:

UK MANDATES ID OR FACE SCAN FOR SOCIAL MEDIA

INDUSTRY DESK1 MIN READ
WED, JUN 17, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

The UK will require users to verify their age with ID uploads or facial scans before creating social media accounts under a new ban on under-16s, set to take effect in spring 2027.

Starting in 2027, social media platforms operating in the UK must implement age verification for all new accounts. Users will have two options: upload government-issued identification or submit to an automated facial age scan. The measure aims to protect minors from accessing platforms deemed unsuitable for children under 16. The government has not specified which platforms will fall under the requirement or how the rules will be enforced. Security experts have raised significant concerns. Researchers warn that age verification systems are widely vulnerable to circumvention through deepfakes, borrowed IDs, and third-party bypass services. The requirement also creates centralized repositories of user identification data, increasing exposure to data breaches. The announcement follows years of regulatory pressure on social platforms. The UK's Online Safety Bill previously focused on content moderation rather than age restrictions, but this new requirement marks a shift toward stricter access controls for minors.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

The Open Observatory of Network Interference (OONI) is expanding its crowdsourced effort to map global internet censorship. The project invites users to contribute measurements to what it describes as the largest open dataset on network interference.

4H AGOIndustry Desk

A new technique allows attackers to exfiltrate neural network weights from machine learning models, potentially exposing proprietary AI systems. Security researchers demonstrated the vulnerability across multiple model architectures.

5H AGOIndustry Desk

A malicious npm campaign demonstrates how threat actors are evading supply chain protections by embedding malware in package runtime behavior instead of installation scripts. The 'indexed-btree' package exemplifies this evolving attack technique.

14H AGOIndustry Desk

Cybercriminals are exploiting lookalike characters from different alphabets to create fake URLs that appear legitimate to the naked eye. These homoglyph attacks bypass traditional security checks and trick users into visiting malicious sites.

15H AGOIndustry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.