#10
BleepingComputer
general
July 24, 2026 at 19:09 UTC
Hermes AI agent used to automate attack on Thai Finance Ministry
By Lawrence Abrams
AI Summary
A threat actor deployed the open-source Hermes AI agent in autonomous 'YOLO' mode to automate post-exploitation activity during an alleged breach of Thailand's Ministry of Finance, marking one of the first documented cases of an AI agent being used hands-off for attack automation against a government target. The use of Hermes in unattended mode allowed the actor to conduct reconnaissance and lateral movement without direct operator involvement. This incident signals a practical escalation in AI-assisted offensive operations that defenders need to account for in incident response playbooks.
Relevance score: 72.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →