CISA says over 100 US water systems were targeted in July 2026 alone
- CISA warned of rising cyberattacks on US water systems, targeting 100+ exposed PLCs in July 2026
- Attacks caused password changes, IP reassignments, boil water notices, and manual operations
- Attribution uncertain, but reports suggest Iranian group; CISA urges removing PLCs from internet
CISA has warned of a “significant increase” in cyberattacks targeting US water systems, urging organizations to implement mitigations, strengthen their security posture, and make sure they’re resilient against these attempts.
CISA revealed it has seen hackers targeting more than 100 internet-exposed systems in the Water and Wastewater Systems (WWS) Sector, in July 2026 alone.
These attacks see the threat actors targeting programmable logic controllers (PLC), industrial computers used to control physical processes such as regulating water pumps or valves, allowing operators to monitor and control machinery in critical infrastructure such as water and wastewater facilities, and by targeting them, the attackers can disrupt services and potentially even create unsafe...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE