PCPD stresses data security duty of both public & private bodies

News

publish: 2026-08-15 17:32

By: 無綫新聞

  • Facebook分享

Following a recent slew of data hacking incidents at both public and private institutions, the Office of the Privacy Commissioner for Personal Data underscores the responsibility of these bodies to monitor and prevent data leaks even when they contracted out some data protection work to third parties.

From Baptist University to Yau Yat Chuen Garden City Club, data breach and ransomware incidents have compromised more than 10,000 users' personal information or credentials.

Privacy Commissioner Ada Chung says some organisations involved in data leaks have overlooked the potential risks and mistakenly believe that hiring contractors to handle IT security is enough.

Privacy Commissioner ADA CHUNG: "However, the responsibility still lies with the data user. That means the company or the organisation itself still has a primary responsibility to safeguard the personal data in their possession."

The privacy watchdog has launched services to help organisations check websites for excessive personal data storage and system loopholes.

Applications are open to all schools, SMEs and non-profit bodies.

Meanwhile, the privacy watchdog has received nearly 3,000 complaints in the first half of the year, marking a jump of 62% year-on-year, with close to 30% of them IT-system-related.

Chung says the hike is likely because of a rise in public awareness.

Meanwhile, doxxing has been criminalised for five years.

As relevant complaints have plunged by 60%, the privacy commissioner believes the doxxing situation has been kept in check.

More News

Trending News