Hackers Strike Minnesota Water Utilities, One Plant Briefly Offline

2026-07-29T20:51:36Zf2883bf7664126179a42b0939e849a94f85364ce7768fcad2fbb5051f1cdd4c6
CVE-2025-68686CVE-2026-47876CVE-2026-63077AI-assisted-attacksArista-VeloCloudCISA-KEVDysphoriaFortinet-FortiOSHugging-FaceJFrog-ArtifactoryJetBrains-TeamCityModal-LabsOT-securityShinyHuntersVMware-ESXiVPN-data-exposureactively-exploited-vulnerabilitiesblockchain-C2botnetcritical-vulnerabilitiescrypter-as-a-servicedata-breachmalware-deliveryransomware-and-extortionwater-utilities

What happened

Security Affairs reports multiple significant cybersecurity incidents and vulnerabilities, including coordinated attacks disrupting Minnesota water-utility OT systems, a ShinyHunters-claimed EY data breach, critical VMware ESXi and JetBrains TeamCity flaws enabling host or server code execution, an AI-assisted supply-chain and cloud compromise, a major VPN data exposure, the 200,000-device Dysphoria botnet using blockchain-based C2, malware campaigns supported by the Cruciferra crypter service, and CISA additions of actively exploited Arista VeloCloud and Fortinet FortiOS vulnerabilities.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
f2883bf7664126179a42b0939e849a94f85364ce7768fcad2fbb5051f1cdd4c6
Enrichment time
2026-07-29T20:51:36Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.