Iranian-linked hackers have breached multiple US water treatment facilities in the past two weeks. The attacks are attributed to a group tied to the Iranian government, targeting operational technology systems that control physical water infrastructure. This is not a ransomware shakedown. This is adversarial interference with systems that manage what comes out of your tap.

What makes this story worth reading in full is not just the who, but the how and the how-bad. TechCrunch breaks down which facilities were hit, what access the attackers actually gained, and where the line sits between a successful intrusion and a public health emergency. The gap between those two things is narrower than most people assume.

The United States water sector runs on aging, internet-connected control systems with historically weak security postures. These attacks expose that vulnerability at scale. Expect federal response guidance, expect more incidents, and expect this to be a recurring beat in critical infrastructure coverage for the foreseeable future.

[READ ORIGINAL →]