The European Union has called for prioritising the operationalisation of eight confidence-building measures (CBMs) agreed under the UN Open-Ended Working Group (OEWG) on ICT security, in a statement delivered on 22 July 2026 at the first substantive session of the UN Global Mechanism on developments in the field of ICTs in the context of international security. Speaking on behalf of the EU and its member states, the EU delegation to the UN in New York stressed that the Global Mechanism should focus on raising awareness, providing practical tools, and encouraging active participation by states to translate CBMs into national legislation and policies. The statement also welcomed simulation exercises to support CBM operationalisation and affirmed the value of the Points of Contact (POC) Directory as a voluntary tool to facilitate engagement during cyber incidents, while cautioning against duplication with existing regional and bilateral networks.

The EU's intervention at the 20–24 July session builds on progress made under the OEWG, where the eight CBMs were agreed as part of efforts to prevent misunderstandings, reduce risks of misperception and escalation, and increase predictability of state behaviour in cyberspace. The EU emphasised that the Global Mechanism should complement the work of regional organisations such as the OSCE, OAS, ARF and ECOWAS, and initially focus on elaborating existing CBMs at both global and regional levels. The statement also supported integrating the POC Directory into the Global Security and Cooperation Platform (GSCCP) to enhance cooperation, while remaining open to further development based on lessons learned. The EU and its member states stressed the importance of avoiding duplication with existing POC networks and bilateral relations, noting that the Directory is a supplementary tool for states lacking direct contacts.

The EU's position reflects a broader push to advance responsible state behaviour in cyberspace, with the Global Mechanism serving as a forum to build on OEWG achievements. The statement also highlighted the role of plenary sessions and dedicated thematic groups in sharing national ICT strategies, protecting critical infrastructure, promoting information exchange on capacity building, and organising regular seminars and training programmes. The EU and its member states view CBMs as complementary to international law and norms of responsible state behaviour, aiming to prevent cyber incidents and foster trust, transparency, and stability in cyberspace.

← Atlas › News › Foreign affairs