TRENDING
Rows of identical brass-colored apartment mailboxes with small locks and name labels along an orange corridor wall
October 9, 2026
How to Prevent Broken Object Level Authorization (IDOR) in a FastAPI App
Street-level upward view of the Monetary Authority of Singapore building and neighbouring office towers under a pale sky
October 9, 2026
Singapore’s AI Guidelines Turn Independent Review Into a Question of Who Sets the Risk Rating
Cast-iron late Qing dynasty coin minting press with a large flywheel, displayed in a museum case
October 9, 2026
Attackers Hijacked the .gh, .sl and .as Country Domains and Minted HTTPS Certificates for Google
Rows of closed oak library card catalog drawers, each with a brass pull and a blank label holder
October 9, 2026
How to Encrypt PII in Python and Keep It Searchable With Blind Indexes
Close-up of a vintage Western Electric manual telephone switchboard with orange lamps, red patch cords plugged into jacks, a rotary dial and a black handset
October 9, 2026
Microsoft’s Agent Lightning v1.0 Turns Agent Training Into a Sample-Accounting Problem
09 Oct 2026
SXZ.io SXZ.io
  • Home
Search the Site
Popular Searches:
Technology Amazon AI
Recent Posts
Two orange safety relief valves on grey pressure vessels in an industrial plant
How to Add Backpressure and Load Shedding to a Python Service Before Overload Takes It Down
October 8, 2026
Yellow diamond-shaped merging traffic warning sign showing a side road joining a main road
GitHub’s Git Rebuild Turns Repository Durability and Read Scale Into Two Separate Problems
October 8, 2026
A lugworm lying on wet sand and mud at low tide
A Compromised Admin Account Put the Shai-Hulud Worm Into AI Sandbox Maker Tensorlake’s npm SDK
October 8, 2026
SXZ.io SXZ.io
  • Home

Categories

Articles 232 Posts
News 234 Posts
Learning Hub 204 Posts
Home/News/NSA and CISA Warn Hackers Are Using AI to Target Siemens PLCs in Critical Infrastructure
News

NSA and CISA Warn Hackers Are Using AI to Target Siemens PLCs in Critical Infrastructure

Five US agencies say hackers are using AI-generated exploitation scripts to scan for and compromise internet-exposed Siemens S7 PLCs across critical infrastructure sectors.

August 20, 2026 3 Min Read
39

Five US federal agencies issued a joint cybersecurity advisory on August 19 warning that hackers are using artificial intelligence to build exploitation scripts aimed at Siemens S7 Series programmable logic controllers (PLCs) deployed across the country’s critical infrastructure.

Table Of Content

  • How the attacks work
  • An unnamed actor, but a familiar pattern
  • What the agencies are telling operators to do

The advisory, tracked as AA26-231A, comes from the National Security Agency (NSA), the Cybersecurity and Infrastructure Security Agency (CISA), the FBI, the Department of Energy, and the Environmental Protection Agency. “This is not a theoretical risk: it is an active threat,” the agencies wrote, adding that threat actors are conducting reconnaissance and testing exploitation techniques against real, internet-exposed Siemens hardware rather than working from a lab.

How the attacks work

According to the advisory, the threat actors are combining open source industrial automation libraries, specifically snap7.dll and python-snap7, with AI-assisted coding to build custom Python tools that mimic legitimate operational technology (OT) monitoring software. Those tools communicate over the S7comm protocol to gain read and write access to a PLC’s memory, configuration data, and ladder logic programs (the code that actually controls physical equipment).

The attackers first use internet-scanning services such as Censys and ZoomEye to locate exposed or poorly protected Siemens controllers running outdated firmware or default credentials, the agencies said. From there, they use AI to generate exploitation scripts for initial access, credential access, denial-of-service attacks, and other objectives, drawing on publicly available vulnerability information rather than any single undisclosed flaw.

“Using AI to generate exploitation scripts represents an evolution in threat actor capabilities, dramatically reducing the technical expertise and time required to develop working ICS exploitation scripts and malicious tools,” the advisory states. It adds that AI also lets attackers “rapidly leverage additional attack vectors and adapt to defensive measures.”

Targeted devices span the S7-200, S7-300, S7-400, S7-1200, and S7-1500 series, with the advisory listing specific CPU variants for each line, including the S7-1500’s F-series safety controllers. The agencies assess the activity as “persistent reconnaissance” meant to develop capabilities and pre-position for future disruptive or destructive operations, rather than an attack that has already caused confirmed damage.

An unnamed actor, but a familiar pattern

The advisory itself does not attribute the campaign to a specific government or criminal group. But as SecurityWeek noted, it arrives after separate warnings this year that Iran-linked hackers were targeting PLCs made by Siemens, Schneider Electric, and Rockwell Automation at US water utilities, including an intrusion that disrupted more than 30 community water systems in Minnesota in late July. sxz.io covered an earlier stage of that campaign, which centered on exposed Rockwell Automation MicroLogix controllers, in a prior report.

“This appears to be a continuation of the same suite of activity we suspect is affiliated with Iran targeting PLCs,” Cynthia Kaiser, senior vice president at the Halcyon Ransomware Research Center and a former FBI cyber division deputy assistant director, told The Register. “Iran-affiliated actors and adversaries are actively targeting a wide swath of operational technology because these PLCs underpin essential health, safety, and critical infrastructure across society.”

Kaiser said the new advisory’s AI details line up with what researchers had been expecting: “state-sponsored adversaries are leveraging AI across the board for discrete tasks, like code checks and scripting, to scale their operations and move faster.”

Benny Czarny, CEO and founder of critical infrastructure security firm Opswat, told the outlet the underlying problem predates AI. “I think that the bigger issue is still how exposed OT environments are,” he said. “AI makes it much easier for an attacker to create and modify scripts targeting PLCs, so the barrier to attacking industrial systems continues to fall. But for me the answer is not simply better AI detection.”

The agencies name six sectors as most targeted: critical manufacturing, energy, water and wastewater, chemical, food and agriculture, and commercial facilities. The advisory separately warns that Siemens S7 controllers used in the Defense Industrial Base could be targeted as well, and notes that the broader PLC-targeting activity extends beyond Siemens equipment.

What the agencies are telling operators to do

The advisory’s mitigations largely mirror standard OT security guidance, applied with urgency: take an immediate inventory of every Siemens S7 controller on the network, apply firmware and TIA Portal/STEP 7 updates, verify that PLCs are not directly reachable from the internet, strengthen authentication and access controls, and deploy monitoring that can catch anomalous S7comm activity, such as connections from unexpected IP ranges, scanning on port 102, or write operations outside normal change windows.

The agencies specifically flag organizations that rely on third-party systems integrators or managed service providers with remote PLC access, warning that asset owners may not realize those relationships have left their controllers exposed to the internet in the first place.

Tags:

Artificial IntelligenceCISACritical InfrastructureOT Securitysiemens

Share

Rows of individually numbered, individually locked safe deposit boxes inside a bank vault
Previous Post

How to Fix the Confused Deputy Problem in AI Agents With Scoped Authorization Tokens

A 1936 photo of a telephone switchboard operator plugging a connection into a manual switchboard, used as a visual metaphor for AI model routing
Next Post

Stripe’s OpenRouter Deal Turns AI Token Spend Into a Capital-Flows Problem

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Latest
08 Oct
How to Add Backpressure and Load Shedding to a Python Service Before Overload Takes It Down
08 Oct
GitHub’s Git Rebuild Turns Repository Durability and Read Scale Into Two Separate Problems
Trending
October 8, 2026
How to Add Backpressure and Load Shedding to a Python Service Before Overload Takes It Down
October 8, 2026
GitHub’s Git Rebuild Turns Repository Durability and Read Scale Into Two Separate Problems
October 8, 2026
A Compromised Admin Account Put the Shai-Hulud Worm Into AI Sandbox Maker Tensorlake’s npm SDK
October 8, 2026
How to Prevent Broken Object Level Authorization (IDOR) in a FastAPI App
October 8, 2026
Singapore’s AI Guidelines Turn Independent Review Into a Question of Who Sets the Risk Rating
October 8, 2026
Attackers Hijacked the .gh, .sl and .as Country Domains and Minted HTTPS Certificates for Google

Related Posts

Rows of server racks in a data center representing network infrastructure targeted by botnets
News

C0XMO Botnet Shows Why Old Router Firmware Still Matters

June 7, 2026
Close-up of a USB flash drive, representing physical data-theft risk in office security incidents
News

Fake IT Support Is Now Walking Through the Front Door

June 7, 2026
A phone security app on a smartphone resting on a laptop keyboard.
News

Everest Forms Pro Flaw Is Being Exploited to Create Rogue WordPress Admins

June 7, 2026
A phone secured by a padlock, illustrating AI data-leak containment and security controls.
News

OpenAI’s Lockdown Mode Is a Data-Leak Brake, Not a Prompt-Injection Cure

June 8, 2026
SXZ.io SXZ.io
  • [email protected]

Categories

Articles
Learning Hub
News

All Rights Reserved by SXZ.io ©2026