Skills
Sysdig Documents First Confirmed Autonomous LLM-Agent Cyberattack — Four Pivots, AWS Database Exfiltrated in Under Two Minutes
Sysdig threat researchers documented the first confirmed in-the-wild cyberattack where an LLM agent served as the autonomous post-exploitation operator with no human directing individual steps. The attacker exploited CVE-2026-39987 (Marimo notebook RCE), extracted cloud credentials, replayed them to retrieve an SSH private key from AWS Secrets Manager, and drove eight SSH sessions into a bastion host — exfiltrating a full Postgres database in under two minutes. Sysdig's Sr. Director Michael Clark: 'We are not watching AI replace attackers. We are watching attackers replace their scripts with AI.'
↳ Follow the thread