U.S. agencies warn of ai-driven cyberattacks targeting water systems
Source: IT之家 (ITHome)21/08/2026, 08:27
U.S. cybersecurity agencies have issued a warning that hackers are using artificial intelligence to target water systems across the country.
The Federal Bureau of Investigation, the National Security Agency, and the Cybersecurity and Infrastructure Security Agency (CISA) have reported that cybercriminals are actively infiltrating Siemens S7 programmable logic controllers, which are used to manage automated processes in energy, water, manufacturing, and agriculture.
The agencies emphasized that the attacks are targeting all instances of these devices, which could lead to system outages or safety risks if compromised. Hackers are leveraging AI to generate exploit scripts and identify vulnerable controllers based on publicly available information.
Older systems running outdated software or lacking adequate security measures are particularly at risk. CISA has long advised critical infrastructure operators to avoid direct internet connections for these devices, noting that rural areas are more susceptible to attacks due to the extensive coverage required for their infrastructure.
A cybersecurity professional highlighted that attackers are now using AI to understand how these devices operate, raising concerns about the potential for more sophisticated attacks.
Despite the weak inherent security of these devices, the threat has intensified in recent months, with suspected Iranian hackers launching multiple attacks on U.S. water and wastewater facilities. Several states, including Minnesota, Michigan, Arkansas, Georgia, and New Jersey, have reported breaches of their water infrastructure.
CISA has issued this latest warning in response to a series of recent cyberattacks on critical infrastructure, noting that the frequency and intensity of such attacks have increased since Iranian hackers first targeted connected systems within the country.