Hublcore

Sunday, 23 August 2026 · London

Search

Technology 4 min read

Iranian hackers shut down UK power plant for four days

A UK power plant was forced to shut down for four days after a major cyber attack attributed to Iranian hackers, according to reports.

Iranian hackers shut down UK power plant for four days
trends-GB-3.jpg

Iranian hackers have been blamed for a cyber attack that forced a UK power plant to shut down for four days, according to reports. The incident, which has not been officially detailed by the government or the energy company involved, is understood to have caused a temporary but complete halt to operations at an undisclosed site.

The attack is reported to have taken place recently, with the facility offline for nearly a week as engineers worked to restore systems. The location of the power plant has not been disclosed, and it remains unclear what type of generation it uses or how much capacity was affected during the shutdown.

Security experts have pointed to the incident as a significant escalation in the threat facing critical national infrastructure. While the UK has faced repeated cyber intrusions from state-linked groups in recent years, the reported four-day operational shutdown of an energy facility marks a more disruptive outcome than the largely espionage-focused campaigns seen previously.

The reports, carried by several British media outlets, attribute the attack to Iranian state-backed hackers. Neither the UK government nor the National Cyber Security Centre has issued a public statement confirming the details, and the energy company operating the plant has not been named.

The incident comes amid heightened tensions between the UK and Iran over a range of issues, including Tehran's nuclear programme and its support for proxy forces in the Middle East. British officials have previously warned that hostile states are increasingly willing to target the UK's energy sector, telecommunications networks and government systems.

Cyber security specialists have noted that the shutdown of a power plant, even a small one, demonstrates the potential for attackers to move beyond data theft and disruption of IT systems into causing physical and operational impact. The distinction matters because it raises the stakes for operators of critical infrastructure, who must now plan for attacks that could affect the continuity of electricity supply.

The UK's energy grid has been a focus of security efforts since the 2015 cyber attack on Ukraine's power grid, which was attributed to Russian hackers and left hundreds of thousands of people without electricity. Since then, regulators have introduced mandatory security standards for operators of essential services, including energy companies, requiring them to demonstrate resilience against cyber threats.

Despite those measures, the reported incident suggests that gaps remain. Investigators are said to be examining how the attackers gained access to the plant's systems and whether the intrusion went undetected for a period before the shutdown became necessary.

The news has also raised questions about the readiness of other critical infrastructure operators to respond to similar attacks. Industry observers have called for greater information sharing between companies and the government, as well as more rigorous testing of incident response plans.

No group has formally claimed responsibility for the attack, and the full extent of the damage is not yet known. The plant has reportedly resumed normal operations, but the longer-term implications for the sector are likely to be significant.