The UK Online Safety Bill – What You Need to Know!

February 9, 2023

Since 2021, the British government have been debating a new legislation to make the internet a safer environment for everyone. Known as the Online Safety Bill (OSB), the new law vows to update existing statutes to better regulate new apps and websites. The oversight process has been perpetual, as numerous ideas have been added and removed along the way. 

 

So, what’s currently happening? 

Could end-to-end Encryption be banned?

The UK government is still in debate over this one. This is due to the rising concerns about encrypted messaging being used to share illegal or even criminal content, which could lead to the ban on end-to-end encryption. This could mean tech companies such as, Facebook, Google and Apple all being forced to provide increased access to their private messaging services- or even a total ban of this type of encryption. 

Criminal liability for failing to protect children.

The protection of children as they use the internet is of great importance to the Online Safety Bill. One of the latest updates is set to further strengthen already existing protections. Should the bill become law, we could see executive officers of large tech being prosecuted personally for breaching their duty of care to children. If minors are exposed to harmful, age-restricted or illegal content, the CEOs in charge of popular online platforms could face penalties such as fines, or even jail time. 

'Deepfakes' will be outlawed.

The OSB will be introducing a new ban on creating and sharing deepfake images. This means material that has been edited with another person’s face or distinguishing features, will be illegal. 

“Legal but harmful” designation has been removed. 

A lot of controversy has surrounded this part of the bill. The proposal to outlaw content deemed ‘legal but harmful’ faced backlash as the clause never actually specified what constitutes as ‘harmful content’. In fact, the original text was so vague that multiple civil liberties groups warned that the law would be used to curtail free speech online, as service providers would be forced to remove content without the evidence that it caused offence. 


The government have since reviewed this proposal and have concluded that the clause is incompatible with existing law, and potentially unenforceable, resulting in it being dropped. 

Self-harm content may be criminalised. 

Due to the role of social media in several high-profile teen suicides, there are moves to forbid self-harm related content.


Under this proposal, internet firms will be legally obliged to identify and remove post and videos which encourage suicide or self-harm. 

OSB implementation to be accelerated. 

Since the Online Safety Bill has been under development of such a long time, lawmakers are keen to implement it as soon as possible once passed.


Originally companies were to be given 22 months to make the required changes to become compliant.


Despite this, the text of the proposed bill has again changed, resulting in them having only 2 months to bring their operations into line. 

Big Changes Ahead

It is inevitable the OSB will undergo further revisions before it eventually becomes law in the UK- but whatever happens, there are set to big changes for the British internet users. We could see firms take an overly cautious approach, by automatically removing and blocking legal content to avoid potential issues that may arise. It will be fascinating to see how the situation develops, and whether any other countries follow Britain’s lead. 

Want to know more, or want to discuss how the Online Safety Bill may effect your business, please get in touch!

Follow Us

Be the first to know

You might also like

October 14, 2024
DevOps is a popular practice, especially among large organizations. However, while it comes with numerous benefits, it presents numerous risks as well. One notable challenge is the increased velocity of deployment, which often complicates how developers implement and ensure application security throughout the development and deployment process. DevOps is a popular practice, especially among large organizations. However, while it comes with numerous benefits, it presents numerous risks as well. One notable challenge is the increased velocity of deployment, which often complicates how developers implement and ensure application security throughout the development and deployment process. According to a recent survey, almost 80% of CIOs expressed concerns about the difficulty of discerning trusted elements from untrusted ones within DevOps environments. In particular, the pressure to deliver services at a faster pace sometimes prompts DevOps teams to take security shortcuts, resulting in potentially costly repercussions. These include data breaches, application downtime, and compliance violations.  So, how can you strike a balance between the demand for agile DevOps practices and the need to maintain robust security measures?
October 4, 2024
Testing applications for security flaws during production is a vital process of the development lifecycle, and this is where Dynamic Application Security Testing (DAST) comes in. DAST is a security testing approach in application security (AppSec), in which testers assess an application in real-time, while it’s actively running. This process can be conducted even without testers knowing the application’s internal interactions or system-level designs. Applications fuel the engine of the world’s economy, but enterprises can encounter substantial hurdles when striving to retain a competitive advantage in a rapidly changing digital landscape. Businesses must continuously pursue inventive solutions, even as they contend with sophisticated adversaries looking to exploit opportunities to disrupt operations, compromise vital information, and inflict harm. According to recent research, approximately 17% of cyberattacks aim to exploit vulnerable web applications. Yet, 98% of web applications are susceptible to attacks that can lead to malware infection or redirect users to malicious websites. All the while, 72% of these vulnerabilities result from coding errors. Testing applications for security flaws during production is a vital process of the development lifecycle, and this is where Dynamic Application Security Testing (DAST) comes in. DAST is a security testing approach in application security (AppSec), in which testers assess an application in real-time, while it’s actively running. This process can be conducted even without testers knowing the application’s internal interactions or system-level designs.  This is because DAST tools operate without access to the application’s source code. Instead, they emulate genuine attacks, akin to those carried out by real hackers, to identify security weaknesses. This “black box” testing method examines the application from an external perspective, scrutinises its runtime behaviour, and observes how it reacts to simulated attacks. These simulations help evaluate whether the application exhibits vulnerabilities and if it is potentially susceptible to malicious attacks.
September 25, 2024
In this blog post we look back at the origin of the term “hacking”, as well as how activities that might be described as hacking have existed throughout history, even prior to the advent of computer systems – and what if anything these can teach us today. Hacking is attacking and breaking into computer systems illegally… isn’t it? The meaning of the term “hacking” has in fact changed substantially over time, morphing from describing essentially benign (or at worst mildly disruptive) activities into its modern attribution to largely criminal and illegal activities. What’s more, in its original usage, “hacking” doesn’t necessarily even need to involve computer systems at all.  In this blog post we look back at the origin of the term “hacking”, as well as how activities that might be described as hacking have existed throughout history, even prior to the advent of computer systems – and what if anything these can teach us today.
More Posts
Share by: