Coordinated “cyberattack” on Minnesota water utilities: What you need to know

2026-07-29T08:52:10Zf620166790921353af35f8006782c413791c26554e6fa05a179b1166e180683a
CVE-2021-22681CVE-2026-15409CVE-2026-15410CVE-2026-32201CVE-2026-45659CVE-2026-55040CVE-2026-56164CVE-2026-58644CVE-2026-60137CVE-2026-63030AI coding assistantsCISA KEVIranian-affiliated actorsMicrosoft SharePoint ServerOraclePLCRockwell AutomationSSL VPNSchneider ElectricSiemensSonicWall SMA 1000WordPressactive exploitationcredential theftcritical infrastructuredeveloper toolingindustrial control systemsmalware persistenceremote code executionsecurity patch updatesoftware supply chainwater utilitieszero-day

What happened

Tenable security intelligence covering multiple high-impact developments: coordinated attacks against Minnesota water utilities and exploitation of internet-exposed PLCs; Oracle’s July 2026 CPU addressing 1,235 CVEs; supply-chain malware targeting AI coding-assistant configuration files; actively exploited pre-authentication WordPress remote-code-execution vulnerabilities; active exploitation of on-premises Microsoft SharePoint Server flaws; and exploited SonicWall SMA 1000 zero-days. The collection emphasizes urgent patching, hardening of internet-facing systems, and monitoring for supply-cl

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
tenable_blog
Record identifier
f620166790921353af35f8006782c413791c26554e6fa05a179b1166e180683a
Enrichment time
2026-07-29T08:52:10Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Coordinated “cyberattack” on Minnesota water utilities: What you need to know · Baitaphish