U.S. investigating whether Iran was behind cyberattack on Minnesota water systems
Key Points:
- Malicious cyber activity disrupted technology at over 30 community water systems across Minnesota, forcing some utilities to switch to manual operations while investigations into the attack's origin continue.
- U.S. officials are probing whether Iranian hackers are behind the attack, but no definitive attribution has been made; the incident also appears to affect water utilities in at least seven other states.
- The cyberattacks targeted programmable logic controllers (PLCs) used for remote monitoring and control of water systems, causing loss of monitoring functionality and operational disruptions, though no water supply contamination has been reported.
- Federal agencies including the FBI, EPA, and CISA have warned about increased targeting of internet-exposed industrial controllers in water utilities and urged operators to remove such devices from public internet access immediately.
- Affected municipalities like South St. Paul, Braham, and Plymouth reported no interruptions to water quality or delivery, as they implemented contingency plans and manual operations to maintain service during the cyber incidents.