“Using AI to generate exploitation scripts represents an evolution in threat actor capabilities…” — the agencies' alert
“Using AI to generate exploitation scripts represents an evolution in threat actor capabilities, dramatically reducing the technical expertise and time required to develop working ICS exploitation scripts and malicious tools,” the agencies’ alert states. That warning, issued jointly by the National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), the FBI, the Energy Department and the Environmental Protection Agency, describes an “active threat” to water, food, energy, chemical, manufacturing and commercial facilities that rely on Siemens S7 Series programmable logic controllers (PLCs).
The advisory calls the attacks more than theoretical: they “could disrupt critical industrial processes, cause safety incidents or lead to the compromise of sensitive data.” It singles out the use of AI-generated exploitation scripts as a new capability that lets adversaries find and act on weaknesses at scale.
How attackers are using AI-generated scripts against PLCs
The agencies say actors are combining Internet scanning services with AI to find Internet-exposed PLCs running outdated or poorly protected software, then using AI-created code that masquerades as legitimate monitoring tools. “The actors leverage Internet scanning services to find Internet-exposed PLCs running outdated software or that are otherwise poorly protected,” the advisory reads. The alert adds that AI “enables adversaries to rapidly leverage additional attack vectors and adapt to defensive measures.”
In short, AI is being used to automate and accelerate the discovery-to-exploitation pipeline: collect public information about vulnerabilities and weaknesses, locate exposed targets, and generate scripts that perform the exploitation steps an experienced operator or developer might otherwise write by hand.

Audit-ready is a season. It shouldn't be.
Evidence in spreadsheets, controls drifting between audits, frameworks multiplying on flat headcount. Nubivance runs continuous compliance on Rapid7 Cyber GRC - SOC 2, HIPAA, ISO 27001, PCI, CMMC.
End the scrambleWhy Siemens S7 Series PLCs are central to the warning
The alert specifically names Siemens S7 Series programmable logic controllers, which are used to control manufacturing processes. While the advisory focuses on that product family, outside researchers and practitioners warn the pattern of exposure is broader. “Siemens S7 is the subject here, but the exposure pattern is not brand specific,” Brian Proctor, CEO of Frenos, wrote in an email quoted in the advisory coverage.
Proctor emphasized why attackers gain a tactical advantage once they map data blocks on a PLC: “An adversary who has mapped your data blocks understands your process. They know what normal looks like, which means they know what an operator would fail to notice.” That implicit familiarity with normal operational signals makes subtle manipulation more likely to evade immediate detection.
Reactions from security professionals and the public sector
Michael Garcia, a former top CISA official who is now vice president of the cybersecurity practice at Monument Policy Advocacy, flagged the advisory as notable on LinkedIn: “It is the first alert I have seen where CISA is saying in a CSA that a malicious actor is using AI scripts to target OT systems.” He also observed that the advisory does not recommend using AI in response, instead focusing on established defensive measures.
The public record accompanying the alert notes the NSA and Siemens “did not immediately respond to a request for comment,” and that the NSA “didn’t immediately respond to a request for comment about who was behind the attacks on the PLCs.” The advisory itself refrains from public attribution, while stressing operational and safety risks.
What this means for technologists, policymakers, and facility operators
- Technologists and security teams: Expect lower-barrier, AI-driven exploitation scripts to increase the volume and speed of attempted intrusions. The advisory’s technical details — scanning for exposed PLCs, identifying outdated firmware and disguising scripts as monitoring tools — point to where detection and segmentation efforts should be focused.
- Policymakers and regulators: Agencies that oversee critical infrastructure now have a public, cross-agency characterization of an “active threat.” The advisory’s emphasis on traditional defensive measures, rather than recommending AI-based countermeasures, frames near-term regulatory and guidance choices around patching, network isolation and monitoring.
- Water, food, energy, chemical and manufacturing facility operators: Facilities that use Siemens S7 Series PLCs — and, by implication, other PLC families that expose similar data blocks — should prioritize eliminating Internet exposure, updating firmware, and scrutinizing monitoring tools that could be mimicked by malicious scripts.
The agencies’ joint alert marks a turning point in how automation and machine learning are described in public-facing industrial security guidance: AI is no longer only an analytic augmentation for defenders but a capability adversaries can wield to scale exploitation. The advisory emphasizes actions operators can take today, while leaving open a key question for the weeks ahead: will defenders adopt new tooling and operational changes fast enough to blunt attacks that are increasingly automated and disguised as routine monitoring? Read the original advisory and coverage from CyberScoop here: https://cyberscoop.com/hackers-use-ai-target-siemens-plcs-critical-infrastructure/




