Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Compliance

Web Giants to Submit User Data as EU Law Comes Into Effect

A new EU law imposing stricter online regulation comes into effect Wednesday and the biggest platforms like Facebook and Google will have until February 17 to reveal their user numbers.

A new EU law imposing stricter online regulation comes into effect Wednesday and the biggest platforms like Facebook and Google will have until February 17 to reveal their user numbers.

The Digital Services Act (DSA) rules will be fully applied 12 months later from February 17, 2024, but officials will need time next year to decide which tech giants are big enough to need close observation.

The DSA was designed to combat online hate speech, disinformation and piracy, in Europe at a time when much of the internet content seen by EU citizens is controlled by US-based companies.

Under the new law, all social media platforms, online market places and search engines will be obliged to react more quickly to remove content deemed in breach of EU regulations.

This will include measures to limit the use of sensitive private data in targeting ads at European users and will insist on more transparency for the algorithms that suggest content.

But the new rules will come into effect earlier for what Brussels calls Very Large Online Platforms (VLOPs) and Very Large Online Search Engines (VLOSEs) — those with more than 45 million active users in the EU.

At current user numbers, this definition would hit around 20 firms, including Meta and its social networks Facebook and Instagram; Google and its video platform YouTube; and iPhone-maker Apple’s platforms.

The micro-blogging platform Twitter, recently bought by entrepreneur Elon Musk, will almost certainly also be included, along with China’s video-sharing platform TikTok, German retailer Zalando and Dutch hotel site Booking.

Advertisement. Scroll to continue reading.

Any site that could be big enough to make the cut must publish its European user numbers by February 17, 2023 and the DSA regulations will come into force once the European Commission has confirmed their size.

This implies that, for the giants, the DSA’s rules — stricter for bigger platforms — could come in in late 2023 rather than in February 2024, when they will apply to all.

The VLOPs could be fined sums equal to up to six percent of their global revenue or even be banned from the huge EU market in the case of serious, sustained breaches of the rules.

The DSA complements another new EU law, the Digital Markets Act or DMA, which prohibits anti-competitive behaviour by the so-called “gatekeepers” of the internet and went into force in November.

Related: EU Court Rules Against German Data Collection Law

Related: EU Wants to Toughen Cybersecurity Rules for Smart Devices

Related: Apple Warns EU Law ‘Risks Destroying iPhone Security’

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Mike Dube has joined cloud security company Aqua Security as CRO.

Cody Barrow has been appointed as CEO of threat intelligence company EclecticIQ.

Shay Mowlem has been named CMO of runtime and application security company Contrast Security.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Data Protection

The cryptopocalypse is the point at which quantum computing becomes powerful enough to use Shor’s algorithm to crack PKI encryption.

CISO Strategy

SecurityWeek spoke with more than 300 cybersecurity experts to see what is bubbling beneath the surface, and examine how those evolving threats will present...

CISO Conversations

Joanna Burkey, CISO at HP, and Kevin Cross, CISO at Dell, discuss how the role of a CISO is different for a multinational corporation...

Artificial Intelligence

The CRYSTALS-Kyber public-key encryption and key encapsulation mechanism recommended by NIST for post-quantum cryptography has been broken using AI combined with side channel attacks.

CISO Conversations

In this issue of CISO Conversations we talk to two CISOs about solving the CISO/CIO conflict by combining the roles under one person.

CISO Strategy

Security professionals understand the need for resilience in their company’s security posture, but often fail to build their own psychological resilience to stress.