Inside the North American Water Utility Hacking Crisis

Inside the North American Water Utility Hacking Crisis

Author: David Shipley August 5, 2026 Duration: 13:46
Inside the North American Water Utility Hacking Crisis: Iran Links, PLC Tactics, Insurance Fallout, and Volunteer Fixes
 
This special Cybersecurity Today episode examines the expanding wave of water utility intrusions across North America, including a WIRED-obtained memo linking attacks on Minnesota systems to Iran and a joint FBI/EPA alert reporting activity in at least seven U.S. states targeting internet-exposed Rockwell MicroLogix PLCs by rewriting configurations, altering passwords, and manipulating project files, with effects like loss of pressure, flooding, and tampered operator displays.
 
It also covers a separate Quebec incident in Saint-Noël shared by "Z Pen Test Alliance," where attackers adjusted chlorine settings and the plant entered safe mode without contamination.
 
The show reviews competing attributions (Cyber Avengers vs. Hondala), procurement and triage challenges for small utilities, an insurance war game simulating a mass water-sector crisis, concerns about uninsurability and act-of-war exclusions, and the DEF CON Franklin volunteer program helping rural utilities implement basics like password resets, MFA, and incident response plans.

00:00 Sponsor NordLayer
00:37 Deep Dive Setup
01:25 Iran Linked Water Hacks
02:27 Attack Mechanics Impact
03:38 Who Did It
04:13 Canadian Utility Breach
04:54 BSides Lessons Learned
05:51 Insurance War Game
07:59 Uninsurable Risk Fixes
09:00 DEF CON Franklin Volunteers
10:11 Franklin Findings Challenges
11:24 Local Sharing Next Steps
11:55 Wrap Up Listener Notes
12:46 Sponsor NordLayer Again

Every morning, Jim Love sifts through the noise of the digital world to bring you a clear, concise briefing on what actually matters. Cybersecurity Today isn't about fearmongering; it's about practical awareness. You'll hear straightforward analysis of the most recent attacks targeting companies, from sophisticated ransomware campaigns to stealthy data theft. Jim breaks down the implications of major breach disclosures, explaining not just what was stolen, but how it happened and who is affected. The focus remains on actionable intelligence-concrete steps and strategic thinking that can help protect your organization's data and infrastructure. This daily podcast serves as an essential filter for IT professionals, business leaders, and anyone responsible for digital assets, transforming complex threats into understandable insights. Tune in for a grounded perspective on navigating an online landscape where the risks are constantly evolving, and the need for clear, timely information has never been greater.
Author: Language: English Episodes: 50

Cybersecurity Today
Podcast Episodes
AI-Run Ransomware, New Oracle Critical Flaw, NetNut busted [not-audio_url] [/not-audio_url]

Duration: 14:26
AI-Run Ransomware, New Oracle 9.8 Flaw Exploited, NetNut Proxy Network Busted, and Pegasus Hits EU Spyware Investigator This episode covers researchers' report of "Jade Puffer," the first ransomware attack run end-to-end…