Best privacy Apps
August 9, 2013
Background Checks has listed the best apps to protect one’s mobile device. The post is found Read the rest of this entry »
August 9, 2013
Background Checks has listed the best apps to protect one’s mobile device. The post is found Read the rest of this entry »
August 8, 2013
Last week, on 1 August, the Office of the Information Commissioner commenced the consulation process of Guidelines for recognising external dispute resolution schemes under section 35A of the Privacy Act 1988. The Privacy Commissioner’s post on line is found here. The consultation process closes on 30 August 2013.
The draft guidelines relevantly provides as follows:
1.1 The Office of the Australian Information Commissioner (OAIC) developed these guidelines to assist external dispute resolution (EDR) schemes to understand:
- the Information Commissioner’s process for recognising EDR schemes
- how the Information Commissioner will Read the rest of this entry »
August 6, 2013
Today 3 journalists, Royce Millar, Nick McKenzie and Ben Schneiders, have penned a letter of apology on page 2 of the Age. It is found here. The Herald Sun reported (no doubt very reluctantly) on the three having their cases diverted and therefore they are released without conviction and a good behaviour bond of 12 months.
The apology provides:
In November 2010, while researching a story for The Age newspaper, we the undersigned journalists accessed the ALP’s Electrac database without authorisation.
The focus of the story, published on 23 November 2010, was upon databases maintained by political parties, which contain private information concerning voters, and how that information is used for election campaigning. The Electrac database is such a database. Other political parties have similar databases.
We were able to access Electrac through the use of passwords provided to one of the undersigned. We accept that we did not have authorisation Read the rest of this entry »
August 2, 2013
The Federal Trade Commission in Federal Trade Commission, Plaintiff v. Asset & Capital Management Group & ors obtained a restraining order against defendants using illegal practices against consumers, including interfering with their privacy. The orders are found here.
The Federal Trade Commission’s press release, At FTC’s Request, Court Orders Halt to Debt Collector’s Illegal Practices, Freezes Assets, relevantly provides:
At the request of the Federal Trade Commission, a U.S. district court has halted a debt collection operation that allegedly extorted payments from consumers by using false threats of lawsuits and calculated campaigns to embarrass consumers by unlawfully communicating with family members, friends, and coworkers. The court order stops the illegal conduct, freezes the operation’s assets, and appoints a temporary receiver to take over the defendants’ business while the FTC moves forward with the case.
The lawsuit Read the rest of this entry »
June 30, 2013
Last week was the scheduled final sitting week of this Parliament. It is due to be prorogued in either August or September.
As such any bills not passed by both Houses of Parliament will lapse. That seems to be the fate of the Privacy Amendment (Privacy Alerts) Bill 3023. The political drama took effect upon the legislative schedule.
It will be for the next Parliament to introduce this Bill or a facsimile of it. If it is so minded to do. A new Parliament is a legislative Tabula Rasa.
June 29, 2013
Data storage the cloud in is ubiquitous. Proper protection of that data is less so.
According to research (see report here)conducted by the Ponemon Institute,based on a survey of 4,205 business and IT managers in the US, UK, Germany, France, Australia, Japan and Brazil, 53% of businesses transfer sensitive or confidential data to the cloud.
June 26, 2013
The Victorian Court of Appeal in Lysaght Building Solutions Pty Ltd v Blanalko Pty Ltd [2013] VSCA 158 considered the test for summary judgment under section 63 of the Civil Procedure Act 2010.
At [35] the Majority (Warren CJ and Nettle JA) stated the test as:
a) the test for summary judgment under s 63 of the Civil Procedure Act 2010 is Read the rest of this entry »
June 25, 2013
The Senate Standing Committees on Legal and Constitutional Affairs has reported on the Privacy Amendment (Privacy Alerts) Bill 2013. The Committee endorsed the Bill.
The report relevantly provides (absent footnotes, introduction and appendices)
RECOMMENDATION
Recommendation 1
2.30 The committee recommends that the Senate pass the Bill.
CHAPTER 1
INTRODUCTION
1.1 On 29 May 2013, the Privacy Amendment (Privacy Alerts) Bill 2013 (Bill) was introduced into the House of Representatives by the Attorney-General, the Hon. Mark Dreyfus QC MP.1 On 17 June 2013, the Bill was introduced into the Senate and was referred on 18 June 2013 to the Legal and Constitutional Affairs Legislation Committee (committee) for inquiry and report by 24 June 2013.
Background to the Bill
1.2 In his second reading speech, the Attorney-General Read the rest of this entry »
June 23, 2013
The Parliamentary Library has prepared a Bills Digest on the Privacy Amendment (Privacy Alerts) Bill 2013. It is found here.
As usual it is an excellent resource. It provides:
Structure of the Bill
The Bill contains one Schedule of amendments to the Privacy Act. The main amendment in Schedule 1 is item 4 which inserts a new Part IIIC, titled ‘Data breach notification’, into the Privacy Act following existing Part IIIB. This new Part contains the substantive elements of the mandatory data breach notification provisions, which apply to entities that are regulated by the Privacy Act.
The new Part IIIC is divided into three Divisions. Broadly, the first Division sets out when a ‘serious data breach’ will have occurred, the second Division contains obligations for entities to notify of that serious data breach, subject to certain exceptions. The third Division concerns general matters including relevant definitions specific to Part IIIC and application provisions.
Background
Data breach notifications
As the Explanatory Memorandum notes, mandatory data breach notification commonly refers to:
… a legal requirement to provide notice to affected persons and the relevant regulator when certain types of personal information are accessed, obtained, used, disclosed, copied, or modified by unauthorised persons. Such unauthorised access may occur following a malicious breach of the secure storage and handling of that information (e.g. a hacker attack), an accidental loss (most commonly of IT equipment or hard copy documents), a negligent or improper disclosure of information, or otherwise.
Data breach notification is Read the rest of this entry »
June 22, 2013
The Committee has received 20 submissions to the Bill. That is impressive given there was effectively 2 days from referral to cut off period to lodge submissions.
The submissions are:
Opposed. It says, in part:
.. the Fundraising Institute Australia believes that insufficient consideration has been given to the effect which mandatory data breach notification would have on charities and not-for-profit organisations. Government decision makers seem unaware that fundraisers use extensive donor databases in the same way as business organisations do.
………
The additional burden and cost of Read the rest of this entry »