CISA says over 100 US water systems were targeted in July 2026 alone
Date:
Thu, 27 Aug 2026 13:20:00 +0000
Description:
Hackers are going for internet-connected PLCs, and CISA is urging agencies to take them off the public internet.
FULL STORY ======================================================================Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter CISA warned of rising cyberattacks on US water systems, targeting 100+ exposed PLCs in July 2026 Attacks caused password changes, IP reassignments, boil water notices, and manual operations Attribution uncertain, but reports suggest Iranian group; CISA urges removing PLCs from internet CISA has warned of a significant increase in cyberattacks targeting US water systems, urging organizations to implement mitigations, strengthen their security posture, and make sure
theyre resilient against these attempts.
CISA revealed it has seen hackers targeting more than 100 internet-exposed systems in the Water and Wastewater Systems (WWS) Sector, in July 2026 alone. These attacks see the threat actors targeting programmable logic controllers (PLC), industrial computers used to control physical processes such as regulating water pumps or valves, allowing operators to monitor and control machinery in critical infrastructure such as water and wastewater facilities, and by targeting them, the attackers can disrupt services and potentially
even create unsafe conditions for the citizens. Latest Videos From TechRadar Watch full video here: Blaming Iran In its writeup, CISA did not discuss who the threat actors are or what they are trying to achieve.
In a report by The Register , however, it was said that the attacks were most likely done by a single threat actor, an Iranian state-sponsored group. You may like Over 30 Minnesota utilities hit in coordinated cyberattack by apparent Iranian attackers Hackers are using evolved capabilities in AI-generated malware to hit US critical infrastructure Tehran-backed group breaches California Water Service, but claims they 'chose not to disrupt
water access'
The publication also said that facilities in at least 12 US states were targeted, and that these attacks are merely testing the waters for a larger campaign that is being prepared.
This is all in the domain of speculation, however. Attribution is notoriously difficult and until it is confirmed, CISA is focused mostly on providing immediate assistance to the targets: CISA urges critical infrastructure owners, operators, and integrators to remove publicly exposed PLCs and other operational technology (OT) from the internet as soon as possible, the agency wrote. Are you a pro? Subscribe to our newsletter Sign up to the TechRadar
Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed! Contact me with news and offers from other Future brands Receive email from us on behalf of our trusted partners or sponsors By submitting your information you agree to the Terms & Conditions and Privacy Policy and are aged 16 or over.
Threat actors targeting exposed PLCs have modified passwords to lock out operators and disconnected the PLCs by changing their IP addresses. This activity has resulted in boil water notices and sustained manual operations. The best antivirus for all budgets Our top picks, based on real-world testing and comparisons
Read our full guide to the best antivirus 1. Best overall: Bitdefender Total Security 2. Best for families: Norton 360 with LifeLock 3. Best for mobile: McAfee Mobile Security Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.
======================================================================
Link to news story:
https://www.techradar.com/pro/security/cisa-says-over-100-us-water-systems-wer e-targeted-in-july-2026-alone
--- Mystic BBS v1.12 A49 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)