HeadlinesBriefing favicon HeadlinesBriefing.com

UK Energy Firms Alerted After Iran-Linked Hack Shuts Small Facility

Financial Times Companies •
×

Britain’s power companies have been put on alert after hackers thought to be affiliated with the Iranian regime shut down a small UK energy facility. Energy bosses have been briefed by Britain’s security chiefs on the successful cyber attack “with advice, direction and next steps”, the government said on Sunday. British officials did not deny a report in the Sunday Telegraph that the attack closed down the unnamed site for four days and that Iranian-linked hackers were believed to be responsible.

Although the UK energy department insisted that the attack was focused on a small plant with no significance to the national energy system, the National Cyber Security Centre, a branch of signals intelligence agency GCHQ, is involved in the response. “In response to this specific incident, the NCSC and Department for Energy Security and Net Zero briefed energy CEOs and directly wrote to companies with advice, direction and next steps,” the government said. A person familiar with the matter pointed out that the government statement referred to a “small-scale energy generator” rather than a commercial power plant or a power station. The Telegraph reported that the incident took place at the same time as a series of attacks on US water infrastructure last month, which affected 12 states and caused concern in the White House.

UK officials declined to say where or when the cyber attack took place, but one insisted: “We have thresholds for important generators to legally notify us of cyber activity, and this site is nowhere near.”“It’s a very small-scale site, less than a rounding error compared to grid capacity,” the person added. However, the official confirmed that security officials and the government had been notified of the cyber attack. The government said: “Plans are in place to ensure the resilience of UK energy supply in the highly unlikely event of significant disruption, regardless of the cause.”The Iranian embassy in London did not immediately respond to a request for comment.

The attacks against US water systems last month were thought to be orchestrated by a group called Cyber Av3ngers operated by Iran’s Islamic Revolutionary Guard Corps, which was proscribed in the UK last month. They attacked “programmable logic controllers” — industrial computers that manage water pumps, pressure and treatment processes for water utilities. The attackers gained access and changed passwords, locking the administrators out and forcing the facilities to shut down while they launched a reboot.

This Iranian group had been prowling around US infrastructure for several months, resulting in warnings from US authorities since as early as April. Recommended Special Report Risk Management: Cyber Security The UK government said Britain had one of the most reliable electricity systems in the world and that it played a fundamental part in national security.“We work continually to reduce the vulnerability of our energy infrastructure and ensure effective responses to disruptive incidents, taking account of a wide range of hazards and the evolving threat landscape,” it said. Ministers are working on an Energy Resilience Strategy for publication later this year, which sets out a plan for ensuring the energy system remains resilient to risks including climate change, technological advancements and political threats.

The government said: “The UK has a highly resilient energy system. We work closely with the energy sector to protect infrastructure and ensure high security standards.“This story refers to an incident impacting a small-scale energy generator. At no point was there a risk to the wider energy system.