Iranian Cyberattack Disables UK Power Plant for Four Days in First Such Incident
A British power plant was shut down for four days due to a cyberattack attributed to Iranian state-linked hackers, marking the first time such a facility in the UK has been disabled by cyber means, according to The Telegraph. The incident coincided with a wave of cyberattacks on US water infrastructure last month, which affected 12 states and heightened concerns at the White House. British officials have not disclosed the specific power plant involved, citing security reasons, but confirmed the facility was relatively small and its outage did not impact the national electricity supply or the broader UK energy grid.
Following the attack, the UK government quickly briefed energy company CEOs and issued security guidelines to businesses nationwide. The incident was reported to the National Cyber Security Centre (NCSC), part of the GCHQ intelligence agency, which advises on protecting critical infrastructure from foreign threats. Intelligence agencies in London and Washington have long warned about persistent cyber threats from Russia, China, Iran, and North Korea targeting government bodies and strategic infrastructure.
While previous cyberattacks have disrupted the UK’s National Health Service, educational institutions, commercial factories, and even automotive production lines, this is the first confirmed case of a power plant being completely taken offline. Officials believe the attack was not intended to directly harm civilians and likely went unnoticed by the public. However, it may serve as a signal that groups linked to Iran’s Islamic Revolutionary Guard Corps can penetrate sensitive UK systems.
The UK operates dozens of small gas-powered plants connected to the national grid, often used only during low renewable energy output. The shutdown of such a plant for several days poses no threat to overall grid stability. In contrast, US cyberattacks last month caused significant damage to water treatment facilities, including flooding and water pressure issues, prompting boil-water advisories. The FBI attributed those attacks to malicious cyber actors linked to Tehran.
Since escalating Middle East tensions and US-Israeli airstrikes on Iran began in February, Tehran has intensified cyber operations against Western and regional targets. European countries including Poland, Germany, Finland, Belgium, and Albania, as well as Israel and other Middle Eastern states, have reported Iranian cyberattacks. In March, the UK’s NCSC urged organizations to strengthen cybersecurity amid the conflict. NCSC’s CEO Richard Horne stated in June that over 200 attacks on critical infrastructure were handled in the past year. Government sources described the affected UK power plant as very small and emphasized the resilience and stringent security standards of the UK energy system, assuring no threat to the wider network.
The same event, reported separately by each outlet. Open a few to compare what different newsrooms emphasize — and what they leave out.
Not the same event — other stories that share this one’s people, places, or theme: background, reactions, and follow-ups.