The British Online Harms Bill Takes Shape

The British Government have announced that there will be new rules about how online technolgy firms will be held accountable towards certain types of online content. Social media platforms and other firms will now have a duty of care to protect children from online harms and look to remove any illegal content that may be shared from users including 'child sexual abuse material', 'terrorist content' and 'suicide material'.

Measures to criminalise cyber-flashing and give a right to appeal against the removal of social media posts are among changes the UK Government has proposed to its Online Harms Bill.
The bill, which also seeks to tackle access to harmful material online, has been introduced to parliament.

It would give regulator Ofcom the power to fine firms or block access to sites that fail to comply with the new rules.

Harmful online content and activity includes cyberbullying, racism, misogynistic abuse, pornography, and material promoting violence and self-harm. The Covid-19 pandemic has seen social media platforms used to spread anti-vaccine disinformation. Critics, including parliamentary committees, academics, and children’s charities, have argued that self-regulation by Internet companies is not enough to keep users safe and that statutory regulation should be introduced.

The Bill Addresses A Wide Range Of Topics Relating To Harmful Online Content

Big social media companies will be required to assess risks of the types of legal harms against adults which could arise on their services, and will have to set out how they will deal with them, and enforce these terms consistently. Definitions of these legal harms will be set out in additional legislation, but potential examples could include material promoting self-harm, eating disorders or harassment. 

Some of the additional aspects of the bill announced as it was introduced to Parliament include:

  • Criminalising the sending of unsolicited sexual images to people using social media, known as cyber-flashing.
  • Giving people the right to appeal if they feel their social media posts were removed unfairly.
  • Preventing online scams, such as paid-for fraudulent adverts, investment fraud and romance scammers.
  • Requiring pornography websites to verify their users' ages

Culture Secretary Nadine Dorries said the bill meant technology companies would not be left to "check their own homework.. Tech firms haven't been held to account when harm, abuse and criminal behaviour have run riot on their platform" she said.

The bill will give new powers to Ofcom, which will be able to request information from companies, and executives who do not comply could face up to two years in prison within two months of the bill becoming law. Senior managers would also be criminally liable if they destroyed evidence, did not attend an Ofcom interview, provided false information, or otherwise obstructed the regulator from entering offices. 

Any firm breaching the rules would face a fine of up to 10% of its turnover, while non-compliant websites could be blocked entirely.

Children's charity Barnardo's welcomed the announcement sites showing pornographic material would have to check the ages of users. A City of London Police Authority Board spokesperson said included paid-for advertising in the legislation was "a major step forward in the fight to reduce online crime, and helps cement the benefits of including fraud as a priority harm".

The opposition Labour Party says delays to the bill mean disinformation in the UK has increased and shadow culture secretary Lucy Powell commented that bill's delays had "allowed the Russian regime's disinformation to spread like wildfire online... Other groups have watched and learned their tactics, with Covid conspiracy theories undermining public health and climate deniers putting our future at risk."

The legislation has taken some time to reach the stage where a bill is now to be laid before Parliament. An Online Harms White Paper was published in April 2019 by the Conservative government, then led by Theresa May. At the time, privacy organisations such as the Open Rights Group warned that the bill could threaten freedom of expression.

Jim Killock, Open Rights Group executive director told the BBC "The fact that the bill keeps changing its content after four years of debate should tell everyone that it is a mess, and likely to be a bitter disappointment in practice."

Gov.UK:     British Parliament:     BBC:       SWGfl:      

You Might Also Read: 

Protecting Children In The Digital Age:

 

« Anonymous Hackers Aim To Undermine Russia
The Pentagon Gets $250m Extra To Spend On AI »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

TÜV SÜD Academy UK

TÜV SÜD Academy UK

TÜV SÜD offers expert-led cybersecurity training to help organisations safeguard their operations and data.

GSMA - IoT Security Guidelines

GSMA - IoT Security Guidelines

GSMA has created a set of security guidelines for the benefit of service providers who are looking to develop new IoT products and services.

Cyber Security National Lab (CINI)

Cyber Security National Lab (CINI)

The Cyber Security National Lab brings together Italian academic excellence in Cyber Security research.

Mitchell Sandham

Mitchell Sandham

Mitchell Sandham is an, independent insurance and financial services brokerage. Business products include Cyber/Privacy Liability insurance.

Cyberbit

Cyberbit

Cyberbit empowers cybersecurity teams to be fully prepared with a product portfolio ready to detect and respond effectively across both IT and OT networks.

Black Kite

Black Kite

Black Kite (formerly NormShield) provides comprehensive Security-as-a-Service solutions focused on cyber threat intelligence, vulnerability management and continuous perimeter monitoring.

Inky Technology Corp

Inky Technology Corp

Inky® Phish Fence is an email protection gateway that uses sophisticated AI, machine learning and computer vision algorithms to block deep sea phishing attacks that get through every other system.

Cybercrime Support Network (CSN)

Cybercrime Support Network (CSN)

CSN is a public-private, nonprofit collaboration created to meet the challenges facing millions of individuals and businesses affected each and every day by cybercrime.

ISMS.online

ISMS.online

ISMS.online is a cloud software solution for fast & cost-effective implementation of an information security management system and achieve compliance with ISO 27001 and other standards.

CloudVector

CloudVector

CloudVector's API Detection & Response platform is the only API Threat Protection solution that goes beyond the gateway to provide Shadow API Prevention and Deep API Risk Monitoring and Remediation.

Quantum Xchange

Quantum Xchange

As the provider of unbreakable quantum-safe encryption, Quantum Xchange gives commercial enterprises and government agencies the ultimate defense to keep high-value data safe.

NightDragon

NightDragon

NightDragon is a venture capital firm investing in innovative growth and late stage companies within the cybersecurity, safety, security, and privacy industry.

Drata

Drata

Drata is a security and compliance automation platform that continuously monitors and collects evidence of a company's security controls, while streamlining workflows to ensure audit-readiness.

MoogleLabs

MoogleLabs

MoogleLabs leverage AI/ML, Blockchain, DevOps, and Data Science to come up with the best solutions for diverse businesses.

SplxAI

SplxAI

Our mission at SplxAI is to secure and safeguard GenAI-powered conversational apps by providing advanced security and pentesting solutions, so neither your organization nor your user base get harmed.

Nordic Defender

Nordic Defender

Nordic Defender is the first crowd-powered modern cybersecurity solution provider in the Nordic region.

Grey Market Labs

Grey Market Labs

Grey Market Labs is a special place. It is a data privacy and security skunkworks.