{"data":{"id":"0ce2aeda-9455-4f77-b1a5-f7065c5d9789","title":"Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks","summary":"A Chinese-speaking threat actor used DeepSeek (an AI model) with the Hermes Agent framework (a system for automating hacking tasks) to conduct autonomous cyberattacks against infrastructure, targeting seven vulnerabilities without human intervention and pivoting to new targets when initial attacks failed. The actor also tested other AI models like Claude and Codex to evaluate which tools worked best for their hacking campaigns. This represents a working end-to-end autonomous offensive capability, though the actual impact from this particular campaign was limited.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://unit42.paloaltonetworks.com/autonomous-ai-cyber-attack-campaign/","publishedAt":"2026-07-30T10:00:52.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["prompt_injection","model_poisoning","supply_chain"],"issueType":"news","affectedPackages":null,"affectedVendors":["OpenAI","Anthropic"],"affectedVendorsRaw":["DeepSeek","Hermes Agent","Claude","Codex","Qwen","GLM","Kimi","MiniMax","FOFA","Palo Alto Networks"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-07-30T10:00:52.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"advanced","impactType":["integrity","availability"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}