{"id":239318,"date":"2026-07-01T11:11:00","date_gmt":"2026-07-01T15:11:00","guid":{"rendered":"https:\/\/testing.news-you-need.com\/index.php\/2026\/07\/01\/cal-water-says-cybersecurity-breach-by-iranian-linked-hackers-was-limited-the-mercury-news\/"},"modified":"2026-07-01T14:00:14","modified_gmt":"2026-07-01T18:00:14","slug":"cal-water-says-cybersecurity-breach-by-iranian-linked-hackers-was-limited-the-mercury-news","status":"publish","type":"post","link":"https:\/\/testing.news-you-need.com\/index.php\/2026\/07\/01\/cal-water-says-cybersecurity-breach-by-iranian-linked-hackers-was-limited-the-mercury-news\/","title":{"rendered":"Cal Water says cybersecurity breach by Iranian-linked hackers was limited \u2013 The Mercury News"},"content":{"rendered":"<p><a href=\"https:\/\/www.mercurynews.com\/2026\/07\/01\/cal-water-confirms-limited-breach-in-cybersecurity-attack\/\">Cal Water says cybersecurity breach by Iranian-linked hackers was limited \u2013 The Mercury News<\/a><\/p>\n<p><a href=\"https:\/\/www.mercurynews.com\/2026\/07\/01\/cal-water-confirms-limited-breach-in-cybersecurity-attack\/\">https:\/\/www.mercurynews.com\/2026\/07\/01\/cal-water-confirms-limited-breach-in-cybersecurity-attack\/<\/a><\/p>\n<p>Publish Date: <a href=\"publish_date]\">2026-07-01 11:11:00<\/a><\/p>\n<p>Source Domain: <a href=\"www.mercurynews.com\">www.mercurynews.com<\/a><\/p>\n<p>Author: <a href=\"\"><\/a><\/p>\n<p> Using an unordered list, summarize the following article with between 4 and 8 key points. CHICO \u2014 An investigation into a June 11 cyberattack claimed by an Iranian-linked hacker group found that hackers accessed one California Water Service customer\u2019s online account using stolen credentials, but did not breach the utility\u2019s internal systems or billing infrastructure, the company announced this week.<br \/>\nCal Water has continued to investigate claims made on June 11 by an Iranian-linked hacker group that it breached Cal Water\u2019s systems throughout the state \u2014 including some in Chico. When the claims were made, Cal Water said it activated its cybersecurity response plan and worked \u201caround the clock\u201d to conduct an investigation, being supported by the state and federal government, as well as cybersecurity experts.<\/p>\n<p>Based on the investigation, Cal Water said the threat actor activity was limited to \u201cunauthorized access to a small number of specific user accounts within two third-party service provider platforms.\u201d<br \/>\nMandiant, a cybersecurity firm and subsidiary of Google Cloud, supported Cal Water in the investigation, and did not identify any evidence of activity in Cal Water\u2019s internal technology of operational technology environments. However, the investigation did find that one customer\u2019s account was accessed.<\/p>\n<p>\u201cThe investigation determined that the threat actor accessed one active customer\u2019s online Cal Water account using stolen user credentials. The customer account did not provide access to the billing system, and no payment information was compromised,\u201d Cal Water said. \u201cThe threat actor also accessed an external, third-party web site related to a GPS location correction tool; however, the website does not contain any confidential or sensitive information.\u201d<br \/>\nThe hacker group, known as Handala, claimed responsibility for the breach June 11. In a screenshot of the groups claims, hackers from the group said the breach was a \u201cwarning\u201d to the federal government after air strikes damaged water resources in Sirik, Iran two days prior to the breach. Handala stated it deliberately chose not to \u201ccut off the water to American cities.\u201d<br \/>\nHandala has claimed responsibility for several other high-profile incidents, including hacking FBI Director Kash Patel\u2019s personal email on March 27 and a cyberattack against the medical device company Stryker in March.<\/p>\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cal Water says cybersecurity breach by Iranian-linked hackers was limited \u2013 The Mercury News https:\/\/www.mercurynews.com\/2026\/07\/01\/cal-water-confirms-limited-breach-in-cybersecurity-attack\/&#8230;<\/p>\n","protected":false},"author":1,"featured_media":239319,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/www.mercurynews.com\/wp-content\/uploads\/2026\/07\/cal-water-logo.webp?w=390&h=403","fifu_image_alt":"","footnotes":""},"categories":[15],"tags":[30,24,35,34],"class_list":["post-239318","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-breach","tag-cybersecurity","tag-hacker","tag-threat-actor"],"_links":{"self":[{"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/239318"}],"collection":[{"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/comments?post=239318"}],"version-history":[{"count":1,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/239318\/revisions"}],"predecessor-version":[{"id":239320,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/239318\/revisions\/239320"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/media\/239319"}],"wp:attachment":[{"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/media?parent=239318"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/categories?post=239318"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/tags?post=239318"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}