The US governmentβs security agencies have issued a stark warning: hackers are using artificial intelligence to target vulnerable Siemens programmable logic controllers in critical infrastructure, including water systems across the country. These devices control automated processes in energy, manufacturing and agriculture.
CISA, alongside the FBI and NSA, has identified that all Siemens S7 controllers are at risk due to out-of-date software or poor security measures. The potential consequences of these attacks are dire, with possible downtime, safety incidents, or even equipment damage to critical infrastructure relying on such devices.
Agency officials have emphasized the need for owners of this infrastructure to disconnect these devices from the internet and regularly update their software. However, rural communities are often at higher risk due to larger geographic areas serviced by single systems. An incident response professional noted that while AI can help hackers identify vulnerable targets, the underlying issues with security remain deeply concerning.
This latest warning comes after a series of cyberattacks by suspected Iranian hackers targeting US water suppliers and wastewater providers over recent months. Officials across the nation have reported intrusions at facilities in Minnesota, Michigan, Arkansas, Georgia, and New Jersey.







