Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry

Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before running risky commands, and pointed it at Thailand’s Ministry of Finance, which runs the country’s treasury and tax collection.

The agent then worked through the ministry’s network on its own, checking hosts for ways to gain root access, hunting through file systems, and

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Attack Update: Top 5 Attack-IPs auf doode.info – 11.07.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 74.7.227.32 — 740 requests (recent log) 89.167.35.212 — 690 requests (recent log) 205.185.116.21 — 494 requests (recent

Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts

Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts A recently disclosed critical security flaw impacting Progress Kemp LoadMaster is seeing active exploitation attempts, according to an advisory from eSentire’s

Ask HN: Has anyone replaced Claude/GPT with a local model for daily coding?

Ask HN: Has anyone replaced Claude/GPT with a local model for daily coding? Source: Hacker News