The Iranian-linked hacking group Handala has announced a purported breach of California Water Service (Cal Water), claiming it can disrupt water supply in various U.S. cities. However, cybersecurity experts challenge the validity of this assertion. According to Sean Malone, Chief Information Security Officer at BeyondTrust, the evidence provided does not support Handala's ability to manipulate water distribution systems.
Dataminr has identified that Handala accessed a GPS correction server and a customer billing database, neither of which controls water treatment or supply. The firm emphasized that no operational technology (OT) or industrial control systems (ICS) disruption has been confirmed in this instance. BeyondTrust's advisory highlights Handala's history of exaggerating its capabilities.
Agnidipta Sarkar, Chief Evangelist at ColorTokens, noted that while Handala's tactics are aimed at instilling fear and gaining media attention, there is no evidence they can disrupt critical water sector systems like SCADA or PLCs. He warns that although the group's threats should not be dismissed, they do not currently possess the ability to shut down water supplies in American cities.