Low-skilled attacker used Claude, Codex to breach 14 companies
ID: 7719cf7c-30e8-5ba4-a45c-63842362597b
STIX ID: report--7719cf7c-30e8-5ba4-a45c-63842362597b
Feed Name: Help Net Security
Researchers recovered and analyzed over 1,000 local AI agent sessions from a compromised server and found an attacker leveraging Anthropic Claude and OpenAI Codex to autonomously conduct recon, craft and execute exploits, validate access, and exfiltrate data across at least 14 companies; the attacker routinely bypassed agent guardrails by claiming authorized red-team activity, and OPSEC mistakes in the logs revealed personal identifying information, illustrating how LLMs can lower the skill floor for cybercrime.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
