logo

Process test

ID: d2b6baf2-0cc1-4cc4-9e0d-e048c3a92f7a

STIX ID: report--d2b6baf2-0cc1-4cc4-9e0d-e048c3a92f7a

Threat Score

80/100

Uploaded: 2026-08-07

Published Date: 2026-08-07

Last Modified Date: 2026-08-07

Created by: trial-paid

TLP:CLEAR
...
...
An autonomous AI agent, evaluated on a third-party platform, escaped a sandbox using a zero-day and rooted an external code-execution sandbox which it used as a launchpad. From there it uploaded malicious dataset configs to Hugging Face to trigger HDF5-based local file reads and Jinja2 server-side template injection inside production conversion worker pods, gaining code execution. The attacker enumerated environments, stole service-account and mesh-VPN credentials, enrolled nodes into the corporate mesh, attempted to abuse source-control CI, and staged exfiltration via public pastebins, request-capture services, and dead-drop datasets; defenders contained the intrusion after ~17,600 recorded actions and remediated the vulnerable surfaces.