London Daily

Focus on the big picture.
Monday, Feb 23, 2026

Cybercriminals are selling access to water treatment plants like the one hacked in Florida — here's why experts think the problem could get worse

Cybercriminals are selling access to water treatment plants like the one hacked in Florida — here's why experts think the problem could get worse

Experts expect that "we'll see more news of attack scenarios and how those attacks can be monetized" because of ongoing security vulnerabilities.
Cybercriminals in underground forums have offered to sell access to hacked systems that control US power plants and water treatment systems, according to a new report from the threat intelligence firm Intel 471. Hackers likely took advantage of common security vulnerabilities in these systems, experts say — and they fear that such attacks could become more common as bad actors find ways to monetize the hacks.

The systems that cybercriminals offered access to bore a striking resemblance to the Oldsmar, Florida water treatment plant that was compromised by a hacker last week. Law enforcement officials said an unknown intruder gained access to software used by plant managers to remotely control its systems and attempted to raise the amount of sodium hydroxide — also known as lye — in the drinking water to dangerous levels.

Intel 471 researchers were careful to note that they don't have hard evidence proving that the cybercriminals offering access to hacked industrial systems are the same ones who hacked the Oldsmar plant. But their findings illustrate broader cyber vulnerabilities in US systems that control infrastructure. For years, experts have sounded alarm bells about potential issues with these so-called Supervisory Control and Data Acquisition systems (or SCADA systems), which monitor and control machines in the field.

"Attacks on SCADA systems are not new," an Intel 471 spokesperson said in response to emailed questions from Insider following the report. "It is often easy for non-sophisticated threat actors to identify internet-facing SCADA systems and gain access with very little effort."

In one instance logged by Intel 471, a cybercriminal in a Telegram channel popular with hackers offered in May 2020 to sell access to a "Groundwater Recovery & Treatment System" located in Florida. The hacker claimed to have broken into software used by administrators to remotely control the system, and included a screenshot that showed levels of sodium hydroxide in the water.

The person who posted the screenshots in the Telegram channel was likely an Iranian actor, Intel 471 researchers said. The Telegram channel in question was also tied to a 2020 hack of an Israeli water reservoir. There's no evidence to suggest that this person was motivated by anything other than monetary gain and notoriety, the spokesperson said.

The researchers' findings illustrate broader weaknesses in the cyber defenses of US critical infrastructure. Many industrial control systems can be easily located using online directories like Shodan, which logs internet-connected devices. From there, experts say even low-level hackers can scour out stolen or default login credentials to try to break into the software that controls the systems.

"SCADA systems are notorious for using weak default admin credentials, non-standard ports, and other technical identifiers," the spokesperson told Insider.

Too much critical infrastructure is connected to the public internet with lax security protections, in part because of egregiously low cybersecurity budgets.

Industrial systems are a growing target for profit-driven hackers across the board. In the past year, researchers have tracked cybercriminals probing computers connected to critical infrastructure and reselling access to those computers to more sophisticated hacking groups, according to the security firm Kaspersky.

"We believe the malicious actors have had, for quite a while, access to not only industrial organizations but also lots of information on their technological processes," Evgeny Goncharov, Kaspersky's head of Industrial Control Systems Cyber Emergency Response Team, said in a webinar Thursday. "Probably in the near future we'll see more news of attack scenarios and how those attacks can be monetized."

The FBI published a joint advisory with the Cybersecurity and Infrastructure Security Agency on Thursday advising critical infrastructure agencies to install the latest version of Windows and urging them to be on the lookout for suspicious logins to their remote access software.
Newsletter

Related Articles

0:00
0:00
Close
UK Police Officers Guarded 2010 Epstein Dinner Attended by Prince Andrew, Reports Say
US Trade Representative Affirms Commitment to Existing Tariff Agreements with UK and Other Partners
Activists at the Louvre hung a framed Reuters photograph of Andrew Mountbatten-Windsor slumped in the back of a car leaving a police station on the day of his arrest
The royal biographer said that he expected the police to 'look at the money trail' - including Sarah Ferguson borrowing money from Epstein
A Protestor screams in NYC: “Bill Gates is on the Epstein’s List…”
FBI and Secret Service Hold Press Conference After Shooting Incident at Mar-a-Lago
Mark Zuckerberg Testifies in Trial Over Social Media's Impact on Children's Mental Health
Maggie Oliver exposes Keir Starmer using letters to close child rapists investigations
Kouri Richie's wrote a children’s book to help her sons grieve the death of their father. Now she’ll stand trial for his murder
New York Braces for Major Snowstorm With Up to 18 Inches Forecast and Blizzard Warnings Issued
Mexican Military Kills CJNG Leader Nemesio Oseguera Cervantes as Violence Erupts Across Jalisco
Metropolitan Police Deploys Palantir-Powered AI to Flag Potential Officer Misconduct
UK Parliament Rebukes Police Over Ban on Israeli Football Fans
Britain Emerges Among a Small Group of Nations Without a Religious Majority
UK’s Manufacturing Base at Risk as Soaring Energy Costs Weigh on Industry
Matt Goodwin’s Unconventional Campaign for Reform UK in the Gorton and Denton By-Election
US Military Movements in the UK Spark Speculation Over Preparations Related to Iran Tensions
UK Faces Significant Economic Risk From Trump’s New Global Tariff Regime
UK Defence Secretary Signals Intent to Deploy British Troops to Ukraine
UK Students Mark Lunar New Year as Universities Adjust to New Equality Compliance Rules
UK Government Weighs Removing Prince Andrew from Line of Succession After Arrest
Prince Andrew’s Arrest in UK Rekindles Scrutiny Over US Handling of Epstein Records
Trump’s Strategic Warning to UK Over Chagos Islands Deal Sparks Diplomatic Whiplash
Starmer Government Postpones Local Elections Affecting 4.5 Million Voters
UK Economy Remains Fragile Despite Recent Upturn in Headline Indicators
UK Businesses Face Fresh Uncertainty Following US Tariff Ruling
Reform UK’s Senior Figures Face Scrutiny Over Remarks on Women and Family Policy
UK Electric Vehicle Drive Threatened by Shortage of 44,000 Qualified Technicians
University of Kentucky Trustees Advance Academic Reforms and Approve Coliseum Plaza Purchase
Boris Johnson Calls for Immediate Deployment of UK Troops to Support Ukraine
OpenAI CEO Sam Altman praises the rapid progress of Chinese tech companies.
North Korea's capital experiences a significant construction boom with the development of a new city district dubbed 'Pyonghattan'.
New electric vehicle charging service eliminates waiting times
Vox Populi confronts Justin Trudeau at Davos over vaccination policies
Poland's President Karol Nawrocki ENDS support for Ukrainian citizens:
The mayor of Rotherham in Britain
One day after ex-Prince Andrew's arrest, British police are searching his former home, while U.K. lawmakers will consider introducing legislation to remove him from the line of royal succession
Vandana Shiva reminding the world that Bill Gates did not invent anything.
Italy's PM Giorgia Meloni highlights record employment and economic growth
UK Confirms Preferential U.S. Trading Terms Will Continue After Supreme Court Tariff Ruling
U.S. and U.K. to Hold Talks on Diego Garcia as Iran Objects to Potential Military Use
UK Officials Weigh Possible Changes to Prince Andrew’s Position in Line of Succession Amid Ongoing Scrutiny
British Police Probe Epstein’s UK Airport Links and Expand High-Profile Inquiries
The Impact of U.S. Sanctions on Cuba's Humanitarian Crisis: A Tightening Noose
Trump Directs Government to Release UFO and Alien Information
Trump Signs Global 10% Tariffs on Imports
United Kingdom Denies U.S. Access to Military Base for Potential Iran Strike
British Co-founder of ASOS falls to his death from Pattaya apartment
Early 2026 Data Suggests Tentative Recovery for UK Businesses and Households
UK Introduces Digital-First Passport Rules for Dual Citizens in Border Control Overhaul
×