pwshub.com

American Water Works hit by cyberattack, customer portal and billing systems taken offline

American Water Works Co. Inc., the largest regulated water and wastewater utility company in the U.S., has suffered from a cyberattack that has affected its customer portal and billing services.

First disclosed in a regulatory filing, the company described the attack as “unauthorized activity within its computer networks and systems,” which they subsequently learned was the “result of a cybersecurity incident.” American Water Works then subsequently activated its incidence response plan, hired third-party cybersecurity experts and contacted law enforcement.

“The Company has taken and will continue to take steps to protect its systems and data, including disconnecting or deactivating certain of its systems,” American Water Works added in the filing. “The Company currently believes that none of its water or wastewater facilities or operations have been negatively impacted by this incident.”

A spokesperson for American Water Works told CBS News that the company had “disconnected or deactivated certain systems” and that “there will be no late charges for customers while these systems are unavailable.”

While the form of cyberattack was not disclosed, the ransomware duck test comes into play. If it looks like ransomware and sounds like ransomware it usually is. That American Water Works chose to disconnect systems would indicate that they were attempting to stop an attack — likely ransomware — from spreading laterally through its internal network.

While cyberattacks on utility providers such as Amercian Water Works are becoming commonplace, they present a larger risk than just systems being taken offline.

“We often overlook how vulnerable our everyday essentials are to digital threats. We’re not just talking about data breaches — this is about the safety of millions of people who rely on clean water every day,” Akhil Mittal, senior manager of Cybersecurity Strategy and Solutions at application security software provider Black Duck Software Inc., told SiliconANGLE via email. “A cyber incident like this could disrupt water services, delay safety checks and potentially risk public health.”

Mittal added that the focus now should be on quick action: containing the attack, getting the system back online and being transparent with the public. “As more essential services go digital, cybersecurity needs to be built into the infrastructure from the start, not bolted on later,” he said.

Source: siliconangle.com

Related stories
1 week ago - Concerns are mounting over when and how all this investment in artificial intelligence will pay off — even at AI leader OpenAI, which reportedly predicts it will lose $14 billion in 2026 on $100 billion in revenue and won’t make a profit...
3 weeks ago - The Italian Sea Group says a lawsuit against Lynch's widow citing reputational damage wasn't sanctioned by the group.
1 week ago - (Bloomberg) -- Ever since President Xi Jinping sought to draw a line under China’s slowdown last month, investors have clamored for him to back up monetary easing with a powerful fiscal stimulus to help fuel one of the nation’s biggest...
1 month ago - Wall Street has absorbed the Fed's message that a deep cut will prove positive for the economy.
1 month ago - Apple saw more than $116bn (£88bn) wiped off its valuation in early trading after analysts warned about weaker than expected demand for its new iPhone as its push into artificial intelligence disappointed fans.
Other stories
16 minutes ago - The market is flashing signs it's suffering from "invincibility syndrome," and that stocks are nearing a peak before a period of weak returns, a CIO said.
16 minutes ago - Fundstrat's Mark Newton said the decline he expects in the S&P 500 will be a "short-term correction only," rather than the start of a larger decline.
16 minutes ago - Consistently strong growth and incremental opportunities could push this tech titan to new heights.
16 minutes ago - An 800% increase in licensing deal values indicates growing confidence in mRNA technology.
52 minutes ago - OpenAI and Microsoft Corp. have reportedly hired investment banks to help revise the terms of their partnership. The Wall Street Journal today cited sources as saying that OpenAI is being advised by Goldman Sachs. Microsoft, in turn, has...