RECENT cyberattacks targeting water systems across numerous U.S. states, potentially linked to Iranian threat actors, have exposed vulnerabilities in operational technology (OT) systems. Attacks have been confirmed in states including Minnesota, Georgia, Michigan, and others, with threat actors exploiting programmable logic controllers (PLCs) to lock out operators and disrupt services. While no significant disruptions to water supply have occurred, incidents have involved operational challenges for utilities.
Cybersecurity agencies like CISA have urged operators to protect these vulnerable systems by removing Internet exposure. The attacks appear to be aimed at causing fear rather than extensive damage, highlighting the necessity for improved cybersecurity and awareness in municipal water systems.