UK Regulator Ofcom Investigates Meta Over Instagram Instants Compliance With Online Safety Act
Britain's communications regulator Ofcom has launched an investigation into Meta to assess whether the company adequately evaluated risks before introducing the Instagram Instants feature. The review examines compliance with the Online Safety Act, focusing on threats of illegal content spread and potential harm to minors.
The Instants function, rolled out in May 2026, enables users to exchange images that automatically disappear after being viewed. UK regulations require platforms to update their risk assessments before implementing substantial new features. Companies must first analyze how such changes could affect users and only then proceed with deployment.
Ofcom will collect evidence during the initial phase. If a breach is identified, the regulator will issue a preliminary decision, giving Meta an opportunity to respond before a final ruling. Should violations be confirmed, Ofcom can mandate corrective measures and impose fines of up to 18 million pounds or 10 percent of the company's relevant global revenue, whichever amount is greater.
Meta stated that it performed risk evaluations and engaged with Ofcom prior to the launch. The company highlighted built-in protections, including restrictions on forwarding and enhanced safety settings for teenage accounts. The regulator will now determine whether these steps and the preceding assessment meet legal requirements.
Related articles
Russia Plans Additional Security Checks for Gosuslugi Portal Access
Prime Minister Mikhail Mishustin has directed the Ministry of Digital Development to develop extra authentication measures for the Gosuslugi portal used by 120 million citizens. The new controls would apply both to initial logins and to account recovery procedures. Details on the exact checks and implementation timeline remain unspecified as the ministry must first propose a concrete mechanism. In parallel, officials are preparing a third package of anti-fraud measures that includes a unified consent platform inside Gosuslugi for managing personal data processing permissions. The platform would let users view which organizations access their data, revoke prior consents, and report violations. Russian police have separately warned that fraudsters are already exploiting the topic of account protection by sending messages that threaten blocking or data leaks and urge victims to call provided numbers.
Entering Cybersecurity Without a Specialized Degree: Sector Rules and Practical Entry Points
The article examines whether a specialized higher education diploma is necessary to start a career in information security. It breaks down three main industry segments—state security structures, regulated government organizations, and private business—and explains the differing formal and practical requirements in each. In government-related roles, candidates must meet strict regulatory standards for education and approved programs. Private companies instead focus on demonstrable technical skills in networks, Windows Server, Linux, and security tools. The piece also covers typical junior engineer expectations, real-world career paths from unrelated backgrounds, and four key ways to prove competence without a diploma. It concludes with advice on building home labs, troubleshooting skills, and accessing open training resources like the CyberED course.
MTS, MegaFon and Beeline Must Temporarily Suspend Radio Equipment at FSO Request Under Extended Frequency Licenses
Russian telecom operators MTS, MegaFon and VimpelCom (Beeline) have received extensions for their radio frequency allocations until 31 December 2027, but the licenses now include a binding requirement to pause operations of radio-electronic equipment upon demand from the Federal Security Service (FSO). The State Commission for Radio Frequencies (GKRCH) added this condition during its 31 August meeting, directly linking compliance with FSO instructions to the continued use of spectrum originally allocated in 2006. The measure applies during security operations, high-priority state activities and special FSO events, potentially causing temporary loss of mobile connectivity for subscribers in affected areas. Although FSO powers to request such suspensions have existed since 2011, the new decision embeds the obligation explicitly into the frequency license terms. At the same time, the operators retain earlier commitments to expand network coverage to all settlements with at least 2,000 residents by 31 March 2027. The dual requirements illustrate how spectrum policy now balances nationwide connectivity goals with operational readiness for temporary shutdowns ordered by security authorities.
Russia Discusses Extra Fees for International Traffic Over 50 GB in 5G Networks
The Russian Ministry of Digital Development is again in talks with mobile operators about introducing charges for international data traffic exceeding 50 GB per month, but only within 5G networks. The measure would potentially apply to VPN services and other foreign resources, adding to users' mobile bills. No final decision has been reached and the exact fee amount remains unspecified. Sources indicate a possible launch in October, though timelines are subject to change. Technical challenges arise because current 5G deployments rely on LTE infrastructure, requiring new traffic separation, network handover tracking, and billing system adjustments. Average monthly mobile data usage stood at 24 GB in 2025, making the 50 GB international 5G threshold a narrow scenario. Headlines claiming VPNs will become paid services overstate the current discussions, which focus solely on international traffic classification.