Water Utilities Turn to Manual Monitoring to Thwart Cyber Threats

Water treatment facilities are increasingly targeted by hackers, with over 100 systems reporting malicious activity in July alone. To mitigate risks from internet-connected controllers, workers are being trained to monitor operations manually using pen and paper. The approach reflects a shift to prepare for inevitable cyber events.
The surge in attacks stems from the widespread use of programmable logic controllers (PLCs), which enable remote oversight but create an attack surface. Malicious actors gaining access could manipulate water quality, pressure, or availability. The July tally of over 100 compromised systems highlights the escalating threat landscape tied to geopolitical conflict.
In response, facilities are reverting to manual data collection and observation, a method common two decades ago. This training prepares staff to operate without digital assistance, ensuring continuity if networked systems are compromised. The approach signals a strategic shift from purely preventive measures to resilience and operational redundancy, acknowledging that breaches are inevitable.
The shift to manual monitoring could reduce the immediate impact of a cyberattack, preserving basic water service for households and businesses. However, it may introduce slower response times and human error, potentially affecting water pressure or quality monitoring during normal operations. Public trust in municipal utilities may waver as the reality of persistent cyber threats becomes more visible, though the proactive stance could also reassure communities that essential services are being safeguarded.