CISA Says 100 Water Systems Were Targeted in July as Iran-Linked Hackers Hit PLCs
Updated
Updated · SecurityWeek · Aug 26
CISA Says 100 Water Systems Were Targeted in July as Iran-Linked Hackers Hit PLCs
3 articles · Updated · SecurityWeek · Aug 26
Summary
More than 100 internet-exposed water and wastewater systems were targeted in July, CISA said, offering the first federal count of the recent cyberattack wave.
PLCs connected directly to cellular modems were a common entry point, and the Iran-linked activity sought to disrupt operational technology rather than steal data.
At least 12 states appear to have been affected, with Minnesota, Michigan, South Dakota, Georgia, New Jersey and Alabama among those confirming targeting; CISA said no significant disruption resulted.
CISA urged operators to cut internet exposure, especially for OT and ICS, by removing unnecessary online access and securing systems that must stay connected with password changes, patches, MFA and monitored gateways.
The guidance follows recent CISA warnings about Iran-linked attacks on Siemens, Schneider Electric and Rockwell Automation industrial control systems, underscoring broader risks to critical infrastructure.
What hidden physical damages and flooding incidents occurred during the July 2026 water system cyberattacks that officials initially downplayed?
How did undocumented cellular modems turn local US water systems into an open playground for foreign hackers in July 2026?
Over 30 Water Systems Hacked: The July 2026 Cyberattacks, Iran’s Role, and America’s Infrastructure Crisis
Overview
In July 2026, U.S. water utilities suffered major cyberattacks after leaving critical control devices exposed online with default passwords and no network segmentation. Iran-backed hackers exploited these weaknesses, scanning for vulnerable systems and launching coordinated attacks as retaliation for a U.S.-Israeli military operation. The attacks caused pump failures and forced operators in places like Minnesota and Georgia to switch to manual controls, disrupting water service and triggering public warnings. Federal agencies responded with urgent security advisories, while Congress debated new regulations to strengthen water sector cybersecurity. Small utilities, lacking resources and expertise, remained especially at risk.