GreekReporter.comBusinessEnergyIran-Linked Hackers Shut Down UK Power Generator for Four Days

Iran-Linked Hackers Shut Down UK Power Generator for Four Days

Getting your Trinity Audio player ready...
Server racks inside a data center.
Server racks at a data center. Iran-linked hackers reportedly forced a UK power generator offline for four days in July. Credit: Wikimedia Commons / Helpameout/ Public Domain

Iran-linked hackers forced a UK power generator offline for four days in a cyberattack that raised fresh concerns over threats to critical energy infrastructure. The incident occurred in July and targeted what British officials described as a small-scale power generator. Authorities have not disclosed the facility’s location or identity for security reasons.

Officials said the shutdown did not threaten Britain’s wider electricity network or disrupt national energy supplies. The incident is believed to mark the first known case in which hackers linked to Iran successfully forced a British power generation facility to suspend operations for several days.

Hackers target UK power generator in July cyberattack

Following the breach, the British government contacted energy companies and issued guidance on cyber risks facing the sector. The National Cyber Security Centre (NCSC) also received information about the incident.

The agency operates as part of GCHQ, Britain’s signals intelligence organization, and helps organizations respond to serious cyber threats. Officials have not revealed how the attackers gained access to the facility or which systems they compromised.

Britain’s Department for Energy Security and Net Zero said the country’s energy system remained resilient throughout the incident. The department stressed that the attackers targeted a relatively small generator rather than infrastructure considered essential to national electricity supplies.

Small gas-fired generators support the UK electricity system and can provide additional power during periods of increased demand.

UK power generator attack highlights rising state-linked cyber threats

The attack comes as British cybersecurity officials warn of increasing hostile state activity against companies and critical infrastructure.

NCSC Chief Executive Richard Horne said in June that hostile state actors accounted for roughly three-quarters of cyber incidents affecting organizations within the UK’s critical national infrastructure over the previous year.

The agency handled more than 200 incidents involving critical infrastructure and supporting networks in the year to May 2026. British authorities have previously identified Iran, China, and Russia among the states that pose significant cyber risks to the country.

The NCSC also handles an average of four nationally significant cyber incidents each week. In the 12 months to August 2025, the agency dealt with 429 incidents and classified 204 of them as nationally significant.

It categorized 18 cases as highly significant because they had the potential to seriously affect government operations, essential services, large sections of the population, or the British economy.

UK strengthens cyber defenses

Horne has warned that cyber operations increasingly form part of modern geopolitical conflict and that companies must prepare to continue operating even after attackers compromise their IT systems.

British authorities are particularly concerned that politically motivated hackers could target the country if the UK became directly involved in an international conflict.

Unlike conventional ransomware attacks, such campaigns may leave victims with no option to restore access by paying a ransom. Cyberattacks have already caused significant disruption at major British companies, including Jaguar Land Rover and retailer Co-op.

The government is also tightening cybersecurity requirements for the energy sector and preparing a broader energy resilience strategy.

UK developing AI-based cyber defense system

GCHQ and the NCSC are developing what officials describe as a national-scale, AI-powered cyber defense capability. The initiative, known as Cyber Shield, is expected to use autonomous artificial intelligence agents to identify vulnerabilities, detect suspicious activity, and flag potential threats before attackers can exploit them.

The technology aims to strengthen protection for critical national infrastructure and major sectors such as aviation and telecommunications. British cybersecurity authorities have also warned that artificial intelligence is increasing attackers’ capabilities. The NCSC expects AI-enabled tools to help hostile actors identify and exploit known weaknesses in older technology systems on a larger scale.

Although the July attack did not endanger Britain’s electricity supply, the four-day shutdown showed how a cyberattack can cause real-world disruption even at a relatively small energy facility.

See all the latest news from Greece and the world at Greekreporter.com. Contact our newsroom to report an update or send your story, photos and videos. Follow GR on Google News and subscribe here to our daily email!



National Hellenic Museum
Filed Under

More greek news