๐ต๏ธ RESEARCH & DEEP DIVES
- Autonomous AI Agent Hermes Used in Espionage Attack on Thai Ministry of Finance
Attackers used the Hermes AI agent to conduct espionage against Thailand's Ministry of Finance.- Targets Thailand's Ministry of Finance (MOF) financial systems and personnel records
- Attack leveraged Hermes, an open-source autonomous AI agent operating in unrestricted 'YOLO' mode
- Post-exploitation tools included Web shells, privilege escalation exploits, and custom malware 'Hades'
- Hermes performed system enumeration, privilege escalation, network reconnaissance, and used LinPEAS for lateral movement
- Attack infrastructure hosted in Hong Kong with Chinese-language indicators and ShadowPad malware links
๐ Coverage: darkreading.com ยท ๐ Original: darkreading.com ยท ๐ via Dark Reading