The FBI Warns That Water Systems Were Hacked in Seven States This Week, as Trump Refutes the Iran Theory.

Featured Story

According to a joint public service announcement from the FBI and the Environmental Protection Agency, cyberattacks on municipal water systems were detected in at least seven states this week, with malicious activity degrading water operations in some cases. The feds declined to identify the states.
A water tower in Plymouth, Minnesota, was damaged on Thursday as a result of a cyberattack on the operating technologies of more than 30 water utilities throughout the state. Ellen Schmidt/AP Photo/Ellen Schmidt.

The warning comes just days after we reported that a “coordinated cyberattack” struck more than 30 community water systems in Minnesota on July 26-27, knocking the water plant in tiny Braham offline for a stretch, forcing Plymouth and South St. Paul to operate manually, and prompting Maple Plain to declare a local state of emergency, according to Just The News.

According to federal investigators, the plan was simple but effective: attackers remotely accessed internet-facing operational technologies, changed device IP addresses and passwords, and locked utility workers out of their own monitoring and control systems, NBC News reported. The PSA is now pleading with utilities to perform the very minimum: remove programmable logic controllers from the open internet and place them behind gateways and firewalls, use proper passwords, and limit which devices can communicate with one another.

(Yes, in 2026, a sizable proportion of the equipment managing America’s drinking water are still on the public internet, some with stupidly basic passwords.)

CISA followed up on Thursday with an advice warning that Iranian-affiliated actors are targeting key infrastructure in the United States, including water and wastewater systems – an update to guidance issued by the agency in April, which we previously covered. According to the cautionary notes, several of the larger water-sector incursions resulted in boil-water notices and forced plants to operate manually for longer periods of time. CISA’s top-line solution is the same one it has been using for years: restrict direct internet access to control systems.

Except that Washington cannot agree on who did it.

Multiple US sources have told ABC News that the Minnesota attacks could be related to Iran, and investigators’ preliminary findings apparently tilt in the same direction – with the proviso that this could change. Meanwhile, President Trump denied it. Speaking to reporters at Camp David on Friday, Trump dismissed the Iran theory – “Iran should be so lucky,” he said – and instead blamed Minnesota’s grossly incompetent and corrupt leadership under Gov. Tim Walz, claiming Tehran has bigger problems than the Gopher State’s pump stations.

Trump:

They like to remark, “Oh, this is Iran. Iran should be so fortunate.”

Iran has larger problems than worrying about Minnesota. https://t.co/4FnVLLzSmY pic.twitter.com/9HMP4RTcii — Adam Scott (@chefcascottccc) July 31, 2026

Cybersecurity Veteran Morgan Wright, creator of the National Center for Open and Unsolved Cases, told The Hill that Iran is the most likely culprit, citing the CISA advice as one indicator. Wright stated that while the United States may dominate on land and at sea, Tehran is able to punch above its weight class in cyberspace. Federal officials, for their part, warn that attribution requires thorough technical examination in conjunction with larger threat intelligence – otherwise, it appears to be the same nakedly transparent propaganda we’ve been given for decades (duh).

That being said, there is precedent, as noted in our Minnesota article, if we trust the official stories. In November 2023, the IRGC-linked CyberAv3ngers took control of a device at the Municipal Water Authority of Aliquippa in Pennsylvania. In early 2024, the Cyber Army of Russia Reborn claimed responsibility for attacks on water infrastructure in the United States and Poland, including a breach in Muleshoe, Texas that discharged tens of thousands of gallons of water. In October 2024, American Water, the country’s largest regulated water provider, shut down computer systems following a cyberattack. According to CISA, Beijing’s Volt Typhoon has stealthily pre-positioned itself inside vital infrastructure networks in the United States for several years. And only weeks ago, the Iranian MOIS-linked Handala persona claimed to have infiltrated California Water Service, which serves approximately 2 million consumers, exposing 5 terabytes of data, and then pledged via Tehran’s Press TV to continue targeting US industrial control systems.

Don't Miss

America’s Coming Double Dip

By StevieRay Hansen

www.zerohedge.com Soaring financial markets are blithely indifferent to lingering vulnerabilities in the US economy. But the impact of consumers’ fear of COVID-19 on pandemic-sensitive services are…

What Are You Going To Do As Our Money Dies?

By StevieRay Hansen

Central banks are killing our currency to protect the already-rich… Read moreFront-Month WTI Crude Crashes Below Zero For First Time EverIn our recent article It’s Time…

“Stand Down!” – How One Navy Seal Killed A Multi-Billion Hedge Fund

By StevieRay Hansen

It has now been revealed that the fall of Dan Kamensky’s Marble Ridge Capital was at the hands of a former Navy SEAL, turned trader. Joe…

World’s Biggest Sovereign Wealth Fund Lost $21 Billion In First Half 2020

By StevieRay Hansen

Readers may recall in April that Norway’s sovereign wealth fund, the world’s biggest, posted record losses for 1Q20 as the virus pandemic wreaked havoc on global markets.  For more color on the…

After “Extraordinary Event” Crushes Traders, Credit Suisse Forced To Accelerate “Berserk” NatGas ETN

By StevieRay Hansen

Following yesterday’s “berserk” price action in Credit Suisse’s 3x Inverse Natural Gas ETN, the Swiss banking giant has been forced to do something about it….

Posted in

Stevie Ray

Leave a Reply

Your email address will not be published. Required fields are marked *