dispel.com Cyberattacks Target Small U.S. Water Utilities via Exposed PLCs
Article Content
- •Over 30 Minnesota water utilities reported cyberattacks in July 2026.
- •Attackers exploited exposed PLCs using default credentials, locking operators out.
- •Dispel's new program aims to enhance cybersecurity for small utilities.
In late July 2026, over 30 municipal water utilities in Minnesota experienced cyberattacks, where attackers exploited internet-exposed programmable logic controllers (PLCs) using default or missing credentials. The attackers altered configurations and locked operators out of their equipment, highlighting vulnerabilities in small utilities that lack dedicated cybersecurity resources. In response, Dispel launched the Community Power & Water Program to provide secure remote access solutions tailored for small water and electric utilities. This program aims to help these utilities protect themselves from similar threats without extensive infrastructure changes. The incidents align with a federal advisory from CISA warning about the risks associated with internet-exposed PLCs. As of now, the Minnesota incidents have not been formally attributed to any specific threat actor. The situation underscores the urgent need for improved cybersecurity measures in the critical infrastructure sector, particularly for smaller utilities.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Handala in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Iranian Hackers Disable UK Power Plant for Four Days Hackers linked to Iran successfully shut down a small British power plant for four days, marking the first known cyberattack of its kind against UK energy infrastructure. The incident occurred last month and coincided with a series of cyberattacks targeting water infrastructure across 12 states in the US. British…