The Council of Europe’s Cybercrime Convention was ratified by Australia on Friday, 1 March 2013[1]. Pirate Party Australia has previously criticised the Convention for being flawed in regard to the protection of privacy and personal data[2].
The Pirate Party notes that the Australian Parliament has already passed a comprehensive piece of legislation in August 2012 that complies with the requirements of the Cybercrime Convention. The pious-sounding Cybercrime Legislation Amendment Act 2012[3] includes the ability for a foreign country to ask Australia for a communication by an Australian if the crime for which they are accused carries the death penalty in the requesting country.
The current legislation could allow a country to gather data about Australian citizens for any crime with a penalty exceeding $100,000, or that carries the death penalty. Due to the loose dual-criminality provisions within the Act, this could potentially allow countries with blasphemy laws, criminal copyright provisions or laws against activism to access Australian data.
The treaty’s entry into force comes at a time when the Australian Government, with the support of various law enforcement agencies, is examining an extensive range of proposed amendments to national security and intelligence legislation and regulations. Included among these changes are the mandatory, warrantless two-year retention of the Internet communications of all Australians, the ability for law enforcement agencies to not only remotely access citizens computers but to also add software and other files to them, as well as penalties for failing to assist in decrypting encrypted data.