The United States has imposed sanctions on several Iranian nationals linked to cyberattacks on critical infrastructure. This development comes shortly after a cyber intrusion targeted a power plant in the United Kingdom. The sanctions were announced by Treasury Secretary Scott Bessent, who detailed measures aimed at pressuring Iran amid ongoing geopolitical tensions. The individuals sanctioned are accused of being part of a hacking operation within Iran's Ministry of Intelligence and Security. This group has been active since 2023, targeting sectors such as energy, defense, healthcare, and finance in the US. Notably, they have also breached government offices and engaged in financially motivated cyber theft.
The Treasury Department highlighted that these actors conducted extensive compromises of US critical infrastructure. They are also accused of targeting Iranian companies and cryptocurrency theft. Recent allegations include attacks on water systems across 12 US states and a prominent medical device company. Iranian hackers have also targeted US allies, with a reported attack shutting down a small British power plant for four days. Although there was no loss of power, the incident raised concerns about the vulnerability of critical infrastructure.
UK Energy Minister Michael Shanks has informed energy sector leaders and advised companies on enhancing security measures. Meanwhile, the FBI and NSA have warned about threats to operational technology like programmable logic controllers, essential in industries such as energy and agriculture. Markus Mueller from Nozomi Networks emphasized the potential risks if adversaries compromise key systems controlling turbines or boilers. This situation underscores the need for robust cybersecurity defenses to protect vital infrastructure.


