Iran-linked hackers shut down a small British power plant for four days [1], according to reports published Sunday.

The incident signals a potential escalation in cyber warfare between Tehran and London. It follows a decision by the UK government to allow the U.S. to utilize British bases for defensive operations against Iran [5].

While the facility was disabled, officials said the attack posed no risk to the wider energy system of the United Kingdom [4]. The specific location and identity of the power plant have not been disclosed by authorities [4], [6].

The breach occurred this month and was reported Aug. 23 [2]. The attack targeted the operational technology of the plant, leading to a total shutdown that lasted four days [1].

Cybersecurity analysts said the timing of the attack is a direct response to the security arrangements between London and Washington. By targeting critical infrastructure, the hackers demonstrated the ability to penetrate UK energy grids, even if the impact was limited to a single small site.

British security services have not issued a formal public statement regarding the specific attribution to Iran, though multiple reports cite intelligence linking the activity to Iranian actors [1], [2], [3]. The event highlights the vulnerability of smaller energy providers to sophisticated state-sponsored cyber threats.

Iran-linked hackers shut down a small British power plant for four days

This incident represents a shift from traditional espionage to active disruption of critical infrastructure. By targeting a power plant in response to military basing agreements, Iran is signaling that it views the UK's support of US defensive operations as a legitimate trigger for cyber retaliation. While the scale of this specific shutdown was small, it serves as a proof-of-concept for the ability to disrupt essential services within the UK.