You are using an outdated browser and your browsing experience will not be optimal. Please update to the latest version of Microsoft Edge, Google Chrome or Mozilla Firefox. Install Microsoft Edge

August 22, 2012

Using the Computer Crimes Act to Combat Online Piracy

Informed Counsel

The increase in online shopping has proven lucrative for legitimate retailers. But traders selling counterfeit and pirated products have also taken advantage by selling a wide range of counterfeit products online. In searching for new solutions to battle intellectual property infringement on the internet, recent meetings between government officials and members of the private sector have resulted in an innovative approach that relies on existing legislation. This article will provide an overview of the current regulatory environment and the recommended procedures that will facilitate the shutting down of illegal retail websites, and help to halt the rise in purchases of counterfeit goods on the internet.

Online Piracy Challenges

According to a report by the Department of Intellectual Property (DIP), 40 percent of pirated films, music DVDs, and CDs are offered for sale online. For counterfeiters, there are three key benefits in shifting from traditional brick-and-mortar marketplaces to online retailing:

  1. There is no stall rental fee.
  2. Many of the corrupt activities surrounding the sale of counterfeit goods can be avoided.
  3. Storage of goods is not required, which reduces the chances of being caught in possession of the illegal goods and subsequently arrested.

Since existing IP laws in Thailand do not explicitly sanction the sale of counterfeit goods online, IP owners have, up until now, been unable to take aggressive action against these online sellers. In practice, IP owners have tried to tackle this type of infringement in Thailand by conducting investigations to uncover the source of the fake goods, followed by raid actions at storage facilities, stockrooms, and warehouses.

This investigation-and-raid approach however, is increasingly becoming hampered by the fact that online traders do not typically store their goods on their premises. Instead, traders purchase the counterfeit products from other sellers in the market, after having received purchase orders from their customers.

Existing Legal Framework

In the absence of specific legislation to address these activities, the Thai government has tried to solve this problem by relying on related legislation. When advising IP owners of their enforcement options, one suggestion raised by the DIP is to apply Sections 14 and 20 of the Computer Crimes Act B.E. 2550 (2007).              

Section 14: Whoever commits the following offenses shall be liable to imprisonment for a term not exceeding five years, or a fine of not exceeding THB 100,000, or both:

(1) Entering wholly or partially spurious computer data or false computer data into a computer system, in a manner that is likely to cause injury to other persons or the public. …

Section 20: In the case where the commission of an offense under this Act involves the distribution of computer data that may affect the security of the Kingdom, as prescribed in Book II, Title I or Title I/I of the Penal Code, which may be inconsistent with public order or good morals, the competent official may apply for a motion to the court to order that the distribution of such computer data be blocked.

In 2011, these sections were applied to a case related to food and medical products before Thailand’s Criminal Court. In Red Case Sor. 33/2554, the defendant committed an offense of advertising the sale of food, medicine, and medical equipment by using untrue information that was deceptive to consumers. The court deemed that this act constituted an offense under Section 14(1) of the Computer Crimes Act. The court therefore issued an order to block the distribution activities undertaken by the website, pursuant to Section 20 of the Act.

As this judgment shows, Sections 14 and 20 grant to the court the authority to block the distribution of forged computer data or false computer data, upon the request of an officer, if the court finds that such contents may be inconsistent with public order or good morals. Unfortunately, the content of the Computer Crimes Act is not clear in defining whether offering counterfeit goods for sale on a website can be considered “forged computer data.” Although some government officials claim that this law sets out the right to take action against websites that offer fake goods for sale online, others opine that fake goods offered on a website cannot be deemed “forged computer data” under Section 14.

Proposed New Approach

In seeking a solution to this problem, representatives from the Ministry of Information and Communication Technology (MICT), the DIP, and the private sector met on March 12 and March 20, 2012. During the meeting, the Director-General of the DIP stated that she encouraged IP representatives or IP owners to submit a formal letter to the MICT requesting to shut down these websites under Section 14. When an IP owner proceeds with such a formal letter, this would provide a type of test case to determine whether Section 14 of the Computer Crimes Act can feasibly be used to shut down websites that offer fake goods for sale.

In light of these developments, a new procedure was proposed during the meeting (see graphic below). If all parties implement this procedure, it could enable IP owners to shut down websites selling counterfeit or pirated goods in as little as two weeks. Clearly, this would be a major development for long-suffering IP owners who have battled online piracy for years.

Implementing the Procedure

Although the debate is ongoing, it is evident that the Thai government intends to implement more stringent measures in the near future to inhibit the stream of illicit gains enjoyed by illegal online retailing operations. When an IP owner decides to test the approach proposed by the DIP and a court order is requested, practitioners will eagerly await the outcome for any developments in this area of the law. If the Computer Crimes Act is deemed practicable, it would provide an efficient route for IP owners to shut these websites down, without incurring additional investigation costs.

However, if the court decides that the activities of illegal online retailers—specifically, offering counterfeit goods for sale on a website—do not constitute “forged computer data” under Section 14, it will then be necessary for all stakeholders to push ahead with further amendments to existing IP law.

RELATED INSIGHTS​ 

June 19, 2025
Thailand’s Electronic Transactions Development Agency (ETDA) has announced plans for increased enforcement of the Royal Decree on the Operation of Digital Platform Service Businesses That Are Subject to Prior Notification B.E. 2565 (2022). The ETDA outlined a comprehensive enforcement framework and review process during an online meeting with digital platform service operators on June 11, 2025. The ETDA’s enhanced enforcement approach includes systematic reviews of notification submissions, formal correction orders, and potential criminal penalties for noncompliance. Digital platform operators should immediately assess their current notification status and prepare for increased regulatory scrutiny. Review and Amendment of Previously Submitted Notification Data The ETDA will begin reviewing operation notification forms and annual reports submitted by digital platform service operators to assess each platform’s risk level and develop tailored regulatory obligations. In this comprehensive review process, the ETDA will: Examine the accuracy and completeness of submitted notification data; Request additional information as needed by phone or email; and Issue formal orders as needed requiring operators to correct or complete missing information. Operators who fail to comply with ETDA orders may face suspension of operations, revocation of their notification receipt, and public disclosure of their noncompliant status on the ETDA’s website. The ETDA will conduct follow-up workshops in July 2025 for operators whose data remains unclear or incomplete. Enforcement Framework and Penalties The ETDA outlined a three-tiered enforcement framework with escalating consequences for different types of violations, as follows: Failure to notify before commencing operations: Operators who begin services without proper notification may face criminal penalties under the Electronic Transactions Act, including up to one year of imprisonment, fines of up to THB 100,000 (approx. USD 3,070), or both. Additional consequences include suspension of operations and potential liability for company directors. Failure to correct or comply with official orders: Noncompliance with ETDA correction
June 13, 2025
In today’s digital age, cyberattacks have become a real threat to organizations worldwide. These attacks can range from phishing and malware to ransomware and distributed denial of service (DDoS) attacks. As the frequency and sophistication of these attacks increase, so does the importance of cybersecurity compliance. In the corporate world, compliance refers to the process of ensuring that a company and its employees adhere to all relevant laws, regulations, standards, and ethical practices—but it should not stop there. Compliance should also encompass asset recovery and disciplinary measures, which can both help organizations address incidents effectively and promote good governance. Cyberattacks are malicious attempts to access or damage a computer system or network, often carried out for financial gain, for political activism, or simply to cause disruption. For instance, a successful attack might involve an attacker creating an email address that closely resembles a legitimate one, perhaps by changing only one or two characters. That email address is then inserted into an existing conversation thread, making it appear as if the user with this email address was already part of the discussion. This tactic can easily deceive a recipient into believing the email was sent from a trusted source, thereby leading them to click on malicious links, provide sensitive information, or even make payments in accordance with the attacker’s request or instructions. Phishing attacks like these are particularly dangerous and can have a serious impact on the ongoing business of a corporation because they exploit the trust and familiarity established in the original email chain. Effective Mitigation Approaches Mechanisms for addressing the aftermath of a crisis provide important recourse to affected organizations, but effective compliance mechanisms can minimize the risk of such crises ever occurring. Companies should therefore prioritize preventative measures and implementation of effective crisis management schemes. Various legal
May 28, 2025
Tilleke & Gibbins attorneys in Vietnam have contributed the 2025 edition of Doing Business in Vietnam, a comprehensive Q&A-style resource from Thomson Reuters Practical Law that provides essential insights for companies navigating business operations in Vietnam. The guide presents a detailed overview of the country’s legal framework and regulatory environment, reflecting recent updates in Vietnamese legislation and practice. This annually updated guide offers key information on the following areas: Legal system: Structure of the Vietnamese judiciary and the role of codified law. Foreign investment: Conditions for market access, licensing requirements, foreign ownership restrictions, and investment incentives. Business vehicles: Formation and operation of legal entities, including limited liability companies, joint-stock companies, and representative offices. Employment: Employment contracts, social insurance, labor rights, and procedures for hiring foreign nationals. Tax: Overview of corporate income tax, personal income tax, value-added tax, and other tax obligations. Intellectual property: Procedures for protecting and enforcing patents, trademarks, copyrights, and other IP rights. Data protection: Compliance requirements under Vietnam’s data privacy laws, including the Personal Data Protection Decree. Competition law: Antitrust rules and regulatory oversight under the Law on Competition. Anti-bribery and corruption: Legal framework and enforcement practices aimed at curbing corrupt activities. E-commerce and digital business: Regulations governing online platforms, digital content, and cross-border services. Marketing and advertising: Laws and guidelines on advertising standards and consumer protection. Product regulation and liability: Safety requirements, product liability issues, and roles of relevant authorities. Doing Business in Vietnam is part of Practical Law’s global series of legal guides designed to support international practitioners and businesses. To access the most recent edition of the Vietnam guide, visit the Practical Law website and sign up for a free trial.
May 28, 2025
Thailand’s Food and Drug Administration (FDA) has launched a strategic collaboration with leading e-commerce platforms Lazada and Shopee to strengthen regulatory oversight of health-related products sold online. This partnership is part of a broader initiative to enhance consumer protection, enforce compliance with Thai health regulations, and foster a safer digital marketplace for health products. As part of this initiative, the Thai FDA is urging all sellers—particularly cross-border vendors—to secure proper FDA registration for their products before market entry. The objective is to ensure that only legally authorized, safe, and quality-assured healthcare products are available to Thai consumers. In pursuit of this goal, the FDA has been working closely with Lazada and Shopee to implement proactive surveillance mechanisms aimed at identifying and removing noncompliant, substandard, or unregistered products. This collaboration has already yielded measurable results. Between September 2023 and 2024, Lazada supported regulatory enforcement by removing 9,454 noncompliant listings and delisting 30 vendors. In addition, 134 sellers were subjected to legal proceedings for regulatory violations. Shopee has taken a similarly rigorous stance, committing to the immediate removal of products found to be in breach of FDA regulations. The platform has also provided educational materials for merchants and implemented consumer complaint mechanisms to enhance accountability. Looking ahead, the Thai FDA plans to roll out a data integration system utilizing API technology, enabling seamless and secure exchange of regulatory data between the agency and e-commerce platforms. This system will be supported by comprehensive training for both Thai FDA officials and e-commerce staff, with a particular focus on the use of the Thai government’s Law Enforcement Request Portal, a secure communication channel for coordinating enforcement actions between government agencies and platform operators. Additionally, a joint product inspection framework is currently under development in partnership with Lazada and Shopee. This framework will incorporate strict