between facing an incident alone and facing it with help. For this reason, Kiribati attaches great importance to the Global Point of Contact Directory. We commend the Secretariat and UNODA for its establishment and operationalization, and Guinea-Bissau is working to finalize its own participation. We encourage continued practical support for its use so that the directory works as intended in a real incident and not only on paper. And we would gently encourage all states to use the network in the cooperative incident-related spirit for which it was designed, mindful that for a small administration, every message received draws on the same small team that defends our networks. We were encouraged to hear earlier this week offers of assistance extended to states such as ours. We value such offers greatly. They are a reminder of what these gatherings are truly for. This plenary is not only where we discuss confidence-building in the abstract. It is where confidence is built, where a small state like Kiribati can meet the partners it may one day need to call upon and where offers of assistance are made and remembered. For states like ours, that is among the most valuable things this mechanism can offer. Madam Chair, the Pacific experience is that confidence is built through practice, not declarations. Our region has been doing this work for years through the Pacific Cybersecurity Operational Network, PACSEN, our incident response— responders shared threat information and built the personal trust on which crisis communication ultimately depends. Kiribati was proud to host a recent PACSEN gathering, bringing our region's cybersecurity professionals together to train, share, and strengthen the relationships that make cooperation work when an incident strikes. Through Cyber Safety Pacifica and other regional programs, our law enforcement agencies cooperate daily. And under the BOE Declaration, Pacific Islands Forum members have recognized cybersecurity within our expanded concept of security, giving regional political backing to this practical cooperation. We draw 2 lessons from this experience that we believe are relevant globally. First, CBMs succeed when they are simple, sustained, and relationship-based. Their ambition should be measured in reliability, not in the number of measures adopted. Second, regional organizations are not merely implementers of globally agreed CBMs. They are laboratories for them. These mechanisms should draw systematically on regional experience, including through regular exchanges with regional bodies, and should help connect regional networks such as BACSEN with their counterparts in other regions so that what works in one part of the world does not have to be be discovered anew in every other. GDEBAS therefore encourages the mechanism to keep its works on CBMs firmly practical, strengthening the directory, supporting exercises and communication checks, ensuring designated points of contact receive the training their role demands, and enabling hybrid participation so that officials from capitals as distant as Tarawa in Kiribati can take part meaningfully. Confidence, Madam Chair, is our region's currency. From this first session, let us begin to invest in this mechanism and to return it in return. I thank you, Madam Chair. Global Mechanism · Chair [2:23:23]: Thank you very much, Kiribati. I now give the floor to the United Kingdom, followed by Papua New Guinea. United Kingdom of Great Britain and Northern Ireland [2:23:34]: Thank you, Chair. The United Kingdom supports the identification of concrete, action-oriented ways to implement the UN Framework on Responsible State Behavior in Cyberspace, including through confidence-building measures. As recognized in previous consensus reports, confidence-building measures can contribute to preventing conflicts, avoiding misperception and misunderstandings, and the reduction of tensions. The UN Point of Contact Directory is a positive, practical example of a CBM emerging from the 2021-25 OEWG, as Kiribati has just outlined so clearly. According to OEWG and GGE consensus reports, the directory's purpose is to provide a way to facilitate secure and direct communications between states to prevent and address serious ICT incidents through a network of points of contact that could be reached in times of urgency. It complements a range of formal and informal networks that exist to share information on cyber incidents. If a state detects malicious cyber activity, emerging from another state, they may choose to use the POC directory or other CERT-to-CERT networks if they feel this will help to address the incident. Equally, they may decide that using the POC directory is not an appropriate response if it is clear that the malicious cyber activity is part of a deliberate state-sponsored campaign. The existence of the POC directory doesn't alter a state's right to attribute irresponsible cyber behavior to another state if they wish to do so. Thank you, Chair. Global Mechanism · Chair [2:25:18]: Thank you very much. I give the floor now to Papua New Guinea, followed by Canada and Serbia. Papua New Guinea [2:25:27]: Madam Chair, Excellencies, and distinguished delegates. At the outset, Papua New Guinea congratulates Madam Chair and your distinguished delegation of El Salvador on your important mandate and for the laudable leadership in guiding this process. This comes immediately on the heels of the recently highly successful and landmark inaugural Global AI Governance Dialogue in Geneva, whose process, Madam Chair, you so ably also co-chaired with the distinguished delegation of Estonia. Be rest assured of Papua New Guinea's trust and confidence in you, Madam Chair, and also our constructive support and best wishes. Let me also take this opportunity to pay special tribute to the distinguished delegation of Singapore for the sterling role and leadership in setting the stage through the OEWG process that has brought us to this stage. Madam Chair, Papua New Guinea aligns with the statement delivered on behalf of the Pacific Islands Forum by the distinguished delegation of Tonga, and we would like to make additional points in our national capacity. The welcome robust exchanges so far in this meeting is a clear statement to the high importance we all place on this critical agenda. For Papua New Guinea, information and communication technology is one of the 12 core national development strategic priorities under our current medium development— current medium-term development plan 4. This week in Papua New Guinea, leaders from government, industry, international partners have convened for the Pacific Regional Digital Transformation Summit and the Pacific Cyber Week to consider how digital technologies are shaping our shared future. We recognize a fundamental and clear message in this domain. That is, digital transformation can only succeed when people, governments, businesses, and other stakeholders have confidence and trust that the digital environment is safe, secure, and reliable. As Papua New Guinea recently highlighted during the Global Dialogue on AI Governance, digital technologies must remain human-centered and serve as an enabler of sustainable development. Building trust and confidence in cyberspace is therefore fundamental to ensuring that all countries can harness the opportunities of digital transformation while safeguarding international peace and security. For us, such confidence is built through trusted relationships, open communication, and practical cooperation. It also depends on countries having the capacity to prevent, detect, and respond to cyber incidents, protect critical infrastructure, and maintain essential services during times of disruption. Madam Chair, Papua New Guinea believes that global mechanism should help countries strengthen the core capabilities needed to manage cyber risk. This includes strengthening cyber hygiene, national incident response, CSIRTs and CERTs, legal and policy frameworks, and the skills required by officials, technical experts, regulators, law enforcement agencies, and critical infrastructure operators. These practical investments strengthens resilience, and deepens trust between states. Importantly, in our view, capacity building for this sector is critical. It should be demand-driven, nationally owned, and responsive to each country's level of digital maturity. For developing countries, particularly small island developing states, including my own country, Papua New Guinea, strengthening institutional And technical capacities remains pivotal to implementing the agreed framework for responsible state behavior in cyberspace. Confidence-building measures should likewise produce practical outcomes. Regular communication between national points of contact, timely information sharing, joint cyber exercises, technical cooperation, and the exchange of lessons learned can help countries prepare for cyber incidents before they occur. This partnership builds trust, reduces misunderstandings, and strengthens regional and international cooperation. Madam Chair, the Pacific Regional Discussion taking place this week in Papua New Guinea also reminds us that cybersecurity is not only a technical matter. It is a foundation for economic growth, digital trade, investment, innovation, and public confidence in digital services. As more countries expand digital government and digital economies, strengthening cyber resilience becomes a shared responsibility. The rapid advancement of emerging technologies, including AI, further reinforces the importance of resilient cyber ecosystem and international cooperation that must keep pace with technological change. We must ensure that technological progress narrows not widens the digital divide, enabling all states to participate safely, securely, and meaningfully in the global digital economy. In this context, Papua New Guinea would like to acknowledge the support of its development partners such as UNIDIR and the delegation of Australia for the continuing gender-sensitive capacity-building support, including this meeting, for our representatives' participation and that of other female representation in the Pacific region. This is of added value and most welcome with gratitude. Papua New Guinea believes partnership in the ICT domain must be based on respect for international law and each country's national sovereignty and territorial integrity. Madam Chair, to conclude, we encourage the global mechanism and its dedicated thematic groups to remain focused on implementation. Success should be measured by concrete progress, stronger national systems, more effective international partnership and cooperation between countries, and targeted support that enable all states, particularly developing countries and small island states, to shape, own, and drive the national engagement in the digital domain in a safe, secure, and trustworthy environment. Papua New Guinea is committed to to do its part in implementing the UN Framework for Responsible State Behavior in Cyberspace, including its 5 pillars. Thank you. Global Mechanism · Chair [2:32:02]: Thank you very much. I now give the floor to Canada, followed by Serbia and South Africa. Canada [2:32:09]: Thank you, Madam Chair. As mentioned earlier this week, we recall that we recently published the responses of Canada Thank you. I would like to refer you to the survey managed by UNIDIR on implementation of norms, international law, confidence-building measures, and capacity building. This is an example of the practical— the concrete practice of the CBM 3 on information sharing, which is increasing today. The survey is available on the website of Canada within the UNIDIR cyber portal. By making this information public and easily accessible, Canada is demonstrating transparency with regard to certain practices that could inspire others. Madam Chair, we need to take note of the efforts of the Secretariat to build up the capacity of states to use the Global Contact Points Directory. The directory has the main goal of facilitating communication during significant or urgent incidents, and this is laid out in its mandate as reflected in paragraph 5 of Annex A of the Annual Report 2022. Canada welcomed the information session on the Global Directive organized by the Secretariat on June 26th. We support the holding of a second simulation exercise in the fall, which will help to reduce the risk of misunderstanding or during significant or urgent incidents. In addition, and to give you an example of the practice of other CBMs, we note that Canada is organizing and frequently takes part in seminars, webinars, and side events as planned for CBM VI. For example, since March alone, Canada has taken part in a webinar organized by Let's Talk Cyber on the outcomes of the OEWG. And the future of the GMAC, a webinar organized by EU Cyber Direct on transregional collaboration of stakeholders, the Cyber Diplomacy School of Tallinn, as well as the UNIDIR Conference on Cyber Stability. Madam Chair, allow me to speak for a moment about soccer, or football as it's called in the rest of the world, another practice of operationalizing the CBMs would be exercises involving simulation, or rather tabletop exercises. And it's one of the host countries of the FIFA World Cup. We organized these tabletop exercises with cities that were hosting matches as well as critical infrastructure operators. We also collaborated with Mexico, Mexican and American, U.S. CERTs by helping to coordinate relevant information sharing. These are good practices that we can talk about during the DTGs that will take place in December. Confidence-building measures are a bit like sportsmanship in soccer. They foster healthy communication between players playing in good faith, whether they come from cyber agencies, ministries of foreign affairs, or non-governmental Thank you, Madam Chair. Global Mechanism · Chair [2:35:23]: Muchísimas gracias. Doy ahora la palabra a la delegación de Serbia. Thank you very much. I give the floor to the delegation of Serbia. Serbia [2:35:31]: Thank you, Madam Chair. Republic of Serbia aligned itself with the EU statement. Allow me to add just a few remarks from the national perspective. In an environment of heightened tension, confidence-building measures are among the most valuable instruments at our disposal— practical, voluntary, non-politicized tools that enhance transparency and predictability and reduce the risk that an ICT incident is misperceived and escalates. CBMs allow states with different perspectives to cooperate directly, and Serbia sees this area as one of where the mechanism can deliver visible results Serbia welcomes the operationalization of the Global Points of Contact Directory as a concrete, universal confidence-building measure. We designated both diplomatic and technical points of contact, and we believe that regular communication checks, pings exercises, and scenario-based simulation exercises will keep the directory alive and genuinely useful in a crisis. Serbia also draws on its regional experience. As a participating state of the OSCE, we are actively contributing to the development and implementation of the cyber-ICT security confidence-building measures, including by sponsoring CBM 9 on national terminologies and definitions in the field of information security. This experience demonstrates the value of practical cooperation aimed at improving mutual understanding and reducing the risk of misunderstandings among states. I thank you. Global Mechanism · Chair [2:37:18]: Muchísimas gracias. Thank you very much. I give the floor to the delegation of South Africa, who will be followed by Singapore, Nauru, Switzerland, Vanuatu, and Chile. South Africa, please. South Africa [2:37:34]: Thank you, Chairperson. We recognize that the adoption of the 3rd Annual Progress Report of the previous Open-Ended Working Group, in which member states agreed to establish this global mechanism on security of and in the use of information communications technologies, was an important confidence-building measure. The final report of the OEWG recommended that states should continue discussions on the development and implementation of CBMs in the GM. It has been critical that member states have a forum to discuss the rapid development of technology in the United Nations and to address matters related to the responsible behavior of states in the use of ICTs. Member states can support and facilitate full operationalization of the 8 global CBMs through international cooperation at a UN, regional, and sub-regional levels. This support could take the form of workshops and roundtable discussions to share experiences and expertise, engage in dialogue to identify some of the non-contentious areas, and move to more sensitive ones as we continue to build layers of understandings and trust between states. Chairperson, the increasing participation by Member States in the Global Points of Contact Directory is another CBM. We believe that by narrowing the capacity gap through capacity-building programs, the goal of achieving maximum participation in the Global POC Directory is attainable. Member States are encouraged to share success stories from assistance received through interaction with the Global POCs during a cyber incident. We regard the POC directory as a first step to greater cooperation between states on identifying and responding to threats to ICT security. The 8 voluntary CBMs adopted by the OEWG in its 3rd APR are simple steps that member states take every day to a greater or lesser degree. CBM 1 requests that member states nominate points of contact for the Global POC Directory. CBM 2 requests that Member States continue exchanging views and undertaking bilateral, sub-regional, regional, cross-regional, and multilateral dialogues and consultations. CBM 8 requests that States strengthen public-private partnerships on ICT security. It is a sign of Member States' commitment that several CBMs are already being undertaken by many delegations at the national level. Further discussion on all 8 CBMs could take place in the DTGs at appropriate intervals. Capacity-building initiatives have also brought Member States together at the UN and achieved consensus in a difficult geopolitical context. Our delegation believes that the proposal for a Global Cybersecurity Cooperation and Capacity-Building Portal linked to the work of the Global Mechanism should be further elaborated on the dedicated thematic— in the dedicated thematic group meetings in December 2026. The proposed voluntary fund to support participation of developing countries in the global mechanism and capacity building is also a CBM. In this regard, we support the continuation of the UNIDIR Women in International Security and Cyberspace Fellowship, which has created a support system for delegations Regardless of their affiliations with the Global North or the Global South, I thank you. Global Mechanism · Chair [2:41:10]: Muchísimas gracias. Doy ahora. Thank you very much. I now give the floor to Singapore. Singapore [2:41:15]: Thank you, Madam Chair. Singapore believes that one of the key needs in this global mechanism is for states which are already implementing CBMs to share best practices, the potential pitfalls in implementations. And the ways around them. Madam Chair, like cybersecurity, CBMs are a team effort. They are not a concept that can be practiced in isolation by one state alone. Having the respective CBMs as a concept is a good start, but we need to work towards actionable efforts towards their implementation. We need to deepen efforts to collectively enhance one another's capacity to implement these measures. Regional organizations are very important to this cause. Different regions have different ways of implementing CBMs. DTG I should consider how we can involve regional organizations to share the experiences that could be useful from a cross-regional perspective. Madam Chair, we are also pleased to see the efforts to ensure that a global intergovernmental points of contact Directory remains a useful and effective initiative for all UN member states. The POCs Directory is an important addition to the other existing channels that can be leveraged by states to reach out to each other in the event of a cyber incident, thus strengthening international cooperation, peace, and stability. At the same time, not all states have had prior experience with implementing the POCs Directory. and may require capacity building at the national level to implement processes to allow for the effective operationalization of the directory. In this regard, it would be important to allow for the POC's directory to be used in a flexible way so that states may use it as needed before we develop more standards, templates, and procedures for its use. As such, we support UNODA's ongoing efforts to operationalize the use of the POC directory to capacity-building initiatives, simulation exercises, and engagement with regional mechanisms to promote interoperability and the sharing of best practices. The feedback from these activities can then be collated to form the basis for the further refining of the Directory. Singapore has participated in the ping tests conducted and will continue to do so to ensure that the Directory remains a practical tool and relevant initiative for our continued cooperation. Thank you, Madam Chair. Global Mechanism · Chair [2:43:46]: Thank you very much. I give the floor now to Naoero. Nauru [2:43:53]: Thank you, Madam Chair. NATO speaks in alignment with the statement delivered on behalf of the Pacific Islands Forum members with regards to CBMs. We offer our national statement as follows: In NATO, the people responsible for our cybersecurity Our diplomacy and our digital policy are often one and the same within our public service. This is not a complaint. Rather, this is our context. Where measures for transparency and communication are built, the consideration for us is, how can administrations like ours use them? Measures can assume large bureaucracies as well as small ones. To be so, they have to be, without exception, inclusive by design. Our intention is not at all to slow down the progress of any state, but to be confident in moving forward from where we are. It is precisely because we are small that CBMs matter so much to NORU— to NATO. In a serious ICT incident, A small state's response begins with a question: who do we call? The Global Points of Contact Directory exists to answer that question, and NATO values it accordingly. We are committed to registering to the POC and playing our full part in the directory. We support the continuing programme of capacity building for states to make full use of it. Thank you. to UNODA for steering us. We also see value in states sharing their national frameworks and legislative developments through this mechanism. Openness about how each of us organizes our cyber governance is itself a confidence-building measure, and one NATO is applying through the reform that our government is undergoing as alluded to in previous statements. Madam Chair, in a few days' time, NATO will assume the chairmanship of the Pacific Cybersecurity Operational Network, PACSON, for the coming year. We are proud to take on this responsibility and we do so with purpose. PACSON connects the incident responders of our region in working-level cooperation, week in and week out. And it has shown NATO that trust between technical teams is built through routine contact long before a crisis makes it necessary. As incoming Chair, NATO intends to bring that regional experience to bear here. We will work to strengthen the connection between the Pacific's operational cooperation and the global measure this mechanism develops, so that each informs the other. We invite other regions and the mechanism itself to engage with us in that spirit during our chairmanship. Our priorities for this pillar follow from all of the above: keep the Directory practical and exercised; invest in the training of designated officials, whose competence is what the measures ultimately rest on; draw deliberately on regional networks as sources of tested practice. I thank you. Global Mechanism · Chair [2:47:21]: Thank you very much, and I wish you every success in the role that you'll be assuming soon. We don't have long left, so we're not going to be able to finish our list of speakers this afternoon. I will give the floor to Switzerland and If we have enough time, I'll give it to Vanuatu after Switzerland. Otherwise, Vanuatu will be the first speaker tomorrow morning. Switzerland, please. Switzerland [2:47:47]: Switzerland recognizes the importance of confidence-building measures as an essential part of the UN framework for responsible state behavior in cyberspace. Such measures help to reduce the risk of misunderstandings, misperceptions, and unintended escalations arising from the use of ICT. They promote transparency, predictability, and cooperation between states, thereby strengthening international peace and security. Our dependence on digital technologies grows. So does the importance of implementing practical measures to foster trust and resilience. Switzerland would like to emphasize that the challenge is not to develop new confidence-building measures, but to implement those that have been proven effective. Have already been agreed effectively. The 8 initial CBMs developed at the Open-Ended Working Group provide a solid foundation. Our efforts should therefore focus on translating these commitments into practice, sharing experiences, and identifying both implementation gaps and good practices. DGT1 is particularly well suited to this task. This will take time, and is an ongoing process, as our experience at the OSCE shows. In this regard, regional and sub-regional organizations play a particularly important role. They are well-placed to promote dialogue among neighboring states, facilitate capacity building, develop practical implementation guidance, and adapt confidence-building measures to regional contexts while remaining firmly anchored in the global UN framework. We would like to refer to the non-paper submitted to the open-ended working group in June 2025 on the role of regional organizations in implementing the UN framework for responsible state behavior in cyberspace. One of its key recommendations is the establishment of a structured exchange between the global mechanism and regional and sub-regional organizations. This would enable lessons learned to be shared, promote coherence across regions, avoid duplication of efforts, and strengthen the implementation of the framework at all levels. Switzerland believes that the global mechanism should serve as both a forum for dialogue among states and a platform connecting regional implementation efforts, facilitating the exchange of best practices, and supporting the the dissemination of successful confidence-building initiatives. I witnessed such an exchange in June this year at the meeting organized by the OSCE with Germany's support and saw the added value it brought between regional organizations. We also wish to emphasize the value of voluntary transparency measures, including designating national points of contact, exchanging information on national implementation and cooperation through exercises and information sharing. These measures strengthen communication channels prior to incidents and foster the trust essential for effective crisis prevention and management. Chair, confidence-building measures must remain closely linked to the other pillars of the UN framework. Implementing them supports the application of agreed norms of responsible state behavior, contributes to capacity capacity building and facilitates a common understanding of how international law applies in cyberspace. During the discussion on threats and norms, Switzerland and many other delegations emphasized the importance of protecting critical infrastructure. States therefore are encouraged to continue raising awareness on the importance of critical infrastructure protection when implementing CBMs, promoting information sharing among critical infrastructure stakeholders and sharing of good practices and guidance. Doing so will help implementing Norms 13, , and . Finally, we are looking forward to the paper announced by the cross-regional group on CBMs and thank them for their engagement. Chair, Switzerland is committed to constructive cooperation with all delegations to ensure that confidence-building measures are practical, inclusive, oriented towards implementation. Strengthening cooperation at global, regional, and national levels can further reinforce trust, stability, and security in cyberspace for all. I thank you. Global Mechanism · Chair [2:52:13]: Thank you very much. Okay, we— I'll take it that we've run out of time for this afternoon. I still have 18 requests on my list to take the floor on confidence-building measures on this item. So we'll hear from all of those delegations tomorrow. And just like I said, once we finish this agenda item, we'll move on to the next one. I'm just going to read the first 5 delegations on the list so that they can be ready to speak tomorrow at 10 AM. We have Vanuatu, Chile, Israel, Côte d'Ivoire, and fifthly, Ireland. And then we'll go further down the list until we've finished, and the mechanism will come back here in this room tomorrow morning at 10:00 a.m. The meeting is adjourned. Thank you.