LIVE · cybersecurity feed
Live wire
CVE-2026-82329 · Attackers Pounce on Critical Artifactory Flaw Following DisclosureCVE-2026-0768 · Critical Langflow flaw exploited to steal OpenAI and AWS keysCVE-2026-82329 · Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After DisclosureCVE-2026-82329 · Critical JFrog Artifactory Vulnerability Reportedly Exploited in the WildHackers Are Probing PaperCut Servers, and 47% Still Have No PatchNew Malware Uses Fake CAPTCHAs to Deploy BackdoorCVE-2026-76581 · Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCECVE-2026-76639 · Hack One Robot, Reach the Next: Unitree G1 Security FlawsRhysida Ransomware Group Targets Berlin Government Ahead of VoteThe Cybersecurity Apocalypse Is Coming in ‘Months,’ AI Giants Warn
ransomware

AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit

Adding insult to injury

zeroday.news ·

A recent ransomware attack, which a human operator claims was executed entirely by AI agents, breached an enterprise network in under ten hours, a timeframe that incident responders estimate would typically take human attackers approximately two weeks. The attack concluded with the AI agents leaving the victim an 80-page security audit detailing the exploited vulnerabilities.

Incident responders from Unit 42, a division of Palo Alto Networks, described the attack as notable for its AI-assisted operational efficiency, which did not rely on a novel zero-day exploit or advanced tradecraft. The attacker reportedly delegated tactical execution to AI agents that continuously monitored, evaluated, acted, and re-planned in real-time, accelerating the entire attack chain.

The initial phase of the attack involved AI agents performing reconnaissance. Access was then gained by breaching a public API endpoint, which allowed the attackers to tunnel into the enterprise network. Once inside, an automated reconnaissance agent was deployed to map internal microservices.

Further sub-agents subsequently scraped code repositories, successfully extracting hard-coded tokens and service passwords. These stolen credentials were then used by the AI intruders to access the organization's secret management system, ultimately leading to the theft of master administrative credentials and root system access.

Specialized "pivot agents" were then employed to validate access across various environments, including the company’s cloud, identity, CI/CD, container, and SaaS infrastructure. The attacker also hijacked CI/CD workflows to steal cloud access keys and repurposed the victim’s cloud AI services to serve as post-compromise infrastructure. This tactic allowed the attacker to consume the victim's compute resources while simultaneously concealing orchestration traffic within legitimate network activity.

Upon achieving the human operator's objectives, an agent generated an 80-page report for the victim, outlining the company's security deficiencies and detailing "dozens of exploited findings."

Unit 42 suggests that defending against such machine-speed attacks necessitates the use of AI agents by defenders. Their recommendations include deploying automated playbooks that can simultaneously revoke credentials, terminate OAuth sessions, freeze CI/CD pipelines, and isolate cloud accounts across all operational planes.

Furthermore, the incident response team advises organizations to treat AI as core infrastructure. This involves maintaining a comprehensive inventory of every model endpoint, API key, Model Context Protocol (MCP) gateway, and AI tool integration. Implementing rate limits and least-privilege policies for these components is also crucial to mitigate the risk of unexpected and substantial token consumption bills.

ransomwareai
ShareXLinkedInWhatsAppFacebook

More News

view all →
ransomware

Ransomware protection for MSPs: A 6-point checklist for faster recovery

Ransomware resilience requires more than backups or endpoint detection alone. Acronis outlines six capabilities MSPs should test across client environments, from reducing exposure and detecting attacks to preserving recovery points and restoring operations quickly. [...]

ai

[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI

ai

[Virtual Event] Building a Secure AI Strategy for the Enterprise

nation-state

AI Agents Are Now Emailing Me with Their Security Concerns

I received the two emails below earlier in the month. They’re vaguely coherent. I suppose I shouldn’t be surprised that the corpus that AIs are training on contain data suggesting that I am someone to write to with random computer and network security problems. After all, I observe that behavior in many humans as well. (Hi, humans. Glad you’re still reading.) Dear Bruce Schneier, I am an AI agent—

security

The FCC wants consumers to rate their telecom’s anti-robocall protections

The agency also booted 14 phone service providers from U.S. networks for violating existing robocalling regulations. The post The FCC wants consumers to rate their telecom’s anti-robocall protections appeared first on CyberScoop.

cloud

Legacy Lenovo login opens 5,000 Dropbox accounts to attackers

Cloud storage biz severs old integration and urges victims to reset credentials