The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issues a warning to water and wastewater utilities about an increase in cyberattacks targeting internet-exposed programmable logic controllers (PLCs). CISA reports that attacks focus on PLCs used in operational technology (OT) environments and says the volume of activity has grown, raising the risk of disruptions to water and wastewater services.

One outlet reports that CISA’s notice follows coordinated intrusions in which attackers compromise multiple water systems in Minnesota. In response, CISA urges utilities to take steps to secure OT networks and controllers, particularly by addressing internet exposure of PLCs and strengthening defenses around these systems.

Across coverage, both sources describe CISA’s focus on protecting the water sector’s OT infrastructure from PLC-focused attacks. The guidance emphasizes that utilities should reduce exposure of control devices and improve safeguards to prevent attackers from interrupting operations. The reporting does not provide detailed technical indicators of compromise or confirm specific intrusion scope nationwide, but it frames the guidance as precautionary following observed incidents.