Hacker News new | ask | show | jobs
by secfirstmd 1636 days ago
Hi there.

Seeing as you are in DRC. I've worked on a number of projects there. Maybe you might be interested in checking out an app we made to help NGO/media etc learn about and manage their digital and physical security? Lots of groups on the ground there have used it in situations like kidnap, targeted malware etc.

It's called Umbrella. It's free, opens source, on ios and Android available in many languages. If you are interested, have a look at at https://www.secfirst.org or ping me via the email in my profile! :)

2 comments

>Umbrella...kidnap, targeted malware

This looks like a behavioral modification tool, to prevent kidnap, etc. Two questions: is there a scenario database of DRC "actualized risk", that describe real kidnaps, extortion, etc ideally with root cause analysis? What is your revenue model[1]? Okay, 3 questions: what do you think of tools like what NSO provides for client recovery?

1 - Speculation: do you make revenue by providing a marketplace where security service providers can market to consumers?

Good questions.

So at the moment the advice we give is not country specific. We have slightly different levels depending on risk, threat model and skill. Building a logic to do country by country was something we tried but is incredibly hard.

Our revenue model is based on a few things. We got grants to build the initial version, we also create paid white label versions for organisations that want their own and we do security training and consultancy services.

Regarding NSO Group. Well considering we work every day with journalists and activists, some of whom have been targeted by NSO...to say we despise what NSO does is probably an understatement.

Awesome thanks for sharing! I can see this being helpful for us as well.