Iranian cyber attack on power plant was "warning shot" amid threat to critical British national infrastructure
The attack, which disabled the unnamed power plant for four days, was carried out by hackers connected to the Iranian regime
A UK power generator was forced to shut down for four days following a cyber attack linked to Iran.
Listen to this article
A cyber-attack which caused a UK power plant to shut down last month has been branded a “warning shot” from Iran, amid concerns around the ability of the country to undermine critical British national infrastructure.
The attack, which disabled the unnamed power plant for four days, was carried out by hackers connected to the Iranian regime.
The National Cyber Security Centre were alerted to the incident but did not receive any reports of power outages in connection with the cyberattack.
The incident has sparked fresh concerns around Iran’s appetite to infiltrate British national infrastructure.
A former security official described the attack as a “clear warning shot from the Iranian state”, the Times reported.
Read more: UK power generator forced to shut down for four days after cyber attack by Iranian hackers
Read more: Iran vows 'devastating' response as Trump threatens 'economic D-Day'
“They’ve already disrupted global oil supplies. Now they’re threatening to attack critical national infrastructure in the UK.”
The attack is thought to be the first time an Iranian-affiliated hacking group has successfully brought a UK energy facility to a standstill.
While the generator has not been named, it is understood to have been a “small energy generator”.
According to The Telegraph, the incident did not pose any threat to the wider UK power grid.
The attack is believed to have happened at around the same time as a series of cyber attacks targeting water infrastructure in the US last month.
It is understood that the attack has been reported to the National Cyber Security Centre (NCSC), which is part of GCHQ.
The NCSC responds to serious cyber incidents which have significant implications for UK organisations.
Following the attack, the Government briefed energy companies and provided businesses with advice on protecting themselves against similar threats.
It comes after Dr Richard Horne, head of the NCSC, warned that most nationally significant cyber attacks affecting Britain are being carried out by hostile states, including China, Iran and Russia.
The NCSC deals with around four nationally significant cyber incidents every week.
While the number of incidents has remained “fairly steady”, Dr Horne said most are linked directly or indirectly to hostile states.
Speaking in April, Dr Horne said: “Criminal activity such as ransomware remains the most prevalent threat to the vast majority of organisations.
“But the majority of the nationally significant incidents that my teams are handling now originate directly or indirectly from nation states.
Previous cyber attacks have caused disruption to manufacturing facilities, including Jaguar Land Rover, as well as NHS systems.
Despite previous incidents and warnings from British and US intelligence agencies about the threat posed by hackers from China, Iran, Russia and North Korea, the latest incident is reportedly the first time an overseas hacking group has managed to completely shut down a British power generator.
GCHQ has also been developing plans for a new national AI cyber shield, which is thought to be the first system of its kind in the world.
The system is expected to be operational within five years and would use AI agents to identify and flag threats against critical national infrastructure and other major campaigns, helping to prevent future cyber attacks.
A Government spokesperson said: “The UK has a highly resilient energy system. We work closely with the energy sector to protect infrastructure and ensure the highest security standards.
“This story refers to an incident impacting a small-scale energy generator, and at no point was there a risk to the wider energy system.”