Cyberattacks recently targeted more than 30 water systems in Minnesota and nine in Michigan. While federal agencies investigate the source, officials state that public health remains protected and systems are operating safely.

Advertisement

The Iranian threat to US water and wastewater controls

The Cybersecurity and Infrastructure Security Agency (CISA) and the FBI recently issued an adviisory warning that Iranian hackers have been focusing their efforts on water and wastewater systems. According to the report,these actors are specifically targeting the operational technology (OT) and controls used to manage critical infrastructure. This trend reflects a broader shift toward attacking the physical machinery of government services rather than just stealing data.

The attacks in the Midwest primarily targeted the technology that water systems use to remotely monitor and control equipment. by infiltrating these remote access points, attackers can potentially disrupt the flow of water or alter chemical treatments, though officials in this instance reported no public health concerns.

From Braham's outage to Plymouth's communication failures

The real-world impact of these breaches varied by municipality.. In the city of Braham, Minnesota—a community of roughly 1,700 people—attackers shut down the operating controls for the well and water treatment plant. As reported,this forced the city to rely solely on water stored in its water tower for several hours on Monday, prompting a request for residents to minimize water usage.

In Plymouth, Minnesota, a larger city of approximately 80,000 residents, the cyberattack targeted infrastructure communications. City officials announced via social media that these communications were restored by Tuesday afternoon. Despite these disruptions, Minnesota IT Services confirmed that as of Thursday, no residents were required to modify their drinking water usage.

The clash between Donald Trump and Governor Tim Walz

The security breach quickly became a political flashpoint. While speaking at the Camp David presidential retreat in Maryland, Donald Trump claimed that the cyberattacks in Minnesota were the fault of the state government and Governor Tim Walz. Trump offered no evidence to support the claim that the state administration was responsible for the vulnerabilities.

Governor Tim Walz responded to these allegations on social media, asserting that Donald Trump is aware of who is actually responsible for the attakcs. Walz further noted that the cyberattacks were not isolated to Minnesota, pointing to the similar breaches occurring in other states.

The FBI's silence on the specific culprits

While the CISA advisory pointed toward Iranian actors,the FBI has not officially named the perpetrator of the Minnesota and Michigan attacks. A spokesperson for the FBI declined to identify the responsible party when questioned on Thursday, leaving a gap between the general intelligence warnings and the specific forensic evidence of these cases.

It remains unclear exactly how the attackers gained access to the nine Michigan water systems, though the state received a federal cyber alert on Tuesday regarding attempts to tamper with operational technology. The report says Michigan officials addressed the issues through local operators, but the specific entry point used by the hackers has not been publicly disclosed.