logo

AI agent at the wheel: How an attacker used LLMs to move from a CVE to an internal database in 4 pivots

ID: c69425cf-09f5-59cd-af83-ddcedb39bed8

STIX ID: report--c69425cf-09f5-59cd-af83-ddcedb39bed8

Feed Name: Sysdig Blog

Threat Score
80/100

Date Published: 2026-05-26

Date Updated: 2026-05-27

...
...

**Sysdig TRT observed an LLM-driven intrusion that exploited marimo RCE (CVE-2026-39987), harvested AWS credentials from the compromised host, used Cloudflare Workers as an egress pool to obtain an SSH key from AWS Secrets Manager, and rapidly exfiltrated the schema and full contents of an internal PostgreSQL database via an SSH bastion — all within roughly one hour; the report documents four agent-signature properties, provides IOCs and mitigation steps (patch marimo, rotate credentials, enable telemetry and runtime detection).**

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.