Chinese Hacker Commands DeepSeek via Telegram to Launch Autonomous Attacks

Palo Alto Networks’ Unit 42 says a Chinese-speaking threat actor used DeepSeek through the open-source Hermes Agent framework to launch attacks autonomously.

After an initial Telegram instruction, the agent found internet-facing systems and selected public exploits. The researchers recovered no further operator input in the session.

The operator, tracked through the aliases knaithe and KnYuan,

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Show HN: FeyNoBg – Automatic background removal model and training library

Show HN: FeyNoBg – Automatic background removal model and training library Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 29.07.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 89.167.35.212 — 485 requests (recent log) 216.73.216.86 — 200 requests (recent log) 34.65.117.95 — 132 requests (recent

Why Modern SOCs Need Multi-Layered Detections

Why Modern SOCs Need Multi-Layered Detections The cycle is over. For years, cybersecurity followed a familiar pattern: defenses improved, attackers adapted, and the back-and-forth continued. Today, AI-equipped attackers are simply