A coordinated cyberattack has hit water systems in several US states, prompting some utilities to issue boil-water notices and switch to manual mode, taking their systems offline. The attack, which is one of the most serious on US water systems in years, has caused concern among US officials.
Attack Details
The hackers are targeting internet-facing programmable logic controllers (PLCs), the devices that allow machinery to communicate at water facilities and other industrial plants. The US Cybersecurity and Infrastructure Security Agency (CISA), the FBI, and the Environmental Protection Agency have been working to help secure the water facilities and ensure the safety of drinking water.
The first public sign of the cyberattacks came from Minnesota authorities, who reported that hackers targeted about 30 water systems in the state. The hackers are believed to be targeting water entities of all sizes, according to CISA. US and state officials are treating Iran as one of the suspects behind the hack, but have not made a formal determination of who is responsible.
Roughly six states have reported related cyber incidents over the last week, according to multiple sources familiar with the investigation. The incident is another in a series of recent cyberattacks that have raised safety concerns for US water utilities.
Original reporting: KEYT (Ventura/Santa Barbara) — read the source article.