Australia's Cyber Security Plan Includes Domestic Surveillance

Australia plans to expand the work of its national spy agency  and provide the Australian Signals Directorate (ASD)’s new  powers that would allow it to conduct domestic investigations for the first time. By rendering support to the Australian federal police and the Australian Criminal Intelligence Commission, the cyber security and intelligence agency would for the first time be able to spy on Australians, although Dutton maintains ASD won’t be able to do so directly.

The Home Affairs minister Peter Dutton has confirmed that Australia’s $1.6 million cyber strategy will include capability for the Australian Signals Directorate (ASD) to help law enforcement agencies identify and disrupt serious criminal activity, including those inside Australia.

Dutton said law enforcement agencies would target terrorists, paedophiles and drug traffickers operating in the Dark Web, promising proposed new powers will apply “to those people and those people only”. Details of the new powers, which will require legislation, are not contained in the strategy, which says only that the government will “ensure law enforcement agencies have appropriate legislative powers and technical capabilities to deter, disrupt and defeat the criminal exploitation of anonymising technology and the dark web”.

ASD powers have been a source of controversy for the government, after the Australian Federal Police (AFP) raided News Corp journalist Annika Smethurst’s home in June over a news report suggesting the home affairs department was seeking power for ASD to spy on Australians. Dutton had claimed the story was nonsense.

Dutton told reporters in the capital, Canberra, that the ASD has “a very unique set of powers” and is “the very best in the business” in operations such as stopping terrorist attacks. More recently ASD had disrupted scam attacks seeking passwords and other information targeting Australians financially during the Covid-19 pandemic.

Dutton said target servers and syndicates were mostly offshore but it was “appropriate” for ASD to help protect Australians. Law enforcement agencies would be able to “tap into” ASD’s capabilities but “the power only applies to … the Australian federal police and ACIC, not the ASD,” he said.

According to sources the  ASD will be prevented from directly collecting information but will be able to provide 'technical capability advice' to assist police execute computer access warrants to identify suspects and disrupt criminal activity.

The package includes $470m to expand Australia’s cybersecurity workforce with 500 new jobs created within the ASD, and $125m to double the AFP’s cyber enforcement capacity by 100 officers and expand the remit of the ACIC. Giving the ASD domestic powers would also allow it to target Australians with military-grade hacking capabilities, including malware exploits that leverage vulnerabilities in applications and operating systems.  

Australia's domestic spy agency says it has detected a rise in suspicious online activity during the coronavirus lockdown, which may have allowed extremists more opportunities to target young people.

Australian Siganls Direcorate:     ABC:       Yahoo:        Newsbreak:       Information Age:       Australian Finacial Review:

You Might Also Read:

Australia Assaulted By Severe State-Backed Cyber Attacks:
 

« Which Industries Suffer Most From Remote Working?
Essential Books For Learning About Cyber Security »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

Digital Detective

Digital Detective

Digital Detective offer a range of products and services for digital forensic analysis and advanced data recovery.

Guardian360

Guardian360

The Guardian360 platform offers unrivalled insight into the security of your applications and IT infrastructure.

Tukan IT

Tukan IT

Tukan IT provides a data classification and protection solution.

Digital Guardian

Digital Guardian

Digital Guardian is a next generation data protection platform designed to stop data theft.

Quadrant Information Security

Quadrant Information Security

Quadrant Information Security is a consulting firm committed to supporting organizations in all vertical markets and protecting their sensitive data.

Penningtons Manches Cooper

Penningtons Manches Cooper

Penningtons Manches Cooper is a leading UK law firm providing high quality legal advice in areas including Data Protection, Cyber Security and Cyber Crime.

SMESEC

SMESEC

SMESEC is a lightweight Cybersecurity framework for protecting small and medium-sized enterprises (SME) against Cyber threats.

Cyber Physical Security Research Center (CPSEC)

Cyber Physical Security Research Center (CPSEC)

CPSEC aims to contribute to the security enhancement of industrial infrastructure that creates value across cyber space and physical space.

THEC-Incubator

THEC-Incubator

THEC-Incubator program is designed for international and ambitious tech startups in the Netherlands. Areas of focus include Blockchain and Cyber Security.

TechForing

TechForing

TechForing Ltd. works for business organization's cyber security and cyber crime incident managements. We help business to secure their business online.

ToucanX

ToucanX

ToucanX has eliminated remote attack vectors without sacrificing productivity. We’ve brought embedded near real time virtualization to the enterprise endpoint.

VLATACOM Institute

VLATACOM Institute

Vlatacom Institute is privately owned accredited research and development institute, system integrator and turn-key solution provider. Areas of expertise include encryption and authentication.

VikingCloud

VikingCloud

VikingCloud (formerly Sysnet Global Solutions) offers organizations an integrated cybersecurity and compliance solution to make informed, predictive, and cost-effective risk mitigation and prevention

Dexian

Dexian

Dexian is a leading provider of staffing, IT, and workforce solutions with nearly 12,000 employees and 70 locations worldwide.

Ingenics Digital

Ingenics Digital

Ingenics Digital is a recognized initiator and leading service provider in the areas of software development and embedded systems.

Nothreat

Nothreat

Nothreat has revolutionized how businesses like yours protect themselves from damaging cyber attacks. Our tech learns and adapts in real time, protecting clients from even zero-day attacks.