Iranian-linked hackers shut down a British power plant for four days in what officials are calling the first known cyberattack of its kind on a UK power-generation facility.
The breach, reported in July, targeted a small-scale power generator that has not been publicly identified. UK officials emphasized that the incident did not threaten Britain’s wider electrical supply.
The attack was reported to the National Cyber Security Centre (NCSC), the public-facing arm of GCHQ. The incident triggered urgent warnings across Britain’s energy industry about the escalating danger posed by Iran-linked cyber groups.
The NCSC had already warned companies earlier this year to brace for possible attacks by Iranian hackers. Those warnings came amid rising tensions involving Iran, the United States and its allies.
This British incident lands amid a broader wave of infrastructure attacks. A string of cyberattacks against water infrastructure has hit at least 12 US states. In Minnesota, officials accused Iran of causing brief automated shutdowns and boil-water notices.
The UK government has cautioned that cyberattacks against domestic infrastructure remain a serious risk. Officials noted that artificial intelligence is making such attacks faster and easier to launch.


Despite the alarm, British officials sought to reassure the public. “The UK has a highly resilient energy system. We work closely with the energy sector to protect infrastructure and ensure the highest security standards,” a government spokesman said.
The four-day shutdown marks an unprecedented penetration of British energy infrastructure by Iranian-linked actors. Security experts within the industry are now scrambling to assess vulnerabilities and tighten defenses against similar incursions.
The timing of the attack follows a pattern of suspected Iranian cyber operations against Western targets. The NCSC’s earlier warning to companies now appears prescient in light of the successful power plant breach.


In the viral moment that put Iranian cyber capabilities back in the headlines, this British power plant shutdown represents the first confirmed case of Iran-linked hackers successfully knocking a UK power-generation facility offline. The four-day outage, while contained to a single unidentified small-scale generator, sent immediate shockwaves through Britain’s energy sector and prompted fresh government warnings about infrastructure vulnerability.
The attack’s success against a British target follows months of escalating warnings from Western intelligence agencies about Iran’s growing cyber warfare capabilities. The NCSC’s decision to alert companies earlier this year now underscores the perceived severity of the threat, even as officials maintain that the broader UK energy grid remains protected.
The NCSC continues working with energy sector partners to strengthen cyber defenses against anticipated future attacks.

