Cyber Attacks Target Water Infrastructure Across U.S. States

Cyber Attacks Target Water Infrastructure Across U.S. States

A series of cyber incidents have put U.S. water and wastewater utilities on high alert. Federal authorities are investigating these attacks that have disrupted operations, exposing vulnerabilities in crucial public services.

Recent Federal Warnings

The FBI and the Environmental Protection Agency (EPA) issued a warning on July 30 about cyber actors targeting water systems in at least seven states since July 27, 2026. These attacks have led to operational disruptions and impacted water operations. Affected states remain unidentified, but the federal agencies have urged utilities to remove control systems from public internet access and enhance cybersecurity measures.

Detailed Reports from Different States

“Attackers targeted internet-facing Programmable Logic Controllers (PLCs), which manage industrial equipment at water facilities,” reported the FBI. Hackers altered IP addresses and passwords, resulting in flooding and pressure issues.

Newsweek contacted the FBI and the Cybersecurity and Infrastructure Security Agency (CISA) for more details.

Minnesota Under Siege

Minnesota disclosed a major cluster of incidents, with over 30 water systems targeted by cyberattacks. President Donald Trump criticized the state’s officials, highlighting the national focus on the issue. The perpetrators remain unidentified.

Michigan Systems Breached

Michigan also reported incidents affecting water systems, using tactics noted by the FBI and EPA. Hackers changed settings at a wastewater facility, but the issue was contained, posing no risk to the drinking water supply.

South Dakota’s Cyber Concerns

Rapid City reported a cyberattack on a wastewater station. Although drinking water and public safety were not compromised, hackers tried to disrupt infrastructure. Local authorities are in collaboration with law enforcement to investigate.

California’s Investigation Continues

In June, California Water Service initiated a probe after a hacking claim. Hackers accessed customer accounts using stolen credentials, yet did not breach internal networks or disrupt services. The investigation remains open.

Possible Iranian Connection?

Federal investigators are assessing whether the attacks could be linked to Iranian hackers. Previous Iranian-attributed cyber campaigns have targeted U.S. water infrastructure, but speculation remains as investigations continue. Authorities are uncertain if this is a tactic to mislead by mimicking Iranian methods.

Notably, a previous attack on November 25, 2023, in Pennsylvania was linked to Iran, urging federal warnings about industrial control system vulnerabilities.

Despite the political tension around Iran’s involvement, evidence remains inconclusive.

Ongoing Concerns and Actions

The FBI warns that systems in at least seven states reported incidents, suggesting more states might have been affected. The situation highlights vulnerabilities in water systems, stressing the need for secure technologies as these utilities increasingly rely on remote monitoring.

Authorities are actively working to identify the attackers and connect the incidents across the states mentioned.

Leave a Reply

Your email address will not be published. Required fields are marked *