UK power plant outage attributed to Iran-linked cyber-attack
A four-day shutdown of a small-scale generator marks a notable escalation in tensions, even as officials insist the wider national grid remained secure.

Hackers linked to Iran have been blamed for a cyber-attack that forced a small-scale British power plant to suspend operations for four days last month. The incident, first reported by the Sunday Telegraph, has drawn attention to the growing vulnerability of critical infrastructure despite official reassurances regarding the stability of the national energy supply.
The Department for Energy Security and Net Zero confirmed that the outage affected a single generator and did not pose a risk to the broader energy system. A spokesperson for the department stated that the UK maintains a highly resilient energy framework, with close collaboration with the energy sector to ensure high security standards across the infrastructure.
Notably, the National Cyber Security Centre (NCSC) is understood not to have received reported outages from regulated operators of power stations. This distinction highlights the specific nature of the incident, which targeted a smaller asset rather than the major regulated nodes typically monitored for systemic risk.
The attribution to Iran is viewed by policymakers as an apparent escalation in retaliation for the UK’s decision to allow the United States to launch defensive operations from British bases. The UK has permitted these operations since the start of the US war on Iran, while explicitly refusing to participate in offensive strikes, a policy that remains unchanged under Prime Minister Andy Burnham.
Tensions were further heightened last month when Iran’s Islamic Revolutionary Guard Corps (IRGC) warned that any base used for aggression against Iranian territory constitutes a legitimate target. The government responded by stating it was ready to defend itself, while Prime Minister Burnham was recently notified that the agreement allowing US use of British bases had been extended.
This incident follows a pattern of cyber-activity attributed to Iranian actors, including a massive power outage in Turkey in 2015 and breaches of Israeli government websites in 2022. US security agencies also warned earlier this year of campaigns by the IRGC-linked group “CyberAv3ngers,” which allegedly compromised at least 75 devices in multiple infrastructure sectors in 2023.


