Hackers have targeted water systems in several US states in a coordinated cyberattack that has caused some utilities to issue boil-water notices and switch to manual mode, taking their systems offline, according to US officials. It’s one of the most serious cyberattacks on water systems in the US in years, according to some analysts. The US Cybersecurity and Infrastructure Security Agency (CISA), the FBI and the Environmental Protection Agency have for the last week been scrambling to try to help secure the water facilities and ensure that the safety of drinking water isn’t affected. No incidents of contamination have been reported. The hackers “are targeting water entities of all sizes,” CISA said in a warning Thursday that urged water facilities to get vulnerable industrial equipment offline. US and state officials are treating Iran as one of the suspects behind the hack, but have not made a formal determination of who is responsible and are wary of false flags. The first public sign of the cyberattacks came from Minnesota authorities, who said that hackers on Sunday night and Monday morning targeted about 30 water systems in that state. The “likely desired impact” of the hackers’ intrusion at the water facilities was “to cause loss of system pressure and subsequent potential contamination of water supply,” said the memo distributed this week by the Minnesota Bureau of Criminal Apprehension and obtained by CNN. At a cabinet meeting Friday, President Donald Trump blamed Minnesota authorities for the hack and cast doubt on whether Iran was involved. “They like to say, “Oh, it’s Iran.’” Trump said. “Iran should be so lucky. Iran’s got bigger problems than worrying about Minnesota.” The New York Times first reported on the possible Iran connection. The hackers are targeting internet-facing programmable logic controllers (PLCs), the devices that allow machinery to
Sweeping cyberattack on water systems in multiple states has US officials on edge
Read the original article
cnn.com →