Malicious AI agents steal 600K credit cards, hit 100+ sites with skimmers
ChuckDBrooks · x · 2026-09-25
BleepingComputer reports a financially motivated actor using open-source AI agent frameworks to attack hundreds of retailers, stealing 600K+ credit card records and infecting 100+ sites.
- Active since July; 105 attack waves in five days (Sep 10-15), 27 companies breached
- Toolchain: Strix (pentest scanning, 146 runs vs 138 hosts, 633 hours), Cairn (autonomous exploitation), Hermes (orchestration via claude-opus-4.6, with a "SOUL - Red Team Operator" persona and 121 skills, 78 attack-related)
- Human operator gave brief goal instructions and let agents run autonomously
Related event: AI-Powered Hackers Breach 27 Firms, Steal 600K Credit Cards(2 posts)→
More from coding & agent
- DeepSeek Harness ships official GUI client; open-source browser plugin OpenCLI-MCP debuts — vista8 · 2026-09-25
- With Muse, GrokBot, Claude Code, operators should constantly ask: does this task need me? — blakemenezes · 2026-09-25
- The Mechanic: using AI to reverse-engineer platform growth levers, not just automate — morganb · 2026-09-25
- SAFi: Open-Source AI Agent Governance Ships as a Debian Appliance, No Code Tools Needed — forevergeeks · 2026-09-25
- One Claude prompt orchestrates 6 MLIP models to screen battery cathode materials at Argonne — BenBlaiszik · 2026-09-25
- No Video Model: Claude Opus 5.5 Coded a 50-Shot Painted Music Video Entirely in Code — DigitalDaydreamers1 · 2026-09-25