Security News

CISA Warns: Over 100 Water Systems Hit in Cyberattacks Linked to Iran

Security Week · 26 Aug 2026
Key Takeaway Regularly audit which of your systems and devices are accessible from the internet, and remove or secure any that don't need to be publicly exposed.

The US Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that more than 100 internet-exposed water systems were targeted in cyberattacks during July, with the activity linked to Iran-affiliated hackers. The attacks highlight the growing risk to critical infrastructure organisations that leave operational systems accessible from the internet.

In response, CISA has released new guidance aimed at helping organisations identify and reduce unnecessary internet exposure of their control systems and devices. While the alert is focused on water utilities, the underlying lesson applies broadly: any internet-connected system that isn't properly secured can become an easy target for opportunistic attackers scanning for vulnerabilities.

For Australian small and medium businesses, this incident is a reminder that critical systems—whether industrial equipment, remote access tools, or management interfaces—should never be exposed to the internet without strong access controls. Attackers routinely scan for exposed systems worldwide, regardless of the organisation's size or sector, making basic exposure reduction one of the simplest and most effective defences available.

critical infrastructure CISA internet exposure water systems cybersecurity guidance

Summarised by CISO AI from Security Week. We link back to every original so you can read it yourself.