Friday , May 9 2025

Data Protection Act is coming soon: Zunaid Ahmed Palak

ICT State Minister Junaid Ahmed Palak said that the Data Protection Act is coming soon. He said this at the opening ceremony of an award ceremony organized at the Bangladesh Computer Council Auditorium in Agargaon on Sunday (July 9) morning.

Palak highlighted that our next challenge lies in ensuring information security. According to Palak, in order to achieve this, we have classified information into various categories such as personal information, organizational information, classified information, exclusive information, and open information.

Microsoft Patches Four Critical Azure and Power Apps Vulns

Microsoft has fixed critical vulnerabilities in its core cloud services, including Azure Automation, Azure Storage, Azure DevOps, and Microsoft Power...
Read More
Microsoft Patches Four Critical Azure and Power Apps Vulns

Qilin Ransomware topped April 2025 with 45+ data leak disclosures

The cyber threat landscape is rapidly changing, with a notable increase in ransomware activity in April 2025, driven by the...
Read More
Qilin Ransomware topped April 2025 with 45+ data leak disclosures

SonicWall Patches 3 Flaws in SMA 100 Devices

SonicWall has released patches for three security flaws in SMA 100 Secure Mobile Access appliances that could allow remote code...
Read More
SonicWall Patches 3 Flaws in SMA 100 Devices

Top Ransomware Actively Attacking Financial Sector: 406 Incidents Disclosed

From April 2024 to April 2025, Flashpoint analysts noted that the financial sector was a major target for threat actors,...
Read More
Top Ransomware Actively Attacking Financial Sector: 406 Incidents Disclosed

Critical (CVSS 10) Flaw in Cisco IOS XE WLCs Allows RRA

Cisco has issued a security advisory for a critical vulnerability in its IOS XE Software for Wireless LAN Controllers (WLCs)....
Read More
Critical (CVSS 10) Flaw in Cisco IOS XE WLCs Allows RRA

CVE-2025-29824
Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day

Attackers linked to the Play ransomware operation deployed a zero-day privilege escalation exploit during an attempted attack against an organization...
Read More
CVE-2025-29824  Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day

Hacker exploited Samsung MagicINFO 9 Server RCE flaw

Hackers are exploiting an unauthenticated remote code execution vulnerability in the Samsung MagicINFO 9 Server to take control of devices...
Read More
Hacker exploited Samsung MagicINFO 9 Server RCE flaw

CISA adds Langflow flaw to its KEV catalog

CISA added the Langflow vulnerability, CVE-2025-3248 (CVSS score 9.8), to its Known Exploited Vulnerabilities catalog. Langflow is a popular tool...
Read More
CISA adds Langflow flaw to its KEV catalog

Google Fixes Android Flaw (CVE-2025-27363) Exploited by Attackers

Google has released its monthly Android security updates, addressing 46 vulnerabilities, including one that has been actively exploited. CVE-2025-27363 (CVSS...
Read More
Google Fixes Android Flaw (CVE-2025-27363) Exploited by Attackers

UAP hosted “UAP Cyber Siege 2025”, A national level cybersecurity competition

The Cyber Security Club, representing the Department of Computer Science and Engineering at the University of Asia Pacific (UAP), has...
Read More
UAP hosted “UAP Cyber Siege 2025”, A national level cybersecurity competition

ALSO READ:

Not hacked, for system fault, data was accessible: Palak

He said, I have brought the draft law to the final stage. The Data Security Act is coming in the wake of recommendations received at national and international levels for data protection.

He said that after studying the recent laws of Australia, Canada and the CVPR of the USA and the United Nations, the law has been drafted based on everyone’s opinion. Palak said, “We will be able to present the Data Security Act in Parliament very soon.”

Earlier in his speech at the award ceremony, the state minister mentioned that information is more valuable than money and said, “We used to think that saving money is the job of cyber security.” But nowadays information is becoming more expensive than money. Data is the next currency, so we need to think about data privacy and data protection.

Palak affirmed that there was undoubtedly negligence on the organization’s part from where the website information was leaked. The concerned ministry will take appropriate action against those who have neglected their duties here.

Palak stated that although initially 29 institutions were identified as crucial information infrastructure, this number is progressively increasing. It was only after the cyber threats targeting Bangladesh Bank in 2016, where a staggering $81 million was stolen, that we become more aware of the significance of cyber security. Out of these 29 institutions, the institution that we identified in the list number 27 fell into such a situation.

Palak said, despite the warning, the officials of the concerned department did not take it into account. Due to their negligence, the state has suffered huge losses. Therefore, he said that the concerned ministry has been recommended to take action against the responsible officials of the concerned department.

He also said that the 29 organizations we have identified should have separate computer incident and emergency response teams.

 

Check Also

NVDP

BCSI officially announce National Vulnerability Disclosure Program (NVDP)

Bangladesh Cyber Security Intelligence (BCSI) officially launch the National Vulnerability Disclosure Program (NVDP) to enhance …

Leave a Reply

Your email address will not be published. Required fields are marked *