Malicious cyber activity targeting water systems in at least seven states has prompted renewed concerns about the security of America’s critical infrastructure. While investigators are still working to identify those responsible, the incidents have highlighted vulnerabilities in essential public utilities and underscored the importance of strengthening the nation’s cyber defenses.
This content is supported by your donations.
Give today.
From CBS News:
Malicious cyber activity affected technology at water systems in at least seven states in late July, including Minnesota and Michigan, forcing some utilities to switch to manual operations as state and federal authorities dig into who is behind the attack, CBS News has learned.
Investigators are probing to determine whether the activity is the work of Iranian hackers, according to U.S. officials and sources familiar with the incident. Sources cautioned that since they had not definitively attributed the attack, their assessment could change as additional technical evidence is collected. They are also probing whether the actor could have attempted to appear Iran-based as a way of stirring the pot amid the ongoing U.S. conflict with Iran.
The FBI reported incidents in “at least seven states” but didn’t identify them. On Saturday, Aug. 1, Michigan joined Minnesota in reporting cyberattacks on the state’s water systems but an official said all systems were operating “safely.”
The incidents come after years of warnings from federal agencies that America’s water infrastructure remains an attractive target for foreign adversaries and cybercriminals. In 2023, federal officials confirmed that hackers linked to Iran’s Islamic Revolutionary Guard Corps accessed multiple U.S. water and wastewater facilities by exploiting internet-connected industrial controllers that were still using default passwords. Those incidents prompted nationwide advisories urging utilities to strengthen cybersecurity and disconnect vulnerable operational technology from public-facing networks.
In response to the latest attacks, the FBI, the Environmental Protection Agency, and the Cybersecurity and Infrastructure Security Agency (CISA) issued a joint alert warning that cyber actors are increasingly targeting programmable logic controllers (PLCs) used by water and wastewater systems. CISA Acting Director Nick Anderson urged utilities to remove internet-exposed PLCs and other operational technology from the internet as quickly as possible. Although several affected communities temporarily switched to manual operations, officials reported no disruptions to drinking water quality or public health.
Whether the attacks ultimately prove to be the work of Iran, another foreign adversary, or a domestic actor, they serve as a reminder that America’s critical infrastructure faces constant threats. Water systems, power grids, transportation networks, and communication systems all require diligent protection against those seeking to sow chaos or weaken the nation. As investigators continue their work, Let’s pray for wisdom for officials, resilience for local communities, and vigilance for those responsible for safeguarding essential infrastructure.
Share your prayers and scriptures for America’s leaders and those protecting our critical infrastructure in the comments.
(Excerpt from CBS News. Photo Credit: Jason Richard on Unsplash)

