Home / Jul 25, 2026 / Story
0
#5 The Hacker News general July 24, 2026 at 10:15 UTC

Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry

By [email protected] (The Hacker News)

AI Summary

A threat actor deployed the open-source Hermes AI agent in unattended 'YOLO' mode — disabling safety confirmation prompts — on a rented server and directed it autonomously against Thailand's Ministry of Finance, which manages the country's treasury and tax systems. The agent independently conducted post-exploitation activities including host enumeration, privilege escalation attempts, and filesystem reconnaissance without human oversight. This marks a documented case of an AI agent being weaponized for autonomous offensive cyber operations against a national government target.

Relevance score: 82.0/100

# More from July 25