As cited
Copy frozen at (site build).
ot ics
More than 100 water systems were hit in July cyberattacks
Cyberattacks targeting over 100 internet-exposed water and wastewater systems occurred in July 2026, primarily affecting small rural utilities across multiple U.S. states. Attackers exploited programmable logic controllers (PLCs) connected directly to cellular modems or the internet, a configuration that creates significant operational technology security risks. The Cybersecurity and Infrastructure Security Agency (CISA) has not formally attributed the campaign but recommended disconnecting PLCs from the internet and routing any remote access through virtual private network (VPN) gateways or dedicated appliances.
Why it matters: Water utilities and operators of programmable logic controllers face immediate risk from ongoing attacks; practitioners should disconnect internet-exposed PLCs, implement VPN-based access controls, and apply the Cybersecurity and Infrastructure Security Agency (CISA) recommendations to isolate operational technology from direct internet exposure.
- Source published
- First seen by Cybersecurity Tracker