Skip to main content
  1. Home
  2. Computing
  3. Legacy Archives

Cyber attack targets Illinois water station, damages water pump

Add as a preferred source on Google
water plant shutterstock
Image used with permission by copyright holder

A hacker or group of hackers managed to infiltrate the network of a water station in Springfield, Illinois, and caused damage to a water pump, reports the Washington Post. The attack appears to be the first time a cyber attack has caused this kind of damage to a computer system in the US.

The attack was first discovered on Nov. 8, when a municipal water district employee discovered a problem with the city’s Supervisory Control and Data Acquisition System (SCADA). As Wired reports, the system repeatedly turned on and off, which caused the water pump to burnout. A technician later discovered that its system had been infiltrated, possibly as early as September.

Recommended Videos

The attack appears to have been launched from an IP address located in Russia, though it’s possible that the hacker or hackers who waged the attack are physically located elsewhere, and simply waged a proxy attack to make it appear as though Russia was the base of operations.

Access to the water plant’s system was done by hacking into the network of the software vendor that makes the SCADA system. Usernames and passwords for the water utility were stolen, and used to access the utility’s system remotely. It is possible that other SCADA systems are at risk of intrusion, or may have already been breeched.

“It is unknown, at this time, the number of SCADA usernames and passwords acquired from the software company’s database and if any additional SCADA systems have been attacked as a result of this theft,” according to a report of the incident obtained by Joe Weiss of Applied Control Solutions. Weiss read this portion of the report to Wired.

So far, the name of the software company that was hacked has not been released, but we do know that it is a vendor in the US. According to Weiss, the company that was hacked could have access to user login information, not only for utility companies, but also for the systems that control US nuclear weapons.

Officially, the Department of Homeland Security is keeping its lips tight on the matter. They have so far refused to say that the burnout of the water pump was a direct cause of the hack. And they say there is not yet any reason to be worried about more destructive consequences resulting from the breech.

“DHS and the FBI are gathering facts surrounding the report of a water pump failure in Springfield, Illinois,” said DHS spokesman Peter Boogaard in a statement. “At this time there is no credible corroborated data that indicates a risk to critical infrastructure entities or a threat to public safety.”

The breech of this SCADA system is the first time an industrial control system has been infiltrated in the US. The most direct comparison is the breech of a uranium enrichment plant in Iran that was carried out through the use of the infamous Stuxnet worm.

[Image via Andrey Kekyalyaynen/Shutterstock]

Andrew Couts
Features Editor for Digital Trends, Andrew Couts covers a wide swath of consumer technology topics, with particular focus on…
TSMC might set up a price hike that could come straight for your next phone, laptop, or tablet
Here's what TSMC's rumored 10% chip price increase actually means in dollar terms, and why your next phone or laptop could end up costing more.
TSMC Fab

My wallet flinched the second I saw the words "TSMC" and "price increase" in the same headline, and honestly, yours should too.

Turns out the company behind the silicon powering basically every flagship device out there, including Apple’s A-series and Qualcomm’s Snapdragon processors, is reportedly about to make all of it a little pricier.

Read more
Apple fixes Hide My Email bug that exposed users’ real email addresses
Here's how Apple's Hide My Email flaw leaked real addresses for over a year, and why it only got fixed once the story went public.
apple-merging-sign-in-with-apple-hide-my-email-icloud+

Turns out the "Hide" part of Hide My Email wasn't doing its job quite as advertised, something that I covered early in July. Security researcher Tyler Murphy reported the flaw in June 2025, but despite Apple claiming it was resolved in March 2026, independent tests confirmed it remained exploitable, at least until July 3, 2026.

So how did this bug actually work?

Read more
Gemini Notebook’s new Collections arrive just as Google turns it into a bigger workspace
Google is cleaning up notebook organization as the former NotebookLM expands across Gemini and Search
Gemini Notebook branding on a MacBook

Google has barely finished renaming NotebookLM, and it’s already addressing one of the headaches that comes with building a large research library.

Collections are rolling out to all Gemini Notebook users, giving them a way to group related notebooks while keeping everything visible under My Notebooks. The dashboard gets some structure without asking users to rearrange the library they’ve already built.

Read more