Iran-Linked Hackers Force UK Power Plant Offline in Four-Day Attack as GCHQ NCSC Warns of Escalating Nationally Significant Cyberattacks
Iran-linked hackers forced a small UK power generator offline for four consecutive days last month, an incident The Telegraph first disclosed and described as the first successful shutdown of its kind against UK energy infrastructure; the UK government has not formally attributed the intrusion to Iran, with the linkage instead resting on private-sector threat-intelligence assessments
The four-day shutdown demonstrates method over scale: hackers linked to Iran's IRGC stayed under the threshold that triggers mandatory UK incident disclosure, exploiting a gap between regulatory reporting requirements and what adversaries can actually reach. Near-simultaneous Iran-linked intrusions into US water utilities across five states point toward coordinated probing of Western critical infrastructure rather than an isolated opportunistic breach, though the outage may equally reflect an unhardened, low-priority target rather than a deliberate capability demonstration. NCSC's disclosure that it now handles four nationally significant attacks weekly places this incident within a rising baseline rather than an outlier spike, but reporting traces to a single Telegraph disclosure republished without independent corroboration, leaving the Iran attribution itself resting on private-sector assessments the government has not formally endorsed.
5 sources
- Iran-Linked Hackers Force UK Power Plant Offline in Unprecedented Four-Day Cyberattack -
Cyber Security News - UK Power Plant Disabled for Four Days by Iran-Linked Hackers, Concurrent with US Water Attacks -
Security Affairs - Iran-Linked Hackers Shut Down UK Power Plant for Four Days -
SecurityWeek - Iran-linked cyberattack shut down a UK power plant -
The Register - Iran shut down a British power plant for four days in an unprecedented cyber attack -
The Telegraph