美国水务系统为何易遭外国网络攻击


2026-08-06T22:54:33.668Z / https://www.cnn.com/2026/08/06/politics/why-us-water-systems-are-vulnerable-to-foreign-cyberattacks

据行业专家以及美国现任和前任官员透露,针对十余个州水务系统的网络攻击暴露了美国关键基础设施多年来投资不足的问题,也暴露了美国对手可以如何威胁到美国民众习以为常的公共服务。

据美国联邦调查局消息,此次网络入侵在某些情况下导致水务设施出现水压下降和溢水情况,但州和地方官员表示,饮用水安全并未受到影响。

美国官员如今正在反思,为何在一场酷暑热浪期间发动袭击的黑客没有对水务设施造成更严重的破坏。例如,只要操控监测化学品投加量的设备,就可能危及饮用水安全。

“难道他们派出的是C队,能力不足以造成更严重的破坏?”一名美国官员说道,“如果顶尖黑客团队将矛头对准美国,情况会糟糕到什么地步?”

伊朗是此次黑客攻击的嫌疑对象,但美国官员尚未确认德黑兰是否参与其中。

多年来,美国官员一直警告称,俄罗斯、中国以及(程度稍轻的)伊朗拥有破坏能力的黑客团队正在获取美国各地敏感工业网络的访问权限,并正伺机在危机时刻发动破坏行动。美国基础设施的薄弱环节——例如服务军事设施的地方水务和发电厂——已成为攻击目标。

如今,中小城镇和郡县的水务系统运营商正成为此次多年来该领域最严重网络攻击之一调查工作的焦点。从南达科他州到佐治亚州的多个州均受到波及。

“水务公司资源不足、易受网络攻击早已不是秘密,而我们的对手也清楚这一点,”拜登政府前白宫国土安全副顾问凯特琳·德科维奇说道,“他们通过瞄准关键基础设施,可以在付出相对较少努力的情况下动摇公众对政府的信心,并造成巨额损失。他们多年来一直在为这类破坏行动做准备。”

佐治亚州中部克莱顿县水务局发言人艾琳·托马斯表示,她的团队此前从未遭遇过大规模恶意网络事件。该局目前正在调查“未经授权的网络活动”,该活动可能导致一座水泵站失灵,并在7月27日凌晨触发了饮用水煮沸饮用通知。

“事件发生时,我们最关心的是确保系统尽快恢复运行,”她在周四接受美国有线电视新闻网采访时表示。(他们在7月27日当天数小时内就完成了系统恢复。)

南达科他州拉皮德城官员于7月31日宣布,该市一套服务城市废水处理系统的提升泵站遭遇“网络事件”。

“我们对此并不感到意外,”拉皮德城公共工程主管迈克·塞伊斯被问及战时是否可能成为外国对手目标时说道。他记不起拉皮德城此前何时遭遇过类似的网络攻击。塞伊斯称赞“员工们及时发现了计算机系统的异常行为,并将其与互联网断开连接”。

此次黑客袭击事件已引发联邦和州层面的政策回应。民主党籍纽约州州长凯西·霍楚尔已宣布拨款约900万美元,用于加强全州水务系统的网络防御能力。

加州民主党参议员亚当·希夫的发言人向美国有线电视新闻网透露,希夫计划于下周提出一项法案,赋予美国环境保护局更多权限,以助力提升水务系统的网络防御能力。

除国家安全担忧外,水务行业专家和网络专家还深感沮丧的是,仍有大量基础设施直接暴露在互联网上。

“20年来,专家们一直告诫水务公司确保其系统不直接接入互联网,”美国国土安全部工业控制系统网络应急响应小组前负责人马蒂·爱德华兹说道,“此次一系列入侵事件正是自满情绪和预算优先级缺失导致的结果。”

Why US water systems are vulnerable to foreign cyberattacks

2026-08-06T22:54:33.668Z / https://www.cnn.com/2026/08/06/politics/why-us-water-systems-are-vulnerable-to-foreign-cyberattacks

A cyberattack on water systems in a dozen states is exposing years of under-investment in critical infrastructure and how US adversaries can threaten services that everyday Americans take for granted, according to industry experts and current and former US officials.

The cyber intrusions in some cases led to water pressure drops and flooding at facilities, according to the FBI, but did not compromise the safety of drinking water, according to state and local officials.

US officials are now asking themselves why the hackers, who struck during a scorching heat wave, didn’t go further in causing damage at the water facilities. Manipulating devices that monitor chemical dosing, for example, could have jeopardized the safety of the drinking water.

“Do we have the C team and they couldn’t do worse?” one US official said. “How bad could it be if the A team turned to the US?”

Iran is a suspect in the hacks, but US officials have not yet confirmed Tehran’s involvement.

For years, US officials have warned that sabotage-capable hacking teams from Russia, China and, to a lesser extent, Iran, were developing access to sensitive industrial networks across the US and were lying in wait for a moment of crisis to cause disruptions. The soft underbelly of American infrastructure — local water and power plants that serve military facilities, for example ­— have been targeted.

Now, water system operators in modest-sized towns and counties are at the forefront of investigation into one of the most serious cyberattacks on the sector in years. States from South Dakota to Georgia have been affected.

“It’s no secret that water utilities are under-resourced and vulnerable to cyberattacks, and it’s no secret that our adversaries know it,” said Caitlin Durkovich, a former deputy homeland security adviser in the Biden White House. “By targeting critical infrastructure, they can undermine public confidence in our leaders and impose significant costs with relatively little effort. They’ve spent years positioning themselves for exactly this kind of disruption.”

Erin Thomas, a spokesperson for the Clayton County Water Authority in central Georgia, said her team hasn’t experienced a malicious cyber incident at scale before. The water authority is investigating “unauthorized cyber activity” that may have caused a water pump station to fail, triggering a boil-water notice in the early hours of July 27.

“Our main concern when this happened was to make sure that we got the system up and running,” she told CNN on Thursday. (They accomplished that in a matter of hours on July 27).

In Rapid City, South Dakota, a “cyber incident” hit one of the lift stations that serves the city’s wastewater system, officials announced July 31.

“We’re not surprised by it,” Mike Theis, Rapid City’s public works director, when asked about the possibility of being targeted by a foreign adversary in wartime. He couldn’t recall a time when Rapid City had experienced a similar cyberattack. Theis credited the “quick action from our employees who noticed abnormal behavior” on computer systems and isolated them from the internet.

The hacking incidents have triggered federal and state policy responses. New York Gov. Kathy Hochul, a Democrat, has announced about $9 million in grants to try to strengthen the cyber defenses of water systems across New York.

Democratic Sen. Adam Schiff of California plans to introduce legislation next week that would give the Environmental Protection Agency’s greater authorities to help boost water cyber defenses, Schiff’s spokesperson told CNN.

Coupled with national security concerns is a deep frustration among water-sector specialists and cyber experts that there is still so much infrastructure that is directly accessible from the internet.

“For the past 20 years, experts have been telling utilities to make sure their systems were not directly accessible from the internet,” said Marty Edwards, former head of the Department of Homeland Security’s Industrial Control Systems Cyber Emergency Response Team. “This recent set of intrusions is the result of complacency and a lack of budget prioritization.”

评论

发表回复

您的邮箱地址不会被公开。 必填项已用 * 标注

湘ICP备2026001899号-2