{"data":{"id":"87c64916-d41a-44c5-a154-76031ee2e4df","title":"Carbonato Botnet Compromises Docker Hosts to Deploy Telegram-Controlled Hermes AI Agent","summary":"Researchers at ThreatDown disclosed Carbonato, a botnet that breaks into Docker daemons exposed without authentication on port 2375 and then deploys the open-source Hermes Agent framework on each host. The agent is reconfigured through its SOUL.md persona file and takes operator tasks over Telegram, with the operators likely based in Costa Rica. The campaign was found through an unauthenticated Docker registry publicly accessible since May 2026.","solution":"N/A -- no mitigation discussed in source.","labels":["security","industry"],"sourceUrl":"https://thehackernews.com/2026/09/carbonato-botnet-compromises-docker.html","publishedAt":"2026-09-28T11:46:00.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"medium","attackType":["supply_chain","other"],"issueType":"news","affectedPackages":null,"affectedPackageNames":null,"affectedVendors":[],"affectedVendorsRaw":["Hermes Agent","DeepSeek","Telegram","Docker"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":null,"headlinePromptVersion":null,"cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"epssCheckedAt":null,"kevDateAdded":null,"advisoryAliases":null,"affectedPackagesSource":null,"affectedPackagesCheckedAt":null,"patchAvailable":null,"disclosureDate":"2026-09-28T11:46:00.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.9,"researchCategory":null,"atlasIds":null}}