
Late last week, federal authorities issued an alert regarding coordinated cyberattacks on water and wastewater systems across at least seven states. Minnesota experienced the most significant impact, with approximately 30 of its water utilities affected by the incidents. The disruptions resulted in reduced water pressure in some residential areas and prompted certain utilities to issue boil-water notices, though no confirmed cases of drinking water contamination were reported.
The US Cybersecurity and Infrastructure Security Agency (Cisa) noted that threat actors were targeting water entities of various sizes. Agency officials attributed much of the vulnerability to internet-connected systems at water facilities, which enabled attackers to modify credentials and lock out legitimate operators. Cisa recommended that utilities take affected systems offline and transition to manual operations as a protective measure.
Government officials speaking anonymously to news outlets identified Iran as the suspected source of the coordinated attack, citing a pattern of increased cyber activity against US infrastructure following the start of a regional conflict nearly six months ago. However, the FBI and other law enforcement agencies have not publicly confirmed accusations against Iran or identified specific hacking groups responsible for the incidents. Cisa previously issued warnings in April about Iranian-affiliated cyber threats targeting critical infrastructure, with an updated advisory on 22 July providing additional security guidance.
The incidents prompted political disagreement regarding responsibility. During a cabinet meeting last Friday at Camp David, former President Donald Trump attributed the attacks to Minnesota’s competence, while Minnesota Governor Tim Walz responded on social media, characterizing the breach as modern warfare and criticizing a lack of federal planning.
Cyber-attacks on water infrastructure have occurred repeatedly in recent years, including incidents linked to Russian actors in Texas in 2024 and Iranian-linked groups targeting Pennsylvania systems in 2023 and 2024. Industry groups and cybersecurity experts have called for increased federal investment in critical infrastructure defense, with the Operational Technology Cybersecurity Coalition urging Congress to extend and fund a state and local cybersecurity grant program set to expire in September.
Article Attribution | Read More at Article Source
Article summary produced by Claude AI