Federal government could pay millions in compensation over asylum seeker data breach

Breach, discovered by Guardian Australia, resulted in information being used to allegedly threaten some in detention

The Australian government may be liable for tens of millions of dollars in compensation to asylum seekers after it posted their personal details online while they were in immigration detention.

The mass data breach, discovered by Guardian Australia in 2014, resulted in information being used, in some cases, to allegedly threaten asylum seekers, or persecute and even jail their family members.

Sign up for Guardian Australia’s free morning and afternoon email newsletters for your daily news roundup

Continue reading...

TikTok fined €345m for breaking EU data law on children’s accounts

Irish data regulator says platform put 13- to 17-year-old users’ accounts on default public setting, among other breaches

TikTok has been fined €345m (£296m) for breaking EU data law in its handling of children’s accounts, including failing to shield underage users’ content from public view.

The Irish data watchdog, which regulates TikTok across the EU, said the Chinese-owned video app had committed multiple breaches of GDPR rules.

Continue reading...

‘Deeply disturbed’: names of 64 alleged child sex abuse victims mistakenly given to media in Queensland court blunder

Exclusive: Authorities move to notify families after children’s names were provided in unredacted documents

Authorities are notifying the families of 64 alleged victims of an accused Queensland paedophile after their identities were mistakenly made available to journalists.

The state’s attorney general, Yvette D’Ath, apologised for the “breach of victims’ privacy” on Friday morning and announced an inquiry into the error.

Continue reading...

Australia will not force adult websites to bring in age verification due to privacy and security concerns

The eSafety commissioner is to work with industry on a new code to educate parents about how to access filtering software and limit children’s access

The federal government will not force adult websites to bring in age verification following concerns about privacy and the lack of maturity of the technology.

On Wednesday, the communications minister, Michelle Rowland, released the eSafety commissioner’s long-awaited roadmap for age verification for online pornographic material, which has been sitting with the government since March 2023.

Sign up for Guardian Australia’s free morning and afternoon email newsletters for your daily news roundup

Continue reading...

Customer data used for unwanted romantic contact, UK poll shows

Almost one in three people aged 18-34 have been messaged by staff after giving personal details to a business

Almost one in three people aged 18-34 have received unwanted romantic contact after giving their personal information to a business, a UK poll has shown.

The Information Commissioner’s Office (ICO) has called for recipients of such texts to come forward to help the regulator gather evidence of the impact of this phenomenon.

The ICO has an online form for people who want to report an experience of unwanted contact.

Continue reading...

Australians increasingly concerned about online privacy after high-profile cybersecurity breaches

After massive hacks at Optus and Medibank, survey from information commissioner finds three-quarters of people feel data breaches are among biggest risk to privacy

Australians are more concerned than ever over the handling of their personal information and want tough laws to protect them after the Optus and Medibank cybersecurity breaches, a new study has found.

The latest Australian Community Attitudes to Privacy Survey, released on Tuesday by the Office of the Australian Information Commissioner (OAIC), found three-quarters of Australians feel data breaches are one of the biggest risks to privacy they face. That is an increase of 13% since the survey was last conducted in early 2020.

Sign up for Guardian Australia’s free morning and afternoon email newsletters for your daily news roundup

Continue reading...

Kenya halts Worldcoin data collection over privacy and security concerns

Issues raised include use of eye scans to prove ‘humanness’ and financial inducements to sign up

The Kenyan government has barred the eyeball-scanning Worldcoin cryptocurrency project from recruiting new customers as it investigates data privacy and security concerns.

Kenya’s interior ministry said the venture must stop collecting user data after raising a number of issues including: concerns over the secure storage of data that includes scans of a user’s iris; that offering crypto in exchange for data “borders on inducement”; inadequate information on cybersecurity safeguards; and placing large amounts of private data in the hands of a private business.

Continue reading...

UK spy agencies want to relax ‘burdensome’ laws on AI data use

GCHQ, MI6 and MI5 propose weakening safeguards that limit training of AI models with bulk personal datasets

The UK intelligence agencies are lobbying the government to weaken surveillance laws they argue place a “burdensome” limit on their ability to train artificial intelligence models with large amounts of personal data.

The proposals would make it easier for GCHQ, MI6 and MI5 to use certain types of data, by relaxing safeguards designed to protect people’s privacy and prevent the misuse of sensitive information.

Continue reading...

WeChat user numbers plummet nearly 30% in Australia amid concerns of Chinese interference

Owner gives parliamentary inquiry no reason for fall over three years but says China’s government could not conduct surveillance on app

WeChat has said its user numbers in Australia have declined almost 30% in the past three years, amid questions being raised about foreign interference on the app.

Tencent-owned WeChat told a parliamentary committee examining foreign interference on social media that as of July 2023, the communications app favoured by Australia’s Chinese diaspora community had fewer than 500,000 daily active users in Australia. The company told the committee in 2020 that its user base was 690,000.

Sign up for Guardian Australia’s free morning and afternoon email newsletters for your daily news roundup

Continue reading...

HWL Ebsworth hack: Queensland says its files were taken after criminals release Victorian documents

State’s chief information security officer says information from Victorian departments and agencies was accessed

Highly sensitive legal documents from the Victorian government have been published on the dark web by cybercriminals, with Queensland also confirming files from at least one of its departments are included in the breach.

The breach is connected to data that was stolen from the law firm HWL Ebsworth in April by a Russian-linked ransomware gang, known as ALPHV/Blackcat, and posted online.

Sign up for Guardian Australia’s free morning and afternoon email newsletters for your daily news roundup

Continue reading...

Senator says she has been ‘excluded’ from writing pamphlet – as it happened

This blog is now closed.

Patricia Karvelas challenges Littleproud’s Covid reasoning behind the Murray-Darling Basin delays on ABC RN this morning.

“This isn’t a new problem … Your government was in power when a 2019 Productivity Commission report warned that there had been limited progress returning the water to the environment,” she says. “Why didn’t you change course?”

This is a very technical piece of legislation … The 450 is additional to the 2,750 gigalitres of water in the plan, the Productivity Commission looked at the 450 gigalitres, there’s only been 2 gigalitres recovered on the 450 …

Because the neutrality test on social and economic impact on rural communities have not been passed to get more water back out of it – that’s a test the Labor government put in place, that we adhere to that the states agreed to.

He [is] going down a path that’s divided the country and meant that the attention has been taken away from managing people’s cost-of-living crisis, and focused on trying to win a referendum in which he has overreached in conflating a voice with constitutional recognition.

Continue reading...

Online safety bill: changes urged to allow access to social media data

Campaigners say bill in ‘serious peril’ of passing without powers to make platforms more transparent

Online safety experts will struggle to sound the alarm about harmful content if landmark legislation does not allow independent researchers to access data from social media platforms, campaigners have warned.

The government is being urged to adopt amendments to the online safety bill enabling researchers to access platform data in order to monitor harmful material. Access would be overseen by Ofcom, the communications watchdog, and would protect user privacy.

Continue reading...

EU countries accuse TfL debt collectors of breaching data protection laws over London penalty fines

Belgium and Dutch vehicle licensing agency say citizens’ details obtained unlawfully to issue driving fines

Two EU countries have accused Transport for London’s debt collection agency of breaching data protection laws to obtain the names and addresses of citizens in order to issue fines for driving in the capital.

Motorists from across Europe have been hit with penalties, some totalling thousands of pounds, for driving in London’s Ultra Low Emissions Zone (Ulez). Penalty notices are being sent to foreign motorists who enter the capital without pre-registering their vehicle, and the Guardian has revealed hundreds of drivers have been fined despite driving emissions-compliant cars.

Continue reading...

Twenty-four UK doctors in five years censured over medical record breaches

GMC says cases were among 194 incidents of alleged violations of confidentiality between 2017 and 2022

Two-dozen doctors have been disciplined by the UK medical regulator in the last five years after accessing and using information from patients’ treatment records without good reason.

The General Medical Council (GMC) said it had struck off two of the 24 doctors it had sanctioned after finding that they had undertaken “inappropriate use” of medical records.

Continue reading...

Saudi Arabia warns Snapchat users that ‘insulting’ regime is a criminal offense

Users of the social media app have faced legal consequences for posts – some private – that are critical of Saudi authorities

Saudi state media issued an explicit warning that it is a criminal offense to “insult” authorities using social media apps such as Snapchat, the California-based messaging app whose chief executive recently forged a new “cooperation” deal with the kingdom’s culture ministry.

The threat – which was originally televised in April and then deleted – has gained new resonance as more cases emerge in which Snapchat users and influencers in the kingdom have been arrested by authorities and, in some cases, sentenced to decades-long prison sentences.

Continue reading...

Amazon’s Ring doorbell was used to spy on customers, FTC says in privacy case

In the agency’s latest effort to hold big tech accountable, the company agreed to settle the privacy violations for $5.8m

A former employee of Amazon’s Ring doorbell camera unit spied on female customers for months in 2017 with cameras placed in bedrooms and bathrooms, the Federal Trade Commission said in a court filing on Wednesday when it announced a $5.8m settlement with the company over privacy violations.

Amazon also agreed to pay $25m to settle allegations it violated children’s privacy rights when it failed to delete Alexa recordings at the request of parents and kept them longer than necessary, according to a court filing in federal court in Seattle that outlined a separate settlement.

Continue reading...

Facebook owner Meta fined €1.2bn for mishandling user information

Penalty from Ireland’s privacy regulator is a record for breach of EU data protection regulation

Facebook’s owner, Meta, has been fined a record €1.2bn (£1bn) and ordered to suspend the transfer of user data from the EU to the US.

The fine – equivalent to $1.3bn – imposed by Ireland’s Data Protection Commission (DPC), which regulates Meta across the EU, is a record for a breach of the bloc’s General Data Protection Regulation (GDPR).

Continue reading...

Real estate agents push back against Australian privacy law changes designed to protect personal data

Real Estate Institute of Australia president says additional layer of responsibility could force smaller agencies to close down

Real estate agents are pushing back against proposed privacy law changes, saying small businesses should not face more red tape to keep customer and tenant data safe.

The Real Estate Institute of Australia president, Hayden Groves, said that an “additional layer of responsibility is really not necessary” on top of agents’ existing duties, saying that increased regulatory risks could be “the last straw” for smaller agencies which may shut up shop.

Sign up for Guardian Australia’s free morning and afternoon email newsletters for your daily news roundup

Continue reading...

Ministers looking at body-worn facial recognition technology for police

Government’s intentions revealed in document produced for surveillance camera commissioner

Ministers are calling for facial recognition technology to be “embedded” in everyday policing, including potentially linking it to the body-worn cameras officers use as they patrol streets.

Until now, police use of live facial recognition in England and Wales has been limited to special operations such as football matches and public events such as the coronation.

Continue reading...

Warnings over NHS data privacy after ‘stalker’ doctor shares woman’s records

Exclusive: Victim speaks of feeling violated by hospital doctor incident that expert says is evidence of ‘systemic’ flaw in England

The confidentiality of NHS medical records has been thrown into doubt after a “stalker” hospital doctor accessed and shared highly sensitive information about a woman who had started dating her ex-boyfriend, despite not being involved in her care.

The victim was left in “fear, shock and horror” when she learned that the doctor had used her hospital’s medical records system to look at the woman’s GP records and read – and share – intimate details, known only to a few people, about her and her children.

Continue reading...