Iran-Linked Hackers Target Water Systems Across Multiple U.S. States
CyberAv3ngers, an Iran-linked hacking group, targeted water and wastewater utilities in several U.S. states, causing operational disruptions in Minnesota and New Jersey.
Cyberattacks targeting water and wastewater facilities have hit utilities across at least a dozen U.S. states, with evidence pointing to the Iran-linked group CyberAv3ngers. The attackers exploited vulnerabilities in widely used utility software to change passwords and lock out operators, blinding automated control systems in some regions.
In Minnesota, the coordinated attacks impacted more than 30 community water systems, leading to loss of water pressure and flooding. In New Jersey, two municipal water systems were forced into manual operations, though state officials reported no disruptions to service or water safety. Georgia utilities also detected intrusions, with the Clayton County Water Authority briefly issuing a boil-water advisory.
The New Jersey Cybersecurity and Communications Integration Cell is coordinating with the Federal Bureau of Investigation and the Cybersecurity and Infrastructure Security Agency to secure these systems. The Environmental Protection Agency has also issued nationwide warnings to the water sector. Investigators are currently determining if the attacks were conducted directly by Iran or by another state actor mimicking Iranian tactics to influence U.S. policy. To assist the response, Israel's cyber directorate is collaborating with U.S. officials to share insights from previous Iranian attempts to compromise Israeli critical infrastructure.