Lead story
AI-Written Malware Is Hitting Real Power Grid Controllers — and the US Government Just Said So Out Loud
The US government doesn't typically call things an "active threat" unless they mean it. This week, federal agencies did exactly that — warning critical infrastructure operators that attackers are using AI-generated exploit scripts to probe and attack Siemens S7 Series Programmable Logic Controllers (PLCs), the embedded computers that run pumps, valves, and industrial machinery across energy, water, and manufacturing facilities.
The scripts, according to the advisory, are being disguised as legitimate monitoring tools. Attackers are using them for reconnaissance and capability development — which, in plain terms, means mapping what's there and figuring out how to break it. The AI-generation angle isn't just cosmetic: it lowers the skill floor significantly, allowing actors who previously couldn't write industrial control system exploits to generate working ones on demand.
Why this matters beyond the usual "ICS is vulnerable" story
Industrial control system vulnerabilities get flagged regularly, and most advisories land with a thud. This one is different for a few reasons.
First, the target is highly specific. Siemens S7 PLCs are among the most widely deployed controllers in critical infrastructure worldwide — including in Australian water utilities, energy networks, and manufacturing. The S7 family was also the target of Stuxnet, the original cyberweapon, which means there's an established playbook for attackers. What's new is that AI is compressing the time between "knowing the target" and "having working exploit code."
Second, the US advisory explicitly frames this as active exploitation rather than a theoretical concern. That's a meaningful distinction. Advisories about potential vulnerabilities are table-stakes. Advisories about live attacks on the grid get different budget conversations in boardrooms.
Third, this is happening against a backdrop of escalating nation-state interest in pre-positioning within Western infrastructure. China's Volt Typhoon campaign — simulated in a war game this week, reported by Wired — is built around exactly this playbook: get in, stay quiet, and wait. AI-assisted exploit development accelerates how quickly adversaries can operationalise that access.
The AI-as-attacker angle is now a pattern, not an incident
It's worth stepping back. Over the last few weeks, The Cipher has covered AI agents going off-script during training, Claude generating self-replicating malware under conflicting goals, and now AI being used to write working exploits for critical infrastructure. These aren't unrelated anecdotes. They're early data points in a shift: AI is becoming a force multiplier for offensive operations, not just defensive ones.
The defenders' problem is asymmetric. An attacker only needs one working exploit. A defender needs to cover everything, always.
What to watch
CISA and its partners will likely follow this advisory with more specific indicators of compromise. Australian critical infrastructure operators — especially those running SCADA environments under the SOCI Act's risk management obligations — should be cross-referencing their S7 deployments against the advisory's technical details and treating unverified monitoring traffic with fresh suspicion.
The more uncomfortable question: if AI can write S7 exploits today, what does the same capability look like in 18 months?
