A cybersecurity expert said there is moderate confidence that Iran launched recent cyberattacks against water facilities across Minnesota.

These allegations highlight the vulnerability of critical U.S. infrastructure to foreign state-sponsored digital incursions. Because water treatment plants are essential for public health and safety, targeted disruptions could lead to widespread service failures or contamination.

Morgan Wright, the founder of the National Center for Open and Unsolved Cases, said the statement on Thursday. He said there is "at least moderate confidence" that Iran is responsible for the attacks on the facilities [1, 2].

Wright pointed to a specific warning issued shortly before the incidents occurred. He said an alert was put out four days [1] before the attacks describing a belief that Iran was going to launch such an operation [1, 2].

The attacks targeted various water facilities throughout the state. Wright said, "You know, there was an alert that was put out four days before this describing that they believed Iran was going to launch an…" [1].

While the specific nature of the digital breaches was not detailed, the timing of the alert suggests a pattern of predicted aggression from the foreign government. The incident underscores the ongoing struggle for local utilities to maintain security against sophisticated international actors.

"There is at least moderate confidence that Iran is behind recent cybersecurity attacks on water facilities across Minnesota."

The attribution of these attacks to Iran, even with moderate confidence, suggests a strategic shift toward targeting municipal infrastructure in the U.S. heartland. By focusing on water facilities, adversaries can create immediate local crises that pressure federal authorities without engaging in traditional kinetic warfare.