US warns of attacks on industrial control systems
Iran-linked hackers are targeting internet-connected equipment used by American water and energy providers.

A cyberattack on office systems can expose data. An attack on industrial controls can alter the physical processes that keep water, electricity and other essential services running.
What happened
US agencies warned that Iran-linked hackers are compromising internet-connected industrial control systems used by water and energy providers.
The affected equipment includes programmable controllers made by Rockwell, Schneider Electric and Siemens. In one case, attackers reportedly changed controller logic in a way that disabled shutdown and alarm processes, creating the possibility that equipment could enter an unsafe state without notifying operators.
The warning focuses on systems exposed to the internet or protected by weak credentials rather than on a newly discovered flaw in one specific product.
Why it matters
Many industrial environments rely on equipment designed for long operating lives and physical reliability, not modern internet exposure. Replacing those systems can be expensive, so operators often connect older controllers to newer networks.
That creates a dangerous gap. A relatively simple compromise can have consequences far beyond stolen files if attackers can change pressure, flow, temperature or safety settings.
The bigger picture
Operational-technology security is becoming a strategic market as energy grids, factories and utilities become more connected. Traditional IT tools are often poorly suited to environments where downtime is costly and devices cannot be patched frequently.
The advisory strengthens the case for network segmentation, multifactor authentication, asset visibility and specialised monitoring. It also shows why critical-infrastructure cybersecurity is increasingly treated as a national-security issue rather than an ordinary enterprise-software problem.
