CERT-In Report Reveals Cybersecurity Risks in Indian Smart Cities
SMART CITIES

CERT-In Report Reveals Cybersecurity Risks in Indian Smart Cities

An analysis of 20 smart cities by the Indian Computer Emergency Response Team (CERT-In) has revealed significant cybersecurity risks, including malware infections, botnet attacks, and poorly configured networks. The study, conducted in collaboration with Kaspersky and released on February 17, identified trojans and botnets as some of the most common threats, exacerbated by weak network security protocols.

"The most common vulnerability was allowing remote connections to unauthorised systems," the report noted, though the cities involved were not named.

As smart cities increasingly rely on digital networks, these vulnerabilities pose serious risks to public service delivery and citizens' data protection. The report highlighted that trojans like Avalanche-Andromeda and Gamarue were prevalent in western, central, and northern India, enabling remote system access and electronic espionage.

Meanwhile, botnet infections such as Socks5Systemz were the primary concern in southern cities. These malicious programmes allow infected systems to act as proxies, potentially involving them in criminal activities without their owners' knowledge.

Many cities also had misconfigured Simple Network Management Protocol (SNMP) settings, which could allow unauthorised access or lead to denial-of-service attacks.

CERT-In recommends that smart cities adopt a multi-layered cybersecurity approach, focusing on network segmentation, stronger IoT security, and real-time threat monitoring. Ensuring compliance with national cybersecurity guidelines, incident reporting, and regular penetration testing are crucial steps in mitigating these risks.

An analysis of 20 smart cities by the Indian Computer Emergency Response Team (CERT-In) has revealed significant cybersecurity risks, including malware infections, botnet attacks, and poorly configured networks. The study, conducted in collaboration with Kaspersky and released on February 17, identified trojans and botnets as some of the most common threats, exacerbated by weak network security protocols. The most common vulnerability was allowing remote connections to unauthorised systems, the report noted, though the cities involved were not named. As smart cities increasingly rely on digital networks, these vulnerabilities pose serious risks to public service delivery and citizens' data protection. The report highlighted that trojans like Avalanche-Andromeda and Gamarue were prevalent in western, central, and northern India, enabling remote system access and electronic espionage. Meanwhile, botnet infections such as Socks5Systemz were the primary concern in southern cities. These malicious programmes allow infected systems to act as proxies, potentially involving them in criminal activities without their owners' knowledge. Many cities also had misconfigured Simple Network Management Protocol (SNMP) settings, which could allow unauthorised access or lead to denial-of-service attacks. CERT-In recommends that smart cities adopt a multi-layered cybersecurity approach, focusing on network segmentation, stronger IoT security, and real-time threat monitoring. Ensuring compliance with national cybersecurity guidelines, incident reporting, and regular penetration testing are crucial steps in mitigating these risks.

Next Story
Building Material

Jayesh Ranjan & Cement Expo Forum Leaders converge in Hyderabad

Jayesh Ranjan, IAS, Special Chief Secretary for ITE&C and Industries & Commerce Departments, Government of Telangana, to be the Guest of Honour at the Cement Expo Forum 2025, which will be held alongside Indian Cement Review Awards and Conference on March 5-6, 2025 at Taj Krishna, Hyderabad Highlight of the Forum will be Fireside Chat, moderated by Pratap Padode, Author of “Tarmac to Towers: India’s Infrastructure Story”, with speakers like Nilesh Narwekar, CEO, JSW Cement; and KVB Reddy, MD & CEO, L&T Metro Rail Hyderabad.More than 30 industry stalwarts will share t..

Next Story
Infrastructure Urban

Indian Army Acquires Indigenous CBRN Defence Systems

The Indian Army has signed a contract with L&T Ltd on February 25, 2025, for the procurement of 223 Automatic Chemical Agent Detection and Alarm (ACADA) systems worth Rs 804.3 million under the ‘Buy Indian (IDDM)’ category. This deal strengthens the government's Atmanirbhar Bharat initiative, with over 80% of the system's components and sub-systems sourced domestically.Developed by DRDO’s Defence Research and Development Establishment, Gwalior, the ACADA system represents a key milestone in India’s efforts toward self-reliance in the critical CBRN (Chemical, Biological, Radiolo..

Next Story
Infrastructure Urban

DPIIT, Paytm Partner to Boost Manufacturing and Fintech Startups

DPIIT, Paytm Partner to Boost Manufacturing and Fintech Startups New Delhi, Feb 26, 2025: The Department for Promotion of Industry and Internal Trade (DPIIT) has signed an MoU with Paytm (One97 Communications Ltd) to drive innovation and accelerate the growth of India’s manufacturing and fintech startup ecosystem. Under this collaboration, Paytm will offer mentorship, infrastructure support, market access, and funding opportunities, helping startups scale and develop advanced financial technology solutions. The initiative also aims to support fintech hardware startups by providing ..

Advertisement

Advertisement

Subscribe to Our Newsletter

Get daily newsletters around different themes from Construction world.

STAY CONNECTED

Advertisement

Advertisement

Advertisement

Advertisement

Talk to us?