FBI Investigates Micro-Comm Data Breach of 850,000 Files
The FBI is investigating a ransomware attack on Micro-Comm that leaked 644 gigabytes of data, including information on government and military customers.
The Federal Bureau of Investigation is investigating a significant data breach at Micro-Comm, a Kansas-based manufacturer of programmable logic controllers used in wastewater processing facilities. The ransomware group Barracuda claimed responsibility for the attack, leaking approximately 644 gigabytes of data and 850,000 files on August 6.
Micro-Comm co-owner Jim Cote stated the company discovered the breach on July 31. While the incident coincided with a wave of Iranian-affiliated cyberattacks targeting water infrastructure across Minnesota and six other states in late July, the FBI informed the company that this specific breach was an opportunistic attack and not part of the Iranian campaign. Cote maintained that sensitive user passwords and remote access data were not compromised.
Despite these assurances, leaked files reportedly include diagrams and sensitive information regarding government customers and a U.S. military facility. The breach follows broader warnings from the Cybersecurity & Infrastructure Security Agency regarding hackers targeting programmable logic controllers within critical infrastructure.