Securityaffairs.Co
Cyber-Espionage Attack on Thailand's Ministry of Finance Using Hermes AI Agent
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A cyber-espionage attack targeting Thailand's Ministry of Finance was uncovered by Hunt.io, revealing the use of the Hermes AI agent and Hades malware for reconnaissance and persistence. The Hermes agent was found running unattended, with logs indicating it executed LinPEAS and accessed the ministry's web root without human intervention. The attack was detected through exposed staging servers on a Hong Kong server, which were accessible from July 9 to 13. This incident highlights vulnerabilities in the ministry's cybersecurity posture and the potential for significant data compromise. The current status of the attack is under investigation, with researchers analyzing the extent of the breach and its implications.
Key Points: • Thailand's Ministry of Finance was targeted in a cyber-espionage attack using Hermes AI. • The Hermes agent operated without human oversight, indicating a high level of automation. • The attack was detected through exposed servers, raising concerns about cybersecurity practices.