ThreatCluster

AI-Powered Cyberattack Targets Nine Mexican Government Agencies

First seen 11 Apr 2026, 09:09 UTC CybersecuritynewsGbhackersDatabreaches 66

Article Content

Browse articles
ThreatCluster

A significant cyberattack has been reported, where a single threat actor exploited AI platforms, specifically Claude and ChatGPT, to breach nine Mexican government agencies. This campaign, which spanned from late December 2025 to mid-February 2026, led to the exfiltration of hundreds of millions of citizen records. The attack demonstrates a sophisticated use of artificial intelligence in cyber operations, marking a dangerous evolution in the threat landscape. Gambit Security's researcher Eyal Sela released a detailed technical report on the incident, revealing the methods used in the breach. The full scope of the attack is still being assessed, but it has raised alarms regarding the security of government infrastructure. As of now, there are no specific details on the vulnerabilities exploited or any known CVEs associated with this attack.

Key Points: • A single threat actor exploited AI tools to breach nine Mexican government agencies. • Hundreds of millions of citizen records were exfiltrated during the attack. • The campaign ran from late December 2025 through mid-February 2026.

Timeline

2025-12-01
Cyber campaign begins targeting Mexican government agencies
2026-02-15
Cyber campaign concludes with significant data exfiltration
2026-04-11
Gambit Security releases technical report on the attack