RBI Master Direction on IT governance takes effect
The Reserve Bank of India’s Master Direction on IT governance, risk, controls and assurance practices is now in effect.
Insights for Asia, including India, and for Australia, New Zealand, and the Pacific.
The Reserve Bank of India’s Master Direction on IT governance, risk, controls and assurance practices is now in effect.
Japan now requires medical device manufacturers to follow JIS T 81001-5-1 for secure software development.
Hong Kong police reveal that a finance worker paid out HK$200m after a video call in which every other participant was a deepfake.
Sweeping amendments to South Korea’s Personal Information Protection Act take effect, unifying rules and strengthening sanctions.
India’s first comprehensive data protection law receives Presidential assent, setting consent and security duties with extraterritorial reach.
ASEAN and the European Commission publish a Joint Guide comparing ASEAN Model Contractual Clauses and EU Standard Contractual Clauses.
Microsoft and Five Eyes agencies warned that a Chinese state-sponsored group, Volt Typhoon, was hiding in US critical infrastructure networks.
Australian telecoms firm Optus disclosed a cyber attack exposing personal data of up to 9.8 million current and former customers.
Thailand’s Personal Data Protection Act 2019 comes fully into force after repeated postponements.
India’s CERT-In issues directions requiring cyber incidents to be reported within six hours and logs to be kept for 180 days.
Japan’s amended APPI introduces mandatory breach reporting and tighter rules on cross-border transfers.
Attackers stole around $620m in cryptocurrency from the Ronin bridge behind Axie Infinity; the FBI later linked the theft to North Korea’s Lazarus Group.