Suspected Iranian state-backed hackers recently shut down a British power plant for four days, marking a significant escalation in cyberattacks targeting Western critical infrastructure.
According to the Telegraph, the intrusion targeted a small regional energy facility, meaning the disruption caused no blackouts and did not affect the UK's overall energy supply.
However, intelligence and security officials view the breach as the most successful attack by Iranian-backed hackers against a British power facility to date.
The breach occurred alongside a series of coordinated cyberattacks targeting water utility systems across 12 US states. Federal investigators also linked those attacks to threat groups operating from Tehran.
The US incidents disrupted local wastewater treatment facilities, caused regional flooding, reduced water pressure, and forced authorities in several municipalities to issue emergency advisories.
? Iran shut down a British power plant for four days in an unprecedented cyber attack, The Telegraph can disclose.
— The Telegraph (@Telegraph) August 22, 2026
It is thought to be the first time that hackers affiliated to the Iranian regime have succeeded in closing down such a facility in the UK, and believed to be the… pic.twitter.com/TLvcuoTKUH
British officials have declined to publicly identify the targeted facility, citing national security concerns.
The Telegraph reported that it was a small gas-fired generator, typically used to provide additional electricity to the national grid when wind power output is low or demand suddenly rises.
Engineers spent nearly 100 hours fighting the intrusion before regaining control of the facility and safely restoring operations.
In the aftermath, the National Cyber Security Centre and government ministers alerted senior energy executives and issued guidance on protecting digital control systems from foreign infiltration.
Although the four-day disruption caused no public harm, security officials warned that the attack demonstrated the ability of state-sponsored operatives linked to Iran's Islamic Revolutionary Guard Corps to penetrate and disable critical energy infrastructure.
The incident comes amid growing concerns over cyber threats to Western infrastructure.
Security agencies have repeatedly warned that state-backed groups from Iran, Russia, China, and North Korea are probing digital networks and targeting organisations including schools, hospitals, and manufacturers.
Recent government risk assessments have also warned that artificial intelligence tools are making cyberattacks cheaper, faster, and easier to execute.
It also comes amid the wider conflict between Iran, the United States, and Israel, which began with US and Israeli airstrikes on February 28, 2026.
According to Al Jazeera, peace talks collapsed after a temporary truce ended, with the US demanding Iran's total surrender while Tehran continued strengthening its military defences.
The conflict has escalated into economic warfare, with US President Donald Trump pursuing a plan to block more than 80 per cent of Iran's oil sales.
Iran has warned neighbouring countries that assisting the sanctions effort could make them targets for military action.
Meanwhile, US forces have moved to restrict access through the Strait of Hormuz, while Iranian-backed groups, including the Houthis, have continued attacks on shipping in the Red Sea.