started · updated
Iran-linked cyberattacks target UK energy and US water infrastructure
Cyberattacks linked to Iranian actors have targeted critical infrastructure in both the United Kingdom and the United States. In the UK, a small power generator was reportedly forced offline for four days in July 2026. While the British government confirmed that a small energy producer was affected, officials emphasized that there was no threat to the national power supply and no widespread outages occurred. The National Cyber Security Centre (NCSC) has been notified and has provided guidance to energy company executives regarding additional protective measures.
Simultaneously, infrastructure in the United States faced significant disruptions. In late July 2026, hackers reportedly targeted water facilities in Arkansas and across more than a dozen other states, including Michigan, Minnesota, Georgia, New Jersey, and South Dakota. In some instances, attackers gained remote control over pumps and valves, forcing utilities to switch to manual operations. In Georgia, the intrusion caused a drop in water pressure, leading to boil water advisories. While these attacks targeted essential services, officials stated that water quality remained unaffected in the reported cases.
Entities
CyberAv3ngers · Michael Shanks · National Cyber Security Centre