CISA still finds water system controls exposed online amid multistate hacks
Brandon Bell/Getty Images
ByDavid DiMolfetta,
Cybersecurity Reporter, Nextgov/FCW
August 6, 2026 02:53 PM ET
The agency is working with the FBI to help victims but is not attributing the cyber intrusions to any group, acting director Nick Andersen told Nextgov/FCW.
LAS VEGAS — Federal cyber officials are still finding water system controls exposed to the public internet, even as the Cybersecurity and Infrastructure Security Agency and the FBI help utilities recover from a series of cyberattacks affecting at least 12 states, acting CISA Director Nick Andersen told Nextgov/FCW on Thursday.
“We’re seeing things like [programmable logic controllers] that are open and accessible on the internet with either no password set or default password set,” Andersen said in a brief interview on the sidelines of the Black Hat cybersecurity conference. “We’re not making ourselves hardened targets.”
Programmable logic controllers, commonly dubbed PLCs, are small...
Copyright of this story solely belongs to nextgov.com. To see the full text click HERE