British Online Safety Act Is Now Law

The UK government's controversial Online Safety Bill, which aims to make the Internet safer for children, became law at the beginning of November. The new Law aims to force technology firms to take more responsibility for the content on their platforms.

It will be overseen by Ofcom and take a zero-tolerance approach to protecting children from online harm, while empowering adults with more choices over what they see online

The law imposes a statutory obligation on certain Online Service Providers (OSPs) to comply with protective measures and requirements in respect of users.

As such, OSPs will be expected to assess and mitigate the risks of harmful illegal content. This follows rigorous scrutiny discussion within the UK House of Commons and the House of Lords. “Today will go down as an historic moment that ensures the online safety of British society not only now, but for decades to come,” said Michelle Donelan, the technology secretary as it "ensures the online safety of British society not only now, but for decades to come."

While the principal aim of the legislation is to protect children, there have been widespread concerns about the implications for privacy.

What is the Online Safety Bill?

The Law unambiguously places the responsibility to protect children from some legal but harmful material on the firms operating online platforms, with the UK regulator, Ofcom, given enforcement powers including powers to levy significant penalties. It introduces new rules - including a requirement for porn websites sites to protect stop children from explicit content using age verification. Platforms will also need to show they are committed to removing illegal content including:

  • Child sexual abuse
  • Controlling or coercive behaviour
  • Extreme sexual violence
  • Illegal immigration and people smuggling
  • Promoting or facilitating suicide
  • Promoting self-harm
  • Animal cruelty
  • Selling illegal drugs or weapons
  • Terrorism

Various entirely new offences have been created, including cyber-flashing - sending unsolicited sexual imagery online, sharing deepfake pornography. and measures enabling bereaved parents to obtain information about their children from online platforms. Under the act Ofcom has powers to compel messaging services to examine the contents of encrypted messages for child abuse material have proved especially controversial.

Failing to comply with the act’s rules could land companies with fines of up to £18 million or around $22 million, or 10 percent of their global annual turnover, whichever is higher, and their bosses could even face prison.

“The Online Safety Act’s strongest protections are for children. Social media companies will be held to account for the appalling scale of child sexual abuse occurring on their platforms and our children will be safer,” said Home Secretary Suella Braverman. “We are determined to combat the evil of child sexual exploitation wherever it is found, and this Act is a big step forward.”

In response, social media platforms including WhatsApp, Signal and iMessage say they cannot access or view anybody's messages without destroying existing privacy protections for all users and have threatened to leave the UK rather than compromise message security. WhatsApp has threatened to withdraw it service from the UK market. 

Gov.UK:      PWC:      BBC:    Independent:    The Verge:     UKTech:       Image: finelightarts

You Might Also Read: 

Online Safety Bill UK: WhatsApp, Encryption & The Implications For Privacy:

___________________________________________________________________________________________

If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« Attack On Chinese Bank Disrupts Financial Trading
API Security Is A Critical Boardroom Issue »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

Perimeter 81 / How to Select the Right ZTNA Solution

Perimeter 81 / How to Select the Right ZTNA Solution

Gartner insights into How to Select the Right ZTNA offering. Download this FREE report for a limited time only.

Applicure Technologies

Applicure Technologies

Applicure Technologies develops the leading multi-platform web application security software products to protect web sites and web applications from external and internal attacks.

Neowave

Neowave

Neowave designs, manufactures and markets strong authentication solutions based on smart card components and digital certificates.

TechCERT

TechCERT

TechCERT is Sri Lanka’s first and largest Computer Emergency Readiness Team (CERT).

Ravelin Technology

Ravelin Technology

Ravelin prevents chargebacks, fraud, and account takeover. Machine learning and human insight combine for highly accurate fraud detection and prevention.

Gula Tech Adventures

Gula Tech Adventures

Gula Tech Adventures invests in companies and nonprofits that help close the gap in needed technology and workforce to defend the country in cyberspace.

Hex-Rays

Hex-Rays

Founded in 2005, privately held, Belgium based, Hex-Rays SA focuses on the development of fast, stable, and robust binary analysis tools for the IT security market.

TWC IT Solutions

TWC IT Solutions

Since 2011, TWC IT Solutions has offered managed IT Support, Cybersecurity, Disaster Recovery, Contact Centre and Business Connectivity services to clients across 24 countries globally.

SOC Prime

SOC Prime

SOC Prime is the only Threat Detection Marketplace where researchers monetize their content to help security teams defend against attacks easier, faster and more efficiently than ever.

senhasegura

senhasegura

senhasegura is a global Privileged Access Management vendor. Our mission is to eliminate privilege abuse in organizations around the globe and build digital sovereignty.

Ekco

Ekco

Ekco is one of Europe’s leading managed cloud providers. With a network of infrastructure and security specialists across Europe, we’ve perfected our approach to supporting digital transformation.

Center for Information Security Awareness (CFISA)

Center for Information Security Awareness (CFISA)

CFISA was formed by a group of academics, security and fraud experts to explore ways to increase security awareness among audiences, including consumers, employees, businesses and law enforcement.

Cisco Systems

Cisco Systems

Cisco helps seize the opportunities of tomorrow by proving that amazing things can happen when you connect the unconnected.

Paragon Cyber Solutions

Paragon Cyber Solutions

Paragon Cyber Solutions provides specialized security risk management and IT solutions to protect the integrity of your business operations.

Radius Technologies

Radius Technologies

Radius Technologies is trusted by progressive SMEs to deliver world-class cloud, IT solutions, IT and data security, and telecoms systems.

Cyber Explorers

Cyber Explorers

Cyber Explorers is a fun, free and interactive learning platform for future digital superstars. An exciting addition to UK curriculum delivery or after school activities.

CIP Cyber

CIP Cyber

CIP Cyber is an online learning community with a mission of connecting, training, and certifying cybersecurity professionals to protect critical infrastructure.