February 4, 2014
The Guardian in Microsoft, Facebook, Google and Yahoo release US surveillance requests reports on a slight but important increase in transparency about data given to US Surveillance agencies pursuant to secret court orders. A small start in getting more transparency which is Read the rest of this entry »
Posted in Privacy, Privacy Articles
|
Post a comment »
The Age has again run a story on the impending changes to the Privacy Act with Privacy deadline nears: are you ready? Twelve March 2014 is looming closer and closer and in my observation the level of preparadness is quite patchy. Given the scope and depth of what will now be required, particualrly for those involved in providing credit (a broad term as defined in section 6G of the Privacy Act), this is a worry. If the Privacy Commissioner adopts an assertive approach to regulation there could be some reputational damage and financial outlays on the part of chastened organisations. The key will be the approach taken by the Privacy Commissioner.
The article provides:
Australian companies have just weeks to get their data collection, storage, management and disposal practices in order before several changes to the privacy regime come into effect.
On March 12, the Information Privacy Principles and National Privacy Principles, which apply to federal government agencies and businesses respectively, will be replaced by 13 Australian Privacy Principles (APPs).
The APPs require organisations to be Read the rest of this entry »
Posted in Privacy
|
Post a comment »
February 3, 2014
Mobile Apps are all too often the weak link in privacy protections. This has well been well recognised by regulators. It was the subject of a communique, known as the Warsaw declaration on the “appification” of society. In Track Star Slate reports on iBeacon being used with third party apps to track users. The beauty of the article is, using a popular app Shopkick, it demonstrates how intrusive the data collection process is and how misleading and, effectively useless, the privacy policies are. The problems identified in the article regarding privacy policies would probably not be compliant with the Australian Privacy Principles. In Australia the issue would be that most app developers, especially the start ups, aren’t covered. They don’t gross more than $3 million per year. That is a huge problem because Read the rest of this entry »
Posted in General, Privacy
|
Post a comment »
February 2, 2014
Reports of data breaches are coming thick and fast. Many instances highlights the need for data security to deal with hackers. And there are data breaches caused by humans. Which is what happened in South Korea In Card Sharps the Economist reports on how an IT contractor allegedly stole personal information of around 20 million individuals held in 104 million accounts. All with the use of a USB Stick. The soon to be enforceable Australian Privacy Principles make it clear that there needs to be proper data security, both technical but also training, programs and processes involving staff. Errors or theft by staff, either permanent or contractors, are a major source of problems in maintaining data security. Organisations after implementing processes fail Read the rest of this entry »
Posted in Privacy, Privacy Articles
|
Post a comment »
January 28, 2014
Today is Data Privacy Day. Perhaps a bit paradoxical as it comes just after a spate of spectactular data breaches in the US. The Privacy Commissioner has issued a press release titled Australians’ right to privacy strengthened with new privacy laws (found here) which provides:
Today is Data Privacy Day and a timely opportunity to remind Australians that new privacy laws start on 12 March 2014. The new laws will apply to Australian Government agencies, private sector businesses and not-for profit organisations covered by the Privacy Act 1988.
‘With the introduction of new privacy laws, people’s privacy rights will be enhanced and strengthened in areas such as direct marketing, the disclosure of personal information overseas and requesting access to and correction of personal information held by an organisation,’ Australian Privacy Commissioner Timothy Pilgrim said.
From 12 March 2014 new privacy laws mean that Australians can more easily:
Posted in Commonwealth Privacy Commissioner, Privacy
|
Post a comment »
Zdnet reports in FBI issues security warning to US retailers that the US Federal Bureau of Investigations is warning retailers to be aware of malware infecting point of sale systems. This leads to significant data breaches.
The article provides:
The US Federal Bureau of Investigation (FBI) is warning US retailers Read the rest of this entry »
Posted in Privacy, Privacy Articles
|
Post a comment »
January 27, 2014
The Federal Government’s mooted proposal to have some form of watchdog with the power to issue notices or otherwise require a social media site to take down content that was targeted at and likely to cause harm to children as attracted the concern of Tim Wilson. In Zdnet’s article Australian government plans rapid content removal for social media Tim Wilson reportedly said there were serious risks Read the rest of this entry »
Posted in General, Privacy
|
Post a comment »
January 26, 2014
The Guardian reports in Michaels says it is investigating possible data breach affecting customer cards that Michaels, the biggest arts and crafts retailer, has been subject to a data security attack.
It provides:
Michaels, the biggest US arts and crafts retailer, said on Saturday it was working with federal law enforcement officials to investigate a possible data breach on its systems that process payment cards.
“We are Read the rest of this entry »
Posted in Privacy
|
Post a comment »
The Information Commissioner’s Office has issued a press release about six private investigators who were prosecuted and fined for obtaining personal information from organisations without authority. The charges were conspiring to breach the Data Protection Act.
The press release (found here) relevantly provides:
Six men who were part of a company that tricked organisations into revealing personal details about customers has today been sentenced for conspiring to breach the Data Protection Act.
Adrian Stanton, 40, ran ICU Investigations Limited in Read the rest of this entry »
Posted in Privacy
|
Post a comment »
January 24, 2014
Zdnet reports in Parents want transparency from schools concerning use of student data about a survey where it is clear that parents want reform to the use of their children’s data by schools.
It provides:
Posted in General
|
Post a comment »