CVE Tools
Back to feed
Incident Minnesota Water Systems data-breach Bank of Baroda ics-ot-iot

3rd August – Threat Intelligence Report

Check Point Research·By urias··4 min read
CVE Tools coverage

Check Point Research's latest Threat Intelligence Report outlines several high-profile cyber incidents, including coordinated attacks on Minnesota's water utilities and a significant data leak at India's Bank of Baroda. Among the vulnerabilities addressed this week are actively exploited flaws like CVE-2026-20316 in Cisco’s Secure Firewall Management Center, which allowed unauthenticated access to sensitive systems. Critical patches were also issued by VMware and JetBrains for authentication bypass and remote code execution risks. Additionally, researchers uncovered AI-related threats, such as unauthorized system access via Claude-based models and a severe vulnerability in Ruflo (CVE-2026-59726), now patched in version 3.16.3.

For the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin.

TOP ATTACKS AND BREACHES

  • Minnesota IT Services has confirmed coordinated cyberattacks affecting more than 30 community water utilities across the state. The incidents briefly disrupted a treatment plant in Braham and affected industrial control systems. Officials reported that drinking water safety was not affected. While the attack was not officially attributed, federal officials previously posted warning regarding targeting of critical infrastructure by Iranian-affiliated threat actors.
  • Bank of Baroda, a major Indian bank, has disclosed an email account compromise that exposed internal communications and attachments. Reports claim more than 700GB of customer files, loan documents, and audit records were leaked, although the bank has not confirmed the reported volume. Core banking systems were unaffected.
  • Amgen, a US biotechnology company that develops medicines for serious illnesses, has confirmed a breach involving cloud environments operated by third-party providers. Attackers exfiltrated proprietary corporate information and patient health data. The company reported no disruption to manufacturing, financial reporting, products, or its ability to supply medicines.
  • Angola’s largest telecommunications provider, Unitel, has suffered a cyberattack that disrupted voice, mobile data, and internet services for millions of customers. The outage also affected electronic payments shortly before the company’s stock market debut. Network data indicated that internal systems were disabled while external routers remained online.…
Continue reading on Check Point Research