A critical infrastructure attack occurred at Sage Water Resources in Utah, where workers prevented malicious changes to an automated controller at an oilfield wastewater disposal site. The intrusion, reported to have taken place on March 15, involved alterations to the programmable logic controller’s safety logic, which could have led to equipment failure.
Sage Energy Partners' CFO, Steve Crower, highlighted that the attackers bypassed shutdown protections, allowing pumps to continue running while indicating normal operation. The incident was disclosed in June, with further details emerging in an email to DysruptionHub.