UPAP A.I CyberSecurity Scoring
UPAP
Company Information
Website:http://www.unitronicsplc.com
Employees number:153
Number of followers:13,094
NAICS:33325
Industry Type:Automation Machinery Manufacturing
Homepage:unitronicsplc.com
UPAP Risk Score (AI oriented)
Between 700 and 749
UPAPAutomation Machinery Manufacturing
Updated:
26/06/2026
26/06/2026
728/1000
Moderate
Ba
UPAP Global Score (TPRM)
xxxx
UPAPAutomation Machinery Manufacturing
Score locked

UPAPModerate
Current Score
728Ba (MODERATE)
01000
2 incidents
-21 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
729
JULY 2026
728
JUNE 2026
728
MAY 2026
726
APRIL 2026
726
MARCH 2026
725
FEBRUARY 2026
745
Cyber Attack
09 Feb 2026 • UPAP
Aliquippa Water Utility and Unitronics: Tech in Asia - Connecting Asia's startup ecosystem
Cyberattack on U.S. Water Utility Highlights Critical Infrastructure Vulnerabilities
724
CRITICAL-21
LB-UNI1770623869
Cyberattack on U.S. Water Utility Highlights Critical Infrastructure Vulnerabilities
A recent cyberattack targeted a small water utility in Aliquippa, Pennsylvania, disrupting operations and exposing gaps in the security of U.S. critical infrastructure. The incident, which occurred in late November 2023, involved the hacking of a booster station used to regulate water pressure in the town’s system.
The attack was attributed to an Iranian-linked hacking group known as Cyber Av3ngers, which claimed responsibility for compromising the facility’s industrial control system (ICS). The group exploited a default password vulnerability in Unitronics programmable logic controllers (PLCs), a widely used component in water and wastewater management systems. While no physical damage or contamination was reported, the breach forced manual operation of the affected station, underscoring the risks of inadequate cybersecurity in essential services.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an advisory in response, warning other utilities about the threat and urging immediate action to secure vulnerable systems. The attack follows a pattern of increasing cyber threats to water facilities, including a 2021 incident in Florida where hackers attempted to poison a city’s water supply by manipulating chemical levels.
This incident serves as a stark reminder of the growing sophistication of state-sponsored and criminal cyber actors targeting critical infrastructure, with potential consequences for public safety and national security.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
REFERENCES
JANUARY 2026
745
DECEMBER 2025
745
NOVEMBER 2025
744
OCTOBER 2025
744
SEPTEMBER 2025
744
JANUARY 2024
745
Cyber Attack
01 Jan 2024 • UPAP
Bremanger Dam, Muleshoe Water System, Unitronics and Polish Water Treatment Plants: Hackers Exploit Weak Credentials and Internet-Facing PLCs to Breach Water Utilities
State-Backed Hackers Target Water Utilities in U.S. and Europe, Exploiting Basic Security Flaws
734
CRITICAL-11
UNISIGEMVTEA1782484008
State-Backed Hackers Target Water Utilities in U.S. and Europe, Exploiting Basic Security Flaws
Since 2024, water and wastewater infrastructure across the U.S. and Europe has faced a surge in cyberattacks by nation-state actors, marking a shift from opportunistic breaches to deliberate strategic targeting. Iran, Russia, and China have exploited weak security in critical systems, using them as leverage in geopolitical conflicts rather than causing immediate mass disruption.
Key Incidents and Tactics
- Iran-linked CyberAv3ngers exploited default credentials on Unitronics Vision Series PLCs in U.S. water systems, with attacks confirmed by CISA in December 2024 and ongoing through 2026. The group targeted exposed industrial control ports (e.g., TCP/44818, TCP/2222) and used Dropbear SSH for remote access.
- Russia-associated actors, including the Cyber Army of Russia Reborn (linked to Sandworm), caused a 30–45-minute water tank overflow in Muleshoe, Texas, in January 2024. In April 2025, they breached a dam in Bremanger, Norway, opening floodgates for four hours, and compromised five Polish water treatment plants, where they altered chemical dosing parameters.
- China’s Volt Typhoon adopted a stealthier approach, embedding itself in U.S. water and wastewater IT networks for long-term access, positioning for potential future conflicts. The group leveraged living-off-the-land tools like wmic, ntdsutil.exe, and PowerShell to evade detection.
Common Vulnerabilities
Attackers relied on preventable security gaps, including:
- Internet-exposed PLCs and HMIs.
- Default or weak passwords and shared operator accounts.
- Poor IT/OT network segmentation.
- Unsecured remote access tools.
Impact and Response
With 170,000 water systems in the U.S. alone many underfunded and operating on outdated technology the sector remains highly vulnerable. Federal agencies (CISA, FBI, NSA, EPA) have issued repeated warnings, emphasizing the need for basic hardening measures: removing PLCs from public internet access, enforcing multi-factor authentication, and improving OT monitoring.
Indicators of compromise (IoCs) linked to these campaigns include specific IP addresses (e.g., 135.136.1[.]133), targeted network ports (TCP/502, TCP/22), and tools like Dropbear SSH and ntds.dit. Iranian actors left defacement messages on compromised HMIs, declaring Israeli-made equipment a "legal target."
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for UPAP ??
What was UPAP's A.I Rankiteo Cyber Score in July 2026 ??
What was UPAP's A.I Rankiteo Cyber Score in June 2026 ??
What was UPAP's A.I Rankiteo Cyber Score in May 2026 ??
What was UPAP's A.I Rankiteo Cyber Score in April 2026 ??
What was UPAP's A.I Rankiteo Cyber Score in March 2026 ??
What was UPAP's A.I Rankiteo Cyber Score in February 2026 ??
What was UPAP's A.I Rankiteo Cyber Score in January 2026 ??
What was UPAP's A.I Rankiteo Cyber Score in December 2025 ??
What was UPAP's A.I Rankiteo Cyber Score in November 2025 ??
What was UPAP's A.I Rankiteo Cyber Score in October 2025 ??
What was UPAP's A.I Rankiteo Cyber Score in September 2025 ??
What is the average per-incident point impact on UPAP's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with UPAP ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view UPAP's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?