THE Cybersecurity and Infrastructure Security Agency (CISA) has reported that over 100 internet-exposed water systems were targeted in cyberattacks in July 2026, primarily involving programmable logic controllers (PLCs) connected to cellular modems. This marks a significant concern as it highlights the vulnerabilities within operational technology (OT) systems in the water sector.
While these attacks did not cause significant disruption, they involved at least 12 states including Minnesota, Michigan, South Dakota, Georgia, New Jersey, and Alabama. CISA advises organizations to reduce their internet exposure by auditing accessible systems, enforcing strong security protocols, and monitoring traffic. The latest guidance follows previous warnings about Iranian threat actors targeting ICS devices.