How did Iran manage to knock a UK power generator offline for four days, and what does it mean for other critical infrastructure? The experts weigh in
NCSC issues new warning over OT and edge devices
The UK power generation plant was taken offline for four days following a cyberattack, which has been attributed to Iran. This incident occurred shortly before the FBI issued a warning regarding Iranian attempts to hack critical infrastructure in the US. The UK government emphasized that there was no risk to the wider energy system, stating that the country has a highly resilient energy system and works closely with the energy sector to ensure the highest security standards.
Expert perspectives on the attack vary. Muhammad Yahya Patel, a vCISO and cybersecurity advisor, noted that attackers do not care about the size of an energy operator. He highlighted that the significance lies in the fact that a cyberattack led to four days of real-world operational disruption, regardless of the facility's size.
Patel also raised questions about the preparedness of smaller operators to contain and recover from such incidents, suggesting that their visibility might be lacking if they fall outside mandatory cyber-reporting thresholds.
Graeme Stewart, head of public sector at Check Point, emphasized that this marks a grave escalation in the Iran conflict. He stressed that a hostile state-linked cyber threat has reportedly reached into UK energy infrastructure and caused a physical shutdown, which should concern every organization responsible for maintaining essential services in the country.
Stewart highlighted the potential for this demonstration of the attackers' ability to penetrate UK infrastructure and stop it from functioning to be more significant than the size of the generator that was shut down.
Written by urgent.news from TechRadar's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.