Iran-Linked Hackers Are Sabotaging US Energy and Water Infrastructure


As US President Donald Trump threatens wholesale demolition of Iran’s infrastructure in the midst of an escalating war, Iran now appears to have already reciprocated with its own form of infrastructure sabotage: A hacking campaign hitting industrial control systems across the United States, including energy and water utilities, that US agencies say has had disruptive and costly effects.

In a joint advisory published Tuesday, a group of US agencies including the FBI, the National Security Agency, the Department of Energy, and the Cybersecurity and Infrastructure Security Agency warned that a group of hackers affiliated with the Iranian government has targeted industrial control devices used in a series of critical infrastructure targets including in the energy sector, water and wastewater utilities, and unspecified “government facilities.” According to the agencies, the hackers have targeted programmable logic controllers (PLCs)—a type of device designed to allow digital control of physical machinery—in those facilities, including those sold by industrial tech firm Rockwell Automation, with the apparent intention of sabotaging their systems.

By compromising those PLCs, the advisory warns, the hackers sought to change information on the displays of industrial control systems, which can in some scenarios cause system downtime, damage, or even dangerous conditions. “In a few cases, this activity has resulted in operational disruption and financial loss,” it reads.

When WIRED reached out to Rockwell Automation, a company spokesperson responded in a statement that it “takes seriously the security of its products and solutions and has been closely coordinating with government agencies in connection with” Tuesday’s advisory, and pointed to documents it has published for customers on how to better secure their PLCs.

Though the advisory doesn’t specify a particular group responsible for the hacking campaign, it notes that the attacks are similar to those carried out in by the Iran-linked group known as CyberAv3ngers, or the Shahid Kaveh Group, starting in late 2023. That team of hackers, believed to work in the service of the Iranian Revolutionary Guard Corps, inflicted several waves of attacks against Israeli and US targets in recent years, including gaining access to more than a hundred devices sold by industrial control system technology firm Unitronics and most commonly used in water and wastewater utilities.

This is a developing story, please check back for updates.



Source link

  • Related Posts

    Samsung’s Galaxy Watch Ultra 2 Might Come in 5G and 4G Cellular Models

    Samsung’s next high-end Galaxy Watch could support faster 5G speeds, but if this leak is true, it will depend on where you live. The rumored Samsung Galaxy Watch Ultra 2…

    Amazon is ending support for older Kindles and Kindle Fires

    Amazon has announced that starting on May 20th, 2026, Kindle e-readers and Kindle Fire devices released in 2012 and earlier will “no longer be able to purchase, borrow, or download…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    Sporting 0-1 Arsenal: Is David Raya the best goalkeeper in the world?

    Sporting 0-1 Arsenal: Is David Raya the best goalkeeper in the world?

    These Are The Highest Paid US Air Force Pilots Based On Their Rank

    These Are The Highest Paid US Air Force Pilots Based On Their Rank

    The Best Spring 2026 Shopping From Reformation, According to a Fashion Editor

    The Best Spring 2026 Shopping From Reformation, According to a Fashion Editor

    Pentagon Stays Mum on School Strike, Even as Trump Boasts of Iran Rescue

    Samsung’s Galaxy Watch Ultra 2 Might Come in 5G and 4G Cellular Models

    Samsung’s Galaxy Watch Ultra 2 Might Come in 5G and 4G Cellular Models

    Save 40% Off the Sony WH-1000XM5 Noise Canceling Wireless Headphones

    Save 40% Off the Sony WH-1000XM5 Noise Canceling Wireless Headphones