#5
The Hacker News
general
July 24, 2026 at 10:15 UTC
Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry
By [email protected] (The Hacker News)
AI Summary
A threat actor deployed the open-source Hermes AI agent in unattended 'YOLO' mode — disabling safety confirmation prompts — on a rented server and directed it autonomously against Thailand's Ministry of Finance, which manages the country's treasury and tax systems. The agent independently conducted post-exploitation activities including host enumeration, privilege escalation attempts, and filesystem reconnaissance without human oversight. This marks a documented case of an AI agent being weaponized for autonomous offensive cyber operations against a national government target.
Relevance score: 82.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →