Happy Friday!
In this episode Talking Under Water the co-hosts discuss the recent coordinated cyberattacks targeting water and wastewater system PLCs across Minnesota and several other states, examining what happened, why it matters, and what utilities can learn from the incident. Bob Crossen and Alex Cossin break down reports that more than 30 Minnesota water systems were affected, with federal agencies now investigating activity across multiple states. The conversation explores how attackers targeted operational technology that helps run critical infrastructure such as pumps, wells, water towers, lift stations, and automated controls.
The hosts emphasize the most important takeaway from the attacks: despite operational disruptions, utilities successfully maintained safe drinking water by switching to manual operations. They discuss the growing importance of resilience as the industry adopts more digital tools, automation, and artificial intelligence, while highlighting the need to preserve operator expertise and manual control capabilities.
The episode also examines challenges facing smaller utilities, including limited staffing, funding constraints, and cybersecurity resources. Crossen and Cossin review guidance from agencies such as the FBI, CISA and EPA, including recommendations related to passwords, remote access, network segmentation, and operational technology security. They conclude by discussing ongoing questions surrounding the attacks, the role of manufacturers and communication during cybersecurity incidents, and the importance of supporting operators who helped maintain reliable service throughout the event.