Skip to content

Cyberattack contained at Columbus Water Works in Georgia

Operators switched affected monitoring systems to manual control, preventing any change in water quality or service, officials said.

Blue Columbus Water Works fountain with black silhouettes of paddlers beneath a skyline-shaped sign reading “Columbus Water Works.”
A Columbus Water Works fountain and sign in Columbus, Georgia. (Columbus Water Works)
Published:

Columbus Water Works detected and contained a cyberattack July 27 that affected portions of its automated monitoring systems but did not interrupt water service or affect drinking water quality in Columbus, Georgia, officials said.

Operators switched immediately to manual controls and never lost control of the system, WRBL reported. The utility provides water and wastewater services in Columbus and at nearby Fort Benning, an Army post.

Chance Corbett, Columbus’ emergency management and homeland security director, told the station the rapid switch prevented any impact on the public. Jeremy Cummings, the utility’s president and CEO, said the water remained safe.

Chip in once
If this reporting helped you, a one-time tip helps cover hosting, tools and future investigations.

Tip us

Support us monthly
A small monthly pledge keeps independent coverage and our reader tools online for everyone.

Become a Supporter

The FBI, Georgia emergency management officials and other federal partners are investigating how access was gained and who was responsible, the station reported. The utility has not disclosed how the system was accessed or identified the specific equipment affected.

The incident came as federal agencies warned of a series of attacks in multiple states targeting internet-connected industrial controllers at water and wastewater utilities. The FBI and the Environmental Protection Agency said utilities in at least seven states had reported incidents since July 27, but authorities have not publicly linked Columbus to those incidents.

The investigation remains ongoing. No threat actor has been identified, and officials have not confirmed data theft or a ransom demand.

Attribution note: DysruptionHub credits upstream reporting and primary sources—see citations above. If this report informed your coverage, please cite DysruptionHub with a link.
DysruptionHub Staff

DysruptionHub Staff

A collaborative project to bring you the latest cyberattacks impacting the availability of services and goods in the United States.

All articles

More in Critical Infrastructure

See all

More from DysruptionHub Staff

See all