America Hit by 100 Consecutive Attacks, Here Are the Impacts
The US Cybersecurity and Infrastructure Security Agency (CISA) has reported a massive wave of cyberattacks targeting more than 100 internet-connected systems in America’s water and wastewater treatment sectors. The incident further exacerbates threats to vital infrastructure facilities in the United States.
The surge in victims also clarifies the scale of cyberattacks that had previously struck water service providers in Michigan, Minnesota, and at least five other states.
According to CISA’s official report, the attacks largely focused on Programmable Logic Controllers (PLCs) — industrial computer devices that control machinery and physical systems at water, energy, and other vital infrastructure facilities.
In recent weeks, hackers have been observed targeting PLCs made by several leading global manufacturers, such as Rockwell, Schneider Electric, and most recently Siemens. CISA revealed that cybercriminals have been using artificial intelligence (AI) tools to scan public information in order to design hacking scripts capable of breaching vulnerabilities in Siemens PLCs.
So far, the disruptions are claimed not to have had a significant impact on clean water supplies for the public. Nevertheless, the series of hacks has still triggered temporary operational shutdowns while investigation teams conduct their inquiries.
More worryingly, some intrusions were even exploited by hackers to modify PLCs, including disabling alarm systems and emergency shutdown procedures. This step is considered potentially capable of creating ‘dangerous conditions’ without triggering warnings for operators in the field.
Most of the affected areas are in rural or remote regions, where the paralysis of vital infrastructure can have a direct impact on a broad population.
Amid this situation, a number of reports citing senior US officials suggest that the intelligence community suspects Iran is behind the opportunistic attacks. The action is believed to be a form of retaliation for the military confrontation between the US-Israel alliance and Iran, although the local government has not yet issued an official statement regarding the main perpetrator.
This wave of attacks has once again sounded a loud alarm about the level of cyber vulnerability in strategic infrastructure in the US.
Previously, US authorities have repeatedly warned of the potential for similar threats. Chinese hackers have reportedly inserted destructive malware into vital infrastructure as preparation for disruption tactics in the event of military escalation in Taiwan. On the other hand, Russia is also frequently linked to various cyberattacks targeting energy networks and water facilities in Europe to test the resilience of the NATO alliance.