Latest Publications

Share:

India’s Digital Personal Data Protection Act 2023 Brought Into Force

On 13 November 2025, India's Ministry of Electronics and Information Technology (MeitY) notified the Digital Personal Data Protection Rules 2025 (the Rules), following a 10-month wait since the draft Rules were released on 3...more

Singapore Introduces Landmark Health Information Bill

On 5 November the Singapore Ministry of Health introduced the Health Information Bill (the “Bill”) in Parliament, marking a major step towards achieving a centralised digital health ecosystem in Singapore. If enacted, the...more

Navigating Privacy Laws Across the Asia-Pacific Region: Introducing Our Asia-Pacific Privacy Legislation Tracker

As data protection laws across the Asia-Pacific region continue to evolve, businesses operating in the region face increasing complexity in managing compliance and risk. To support our clients in navigating this dynamic...more

Provisions in Singapore’s Cybersecurity (Amendment) Act came into force on 31 October 2025

The Cybersecurity Act 2018 (the 2018 Act) established Singapore's statutory framework for the oversight and maintenance of national cybersecurity. Its key objectives were to protect critical information infrastructure (CII),...more

Landmark civil penalty of AU$5.8 million issued under Australia’s privacy act

On 9 October 2025 the Federal Court of Australia (the Court) imposed an AU$5.8 million civil penalty on Australian Clinical Labs Limited, one of Australia's largest private hospital pathology service providers (the Company),...more

Singapore releases draft quantum and agentic AI governance frameworks

During International Cyber Week 2025, Minister for Digital Development and Information Josephine Teo, unveiled a suite of draft frameworks developed by the Cyber Security Agency of Singapore (CSA), the Government Technology...more

Australia’s New Guidance for AI Adoption: A strategic step toward responsible innovation

On 17 October 2025, the National AI Centre (NAIC) unveiled the Guidance for AI Adoption (the “Guidance”), a new national framework designed to guide the responsible adoption of artificial intelligence (AI). This comprehensive...more

Singapore introduces online safety bill to provide civil redress for victims of online harms

On 15 October 2025, the Online Safety (Relief and Accountability) Bill was tabled in Parliament by the Ministry of Digital Development and Information (MDDI) and the Ministry of Law (MinLaw) in Singapore. The Bill proposes to...more

Philippines orders halt to biometric data collection by Global Identity Platform

The platform under investigation develops proof-of-human tools designed to secure digital environments in response to the growing risks posed by artificial intelligence. The NPC launched its inquiry following reports that...more

Singapore issues deadline to social media platform over impersonation scams

On 24 September 2025, Singapore’s Police Force (SPF) issued a formal Implementation Directive (Directive) to a major social media platform (Platform), requiring urgent remedial action in response to a sharp rise in...more

Asia-Pacific Privacy Legislation Tracker

As data protection laws across the Asia-Pacific region continue to evolve, businesses operating in the region face increasing complexity in managing compliance and risk. To support our clients in navigating this dynamic...more

Singapore High Court clarifies scope of deemed consent and actionable loss under the PDPA

In a landmark decision, the Singapore High Court in Piper v. Singapore Kindness Movement [2025] SGHC 173 has clarified the limits of deemed consent under the Personal Data Protection Act 2012 (the "PDPA") and the requirements...more

Thailand releases draft guidelines on government cloud adoption and data classification

Thailand's Digital Government Development Agency (“DGA”) has published two sets of draft public sector-targeted guidelines intended to steer government agencies towards implementing cloud technologies and data classification...more

Vietnam enacts landmark law on personal data protection: stable standing with stricter compliance

Vietnam's data privacy landscape is undergoing a significant transformation with the recent enactment of the Law on Personal Data Protection (PDP Law), effective from 1 January 2026. This new law marks a pivotal step in...more

Thailand ramps up data protection enforcement

Thailand's Personal Data Protection Committee (“PDPC”) has significantly intensified its enforcement of Thailand's Personal Data Protection Act B.E. 2562 (2019) (“PDPA”), announcing on 1 August 2025 eight new administrative...more

Asia-Pacific privacy authorities publish data anonymisation guide

On 1 August 2025, the Privacy Commissioner for Personal Data, Hong Kong (“PCPD”), and the Personal Data Protection Bureau, Macao (“PDPB”), in collaboration with seven other privacy and data protection authorities across...more

Indonesia lowers threshold for mandatory Data Protection Officer appointment

On 30 July 2025, the Indonesian Constitutional Court (“Court”) issued a landmark ruling, Decision No. 151/PUU-XXII/2024 (“Decision 151”), which significantly broadens the scope of mandatory Data Protection Officer (“DPO”)...more

Myanmar’s Cybersecurity Law Comes into Effect: Key implications for international stakeholders

Following its enactment earlier this year, Myanmar's Cybersecurity Law No. 1/2025 (the “Cybersecurity Law”) came into effect on 30 July 2025. It introduces a comprehensive framework regulating both domestic and international...more

Singapore censures use of national identification numbers for authentication

On 26 June 2025, Singapore’s Personal Data Protection Commission (PDPC) and Cyber Security Agency (CSA) released a joint statement advising organizations to stop “as soon as possible” the practice of using Singapore national...more

Cambodia moves to enact comprehensive data privacy law

On July 23, 2025, Cambodia released a draft of its first ever comprehensive personal data protection law, the Law on Personal Data Protection (“LPDP”). Once passed, Cambodia will join the ranks of seven other countries...more

Australia mandates first-of-its-kind reporting of ransomware payments

Australia has implemented a first-of-its kind requirement for eligible businesses to report ransomware payments. From 30 May 2025, eligible businesses that make a payment in response to a cyber security incident, or become...more

India publishes consent management rules under Digital Personal Data Protection Act

India’s Ministry of Electronics and Information Technology (MeitY) released in June 2025 a Business Requirement Document for Consent Management Under the DPDP Act, 2023 (BRD). The BRD, while not legally binding, provides...more

Malaysia enacts data sharing rules for public sector

With the introduction of the Data Sharing Act 2025 (the “Act”), Malaysia has formalised the rules governing the sharing of data between its public sector agencies. Designed to foster greater collaboration and efficiency, the...more

Australia’s Model Clauses provide framework for AI procurement

On 17 March 2025, the Australian Government published Model Clauses to help government purchasers manage vendor relationships when procuring AI technology based systems and services. The Model Clauses cover issues relevant to...more

The Global Cross Border Privacy Rules – A new paradigm in data protection

The launch of the Global Cross Border Privacy Rules (CBPR) and Privacy Rules for Processors (PRP) systems on June 2, 2025 offers a framework to manage increasingly difficult standards for global data privacy governance....more

32 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide