Startups & Technology

Stolen credentials expose US water infrastructure to cyberattack

Stolen credentials expose US water infrastructure to cyberattack

SpyCloud analyzed 10,000 organizations registered with the Environmental Protection Agency, discovering that nearly one in five had credentials compromised by malware. At least 250 of these entities face immediate risk, as the stolen data includes access keys for remote systems that govern physical water pumps and flow controls. The threat extends through the supply chain; a single breach at one metering technology provider exposed login credentials for 167 distinct utility companies.

Infostealers bypass traditional security barriers by capturing session tokens, which allow attackers to impersonate legitimate users and often circumvent multi-factor authentication. Jason Lancaster, chief investigations officer at SpyCloud, noted that this allows criminals to gain access to numerous unrelated organizations through one point of failure. While recent high-profile water sector attacks have been linked to Iran-backed actors exploiting default manufacturer passwords, these findings indicate that stolen credentials represent a separate, equally pervasive vector for infiltration. Operators now face the dual challenge of hardening physical controllers while securing the digital identities of their workforce.

Share

Comments (0)

Leave a comment

No comments yet. Be the first!