A Cal Water spokesperson reached out to Security magazine with an update on its investigation.
After Iranian-linked threat actor Handala claimed to have hacked California Water Service (Cal Water), an organization spokesperson stated the company was investigating the claims. Recently, the Cal Water spokesperson reached out to Security magazine with an update on its investigation.
The spokesperson stated, “As a critical infrastructure company, California Water Service takes cybersecurity and the security of our data and systems very seriously. Following the cybersecurity incident allegations made on June 11, 2026, we activated our cybersecurity response plan and worked around the clock to conduct a robust investigation, supported by leading cybersecurity experts, including Mandiant.
“Based on its investigation, Mandiant has confirmed that the threat actor activity was limited to unauthorized access to a small number of specific user accounts within two third-party service provider platforms. Mandiant did not identify evidence of threat actor activity in Cal Water’s internal information technology or operational technology environments.
“The investigation determined that the threat actor accessed one active customer’s online Cal Water account using stolen user credentials. The customer account did not provide access to the billing system, and no payment information was compromised. The threat actor also accessed an external, third-party web site related to a GPS location correction tool; however, the website does not contain any confidential or sensitive information.
“We appreciate the collaboration and support our state and federal government partners provided throughout the investigation, and we will continue to work to maintain the security of our systems and data from malicious actors.”
This attack falls in line with official warnings earlier this year that Iranian actors may target critical infrastructure, including water and wastewater systems (WWS).
Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!
Jordyn Alger is the managing editor for Security magazine. Alger writes for topics such as physical security and cyber security and publishes online news stories about leaders in the security industry. She is also responsible for multimedia content and social media posts. Alger graduated in 2021 with a BA in English – Specialization in Writing from the University of Michigan. Image courtesy of Alger
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | Update on the Cal Water Hacking Incident | 0 | 5 | 16-06-2026 |
| 2 | Мошенники нашли способ взлома двухфакторной аутентификации | -2 | 7 | 03-07-2026 |
| 3 | Хакеры взломали два аккаунта Facebook в Twitter | 0 | 0 | 08-02-2020 |
| 4 | СМИ: систему контроля плотин в Иране взломали в результате кибератаки | 0 | 0 | 24-11-2021 |
| 5 | Hackers Exposed Knicks, Madison Square Garden Data | 0 | 5 | 25-06-2026 |
| 6 | Security Leaders Discuss Texas Hunting, Fishing License Data Breach | 0 | 5 | 26-06-2026 |
| 7 | FT: эксперты Google обнаружили уязвимости в браузере Safari | 0 | 0 | 23-01-2020 |
| 8 | СМИ: хакеры пытались получить доступ к письмам судей по делу каталонских сепаратистов | 0 | 0 | 29-06-2019 |
| 9 | Kodak Confirms Breach Following Claims 2.2M Records Stolen | -1 | 6 | 17-06-2026 |
| 10 | Hacked, leaked, and held for ransom: The worst breaches of 2026 so far | -2 | 7 | 07-06-2026 |