Iran-linked Hackers Shut Down UK Power Plant for Four Days
A small British power plant was shut down for four days in July due to a cyberattack, according to The Telegraph, which reported that hackers affiliated with the Iranian regime were responsible. The government has confirmed the incident but has not formally attributed it to any specific party.
August 24, 2026 – 7:45 pm
Credit: Fahroni via Canva / Getty Images
A cyberattack resulted in the closure of a small British power plant for four days in July. Hackers linked to Tehran were identified as the perpetrators, as reported by The Telegraph.
Tony Diver, Rozina Sabur, and Matt Oliver broke the story on Saturday. This is believed to be the first instance of hackers linked to Tehran disabling a facility in the UK. They characterized it as the most successful attack of its kind.
What the Government Has Confirmed
A British government spokesperson confirmed the incident to The Register on Monday.
“This story refers to an incident impacting a small-scale energy generator, and at no point was there a risk to the wider energy system,” the spokesperson said.
“The UK has a highly resilient energy system. We work closely with the energy sector to protect infrastructure and ensure the highest security standards.”
Michael Shanks, the UK energy minister, shared details of the attack on X. He stated that his department briefed energy chief executives and distributed guidance on necessary steps.
The UK Has Not Blamed Anyone
The government has not officially attributed the attack to Iran or any other government or hacking group. The Register reported that officials declined to identify the power station due to security concerns. The National Cyber Security Centre (NCSC), which operates under GCHQ, did not comment.
The NCSC typically does not acknowledge individual incidents.
The Nature of the Plant
This was not an attack on an essential service like a large power station. The UK network includes several smaller gas generators that provide temporary power when needed.
The Financial Times characterized the affected site as a peaker plant. Britain has dozens of these facilities, according to The Telegraph. Many are gas-fired and operate for short periods, such as when wind speeds are low.
A government source told The Telegraph that the site is relatively minor, well below the threshold at which operators are legally required to report cyber activity.
“It’s a very small-scale site, less than a rounding error compared to grid capacity,” the source said.
Coinciding Attacks on US Water Systems
The outage occurred simultaneously with a series of attacks on US water infrastructure, reported The Telegraph. These attacks affected 12 states, raising concerns at the White House.
Dozens of wastewater treatment plants were compromised, leading to flooding and reduced water pressure from taps. Some authorities advised customers to boil water before consumption.
The initial reports emerged in Minnesota on July 26, followed by Michigan, Georgia, South Dakota, and New Jersey.
The Register reported that over 30 facilities in Minnesota were affected, with similar intrusions later observed in at least 11 other states. CNBC stated that the FBI had warned of attacks in at least seven states, with CISA, the FBI, and the Environmental Protection Agency attributing the blame to Iran.
How the American Attacks Unfolded
Most or all of the US utility attacks involved internet-connected programmable logic controllers (PLCs), according to The Register. These small computers operate physical equipment, such as pumps and valves.