U.S. government security agencies are warning that hackers are actively breaking into Siemens programmable logic controllers used in critical infrastructure, including water systems, with the help of artificial intelligence. The Cybersecurity and Infrastructure Security Agency, known as CISA, along with the FBI and the National Security Agency, issued the warning on Wednesday. The agencies said the hackers are targeting all Siemens S7 programmable logic controllers, which are devices used to control automated physical processes in energy, water systems, manufacturing, and agriculture. The activity is part of a broader campaign against water supply and wastewater systems across the United States.
According to CISA, the attacks could result in downtime, safety incidents, or equipment damage to critical infrastructure that depends on these devices. The agencies said the hackers are using AI to generate exploit scripts that rely on publicly available information to find and exploit vulnerable controllers running out-of-date software or otherwise poorly secured. CISA has long advised owners of critical infrastructure to keep these devices disconnected from the internet. Officials have also acknowledged that rural communities are often the hardest hit because these systems cover large geographic areas.
An incident response professional who works with critical infrastructure told TechCrunch that it was noteworthy that hackers are using AI to identify and target vulnerable controllers and to understand how these devices work. The professional cautioned, however, that these devices are already highly vulnerable to begin with. This latest warning follows a series of cyberattacks by suspected Iranian hackers targeting U.S. water suppliers and wastewater providers in recent months. CISA said the attacks have escalated since Iranian hackers first targeted internet-connected systems used in critical infrastructure.
Officials across the U.S. have reported intrusions at water facilities in multiple states, including Minnesota, Michigan, Arkansas, Georgia, and New Jersey. The warning underscores the ongoing threat to American water infrastructure, which relies heavily on industrial control systems from vendors like Siemens. The agencies have not specified the exact number of affected facilities or the full scope of the intrusions. They are urging operators of critical infrastructure to review their security measures and ensure these devices are not exposed to the internet. The use of AI in these attacks marks a notable shift in how hackers are targeting industrial systems, though the underlying vulnerabilities remain a long-standing concern for the sector.
More cybersecurity news from TechManNews.







