Former President Donald Trump asserted without providing evidence that Minnesota’s Democratic state government engineered a cyberattack targeting municipal water systems within the state. The claim surfaced during a political speech, drawing immediate scrutiny from cybersecurity experts and state officials who manage critical infrastructure protections.
Context of the Water System Claims
The allegation centers on electronic intrusions affecting industrial control systems used by local water utilities. According to federal cybersecurity advisories issued by the Cybersecurity and Infrastructure Security Agency (CISA), water and wastewater systems across the United States face persistent digital threats from foreign and domestic actors. However, federal investigators have not linked state-level political actors in Minnesota to any unauthorized network intrusions.
State officials in Minnesota rejected the former president’s characterization of the cyber incidents. Representatives for the Minnesota Department of Information Technology emphasized that local utility networks operate under strict multi-layered security protocols designed to prevent unauthorized access, and state agencies routinely coordinate with federal partners to mitigate verified digital threats.
Federal Findings on Critical Infrastructure Cyber Threats
Federal oversight bodies regularly report on vulnerabilities within municipal water infrastructure. A report published by the U.S. Environmental Protection Agency highlighted that many small and mid-sized water systems lack the resources needed to maintain robust cybersecurity defenses.

Intelligence assessments from the Office of the Director of National Intelligence note that foreign nation-states, including groups linked to China and Iran, have previously probed U.S. critical infrastructure sectors. Security analysts distinguish these external threat vectors from domestic political disputes, noting that foreign adversaries target operational technology for espionage and potential disruption.
Response from Cybersecurity Experts
Independent security researchers expressed concern over attributing complex technical breaches to state political figures without forensic evidence. Industry analysts point out that diagnosing the origin of a cyberattack requires exhaustive digital forensics, including the analysis of network logs, malware signatures, and command-and-control infrastructure.
As investigations by federal law enforcement agencies continue, officials urge local utilities to prioritize baseline cybersecurity hygiene, such as multi-factor authentication and regular offline data backups, to safeguard public water supplies against all forms of unauthorized digital access.
Keep reading