Original briefings. Zero spin.
Every story is an original briefing written from 60+ sources across the spectrum — sources linked so you can verify it yourself.
Feds Say Iran-Linked Hackers Are Breaking Into US Water and Energy Control Systems

The FBI, NSA, Department of Energy, and CISA updated a joint advisory Wednesday warning that Iranian government-linked hackers are actively breaking into industrial control systems at American water and energy providers, according to TechCrunch.
What Actually Happened
According to the advisory, Iranian hackers are targeting programmable logic controllers, the small computers that run physical processes like water pumps and power equipment, on networks connected to the internet. Getting into these controllers lets hackers mess with the data operators see on their screens, causing outages and disruptions.
The FBI said hackers broke into one critical infrastructure provider and rewrote controller programming logic to disable processes that handle critical shutdowns and alarms. Systems could enter unsafe conditions with zero warning to the humans running them, per the FBI's account in the advisory.
The agencies didn't name the specific provider or say whether the disabled safety systems caused actual harm. That's a real gap. Knowing whether this was caught before consequences, or after, changes how serious this specific incident was.
Who's Affected Now
When this campaign first surfaced earlier this year, the hackers were going after controllers made by Rockwell. The updated advisory now includes Schneider Electric and Siemens equipment too, according to TechCrunch. The agencies said potentially all internet-exposed industrial control systems could be at risk, and they're telling infrastructure owners to act.
If your water or energy utility has equipment reachable from the internet, you're a target regardless of brand.
Why Iran, Why Now
The advisory ties this activity to the ongoing war between Iran and the U.S. and Israel, which TechCrunch reports began in February. Federal agencies say the disruptive hacking is likely retaliation tied to that conflict. This should be treated as attribution, not proof beyond the agencies' own assessment.
This fits a pattern. Iranian government hackers and their proxies have run a range of operations across the region since the start of the war, per TechCrunch's reporting. Some are classic espionage and hack-and-leak jobs, like the leak of FBI Director Kash Patel's personal email contents. Others are destructive.
The most damaging example so far: a hack on medical tech giant Stryker that let the Iranian-linked group Handala remotely wipe tens of thousands of employee devices, according to TechCrunch.
Handala also claimed credit for a June data breach at California water provider Cal Water, and said it could have disrupted the water supply. Cal Water pushed back hard on that claim. The company said it found no evidence of unauthorized access to the operational networks that actually control water delivery, according to TechCrunch. Handala provided no evidence to support its claim either.
A hacking group claiming it could have caused a water disruption is very different from a hacking group proving it did. Cal Water's denial, and the lack of evidence from Handala, means that specific claim remains unverified.
The Real Vulnerability
There's a decades-old infrastructure problem underneath this: too much critical equipment, water pumps, power grid controllers, is connected to the internet when it doesn't need to be. Security researchers have flagged this for years across administrations of both parties. It's not a partisan failure. It's a maintenance and procurement failure at the utility level, often driven by cost and convenience.
The federal government's advisory is essentially telling utility operators what security professionals have said forever. Air-gap what you can, patch what you can't, and stop assuming a firewall alone stops a nation-state actor.
What's unresolved is scope. The advisory doesn't specify how many providers have been compromised, how many controllers were altered, or whether any U.S. community actually lost water or power service as a result. CISA, the FBI, NSA, and Department of Energy have not released a public tally. Until they do, or until a specific utility confirms a disruption reached customers, the practical impact on ordinary Americans remains an open question, even as the technical capability described in the advisory is real and documented.
Sources used for this briefing
This briefing was written by UBH's AI agent — these are the reporting inputs it draws on, linked so you can verify.