Home / Blogs

Australian Government Issues New Guidelines to Address 5G Security Concerns in Smart Cities

The Australian Signals Directorate (ASD) has issued a new set of guidelines warning about the security risks posed by the use of 5G technology in so-called Smart Cities. The ASD’s concerns align with those of the Five Eyes security alliance, which has warned that the interconnected nature of a fully connected city makes it vulnerable to cyberattacks. While Smart Cities offer benefits such as increased efficiency and data-driven decision-making, the downside is that they may expose national and economic security, public health and safety, and critical infrastructure operations to potential vulnerabilities.

These renewed warnings come amid the Australian government’s plan to strengthen national security and make Australia one of the most secure countries in the world by 2030. As part of this plan, the Home Affairs department is currently reviewing submissions to its Cyber Security Discussion paper, which closed last week. The ASD’s guidelines provide a timely reminder of the need to consider the security implications of Smart City technology as Australia becomes more enmeshed within the connected infrastructure environment.

NSA and NCSC Warnings on Smart Cities

The risks associated with Smart Cities are not new. In 2020, the US National Security Agency (NSA) warned that 5G technology used in Smart Cities could create new attack vectors for hackers, including the potential to disrupt critical infrastructure. The UK’s National Cyber Security Centre (NCSC) has also highlighted the risks of Smart City technology, including the potential for attacks on autonomous vehicles and the use of data to target individuals.

IoT Vulnerabilities in Urban Infrastructure

Smart Cities rely on the Internet of Things (IoT) to connect urban infrastructure to the Internet. This interconnectedness creates a web of potential vulnerabilities, with any weakness in the system potentially exposing the entire network to attack. For example, a hacker could exploit a vulnerability in a single IoT device, such as a traffic light, to gain access to the wider network and disrupt critical services such as emergency services or public transport.

To address these risks, the ASD’s guidelines recommend that Smart Cities adopt a risk management approach that includes identifying potential vulnerabilities and implementing appropriate security measures. This could include measures such as ensuring that all IoT devices are secure by default, using encryption to protect data in transit and at rest, and implementing multi-factor authentication to prevent unauthorized access.

The ASD also recommends that Smart Cities adopt a “defence in depth” approach, where multiple layers of security are used to protect the network. This could include measures such as segmenting the network to prevent the spread of malware, implementing intrusion detection and prevention systems, and regularly testing the security of the network through penetration testing and vulnerability scanning.

Privacy Concerns in Smart Cities

The risks associated with Smart Cities are not limited to cyberattacks. There are also concerns about the potential for misuse of data collected by IoT devices. For example, data collected from smart cameras could be used to track the movements of individuals, raising concerns about privacy and civil liberties. To address these concerns, the ASD recommends that Smart Cities adopt a privacy-by-design approach, where privacy considerations are built into the design of the network from the outset.

International Efforts in Smart City Security

The risks associated with Smart Cities are not unique to Australia. Governments around the world are grappling with the security implications of Smart City technology as they seek to harness the benefits of technological innovation while mitigating the risks. In the UK, the NCSC has issued guidance on securing Smart Cities, while in the US, the NSA has published a report on securing 5G networks.

Importance of Risk-Based Approach

The risks associated with Smart Cities are real, and governments and organizations must take steps to mitigate them. The ASD’s guidelines provide a useful starting point for organizations looking to implement Smart City technology while maintaining the security of critical services and infrastructure. As the world becomes increasingly interconnected, the need to secure our digital infrastructure will only become more pressing, and it is essential that we take a risk-based approach to managing these risks.

By Paul Budde, Managing Director of Paul Budde Communication

Paul is also a contributor of the Paul Budde Communication blog located here.

Visit Page

Filed Under


Comment Title:

  Notify me of follow-up comments

We encourage you to post comments and engage in discussions that advance this post through relevant opinion, anecdotes, links and data. If you see a comment that you believe is irrelevant or inappropriate, you can report it using the link at the end of each comment. Views expressed in the comments do not represent those of CircleID. For more information on our comment policy, see Codes of Conduct.

CircleID Newsletter The Weekly Wrap

More and more professionals are choosing to publish critical posts on CircleID from all corners of the Internet industry. If you find it hard to keep up daily, consider subscribing to our weekly digest. We will provide you a convenient summary report once a week sent directly to your inbox. It's a quick and easy read.

I make a point of reading CircleID. There is no getting around the utility of knowing what thoughtful people are thinking and saying about our industry.

Co-designer of the TCP/IP Protocols & the Architecture of the Internet



IPv4 Markets

Sponsored byIPv4.Global

Threat Intelligence

Sponsored byWhoisXML API

Brand Protection

Sponsored byCSC


Sponsored byDNIB.com

Domain Names

Sponsored byVerisign

New TLDs

Sponsored byRadix


Sponsored byVerisign