{"id":127221,"date":"2026-08-02T12:57:10","date_gmt":"2026-08-02T12:57:10","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/127221\/"},"modified":"2026-08-02T12:57:10","modified_gmt":"2026-08-02T12:57:10","slug":"deepseek-powered-ai-used-to-launch-attacks-agentic-threats-may-go-beyond-one-offs","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/127221\/","title":{"rendered":"DeepSeek-Powered AI Used To Launch Attacks \u2014 Agentic Threats May Go Beyond One-Offs"},"content":{"rendered":"<p><img decoding=\"async\" class=\" top-image\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/08\/1785675430_566_0x0.jpg\" alt=\"Elite hacker enters information corridor with digital red chines\" data-height=\"1726\" data-width=\"3069\" fetchpriority=\"high\" style=\"position:absolute;top:0\"\/><\/p>\n<p>Chinese hackers in action.<\/p>\n<p>getty<\/p>\n<p>Zero Trust meets agentic AI in the wild. And what happens next should concern attackers and defenders alike. A Chinese threat actor used a DeepSeek-powered Hermes Agent to find and attack vulnerable servers. It selected targets, downloaded exploits and changed course when it failed.<\/p>\n<p>Per <a class=\"color-link\" href=\"https:\/\/unit42.paloaltonetworks.com\/autonomous-ai-cyber-attack-campaign\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/unit42.paloaltonetworks.com\/autonomous-ai-cyber-attack-campaign\/\" aria-label=\"Palo Alto Networks\u2019 Unit 42\">Palo Alto Networks\u2019 Unit 42<\/a>, this time authentication stopped the agent before it compromised targets. But today\u2019s Zero Trust <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2026\/07\/31\/who-owns-trust-zero-trust-is-about-to-fail-its-ai-test\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/zakdoffman\/2026\/07\/31\/who-owns-trust-zero-trust-is-about-to-fail-its-ai-test\/\" target=\"_self\" aria-label=\"cannot contain\" rel=\"nofollow noopener\">cannot contain<\/a> tomorrow\u2019s agentic AI attacks. Existing controls can verify access and block exploits. They cannot control how an agent interprets its authority and acts. <\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-0\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2026\/08\/01\/microsoft-issues-hotel-wi-fi-warning-for-windows-pc-users\/\" target=\"_blank\" aria-label=\"Microsoft Issues Hotel Wi-Fi Warning For Windows PC Users\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/zakdoffman\/2026\/08\/01\/microsoft-issues-hotel-wi-fi-warning-for-windows-pc-users\/\" rel=\"nofollow noopener\">ForbesMicrosoft Issues Hotel Wi-Fi Warning For Windows PC UsersBy Zak Doffman<\/a><\/p>\n<p>But it came close \u2014 and here\u2019s the twist. The agent also exposed its operator\u2019s infrastructure \u2014 API keys, exploit code, target lists and attack logs. This was not rogue AI. It was authorized AI operating outside human supervision. That should worry us more, not less. For now, we can report these incidents as one-offs. But this threat will scale faster than our ability to control it.<\/p>\n<p>So, while this is an example of Zero Trust holding up \u2014 it\u2019s also an indication of where it will fail. And while agentic attacks improve and scale, Zero trust needs a rethink. Identity is not authority. Authority must be independently verifiable, revocable and time-limited. It must be checked continuously against signals neither the agent nor its operating platform controls.<\/p>\n<p>According to Unit 42, \u201cthe system executed hundreds of hours of manual targeting analysis in mere minutes, while also managing its own compute resources.\u201d That pace means it identified vulnerabilities and launched attacks autonomously, without checking back.<\/p>\n<p>The researchers describe the margin of failure as \u201cnarrow.\u201d Given this is a threat landscape that becomes more dangerous by the week, that should worry all of us. This will be industrialized.<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-1\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2026\/07\/31\/who-owns-trust-zero-trust-is-about-to-fail-its-ai-test\/\" target=\"_blank\" aria-label=\"Who Owns Trust\u2014Zero Trust Is About To Fail Its AI Test\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/zakdoffman\/2026\/07\/31\/who-owns-trust-zero-trust-is-about-to-fail-its-ai-test\/\" rel=\"nofollow noopener\">ForbesWho Owns Trust\u2014Zero Trust Is About To Fail Its AI TestBy Zak Doffman<\/a><\/p>\n<p>There\u2019s a <a class=\"color-link\" href=\"https:\/\/www.rand.org\/pubs\/commentary\/2008\/11\/terrorists-have-to-be-lucky-once-targets-every-time.html\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/www.rand.org\/pubs\/commentary\/2008\/11\/terrorists-have-to-be-lucky-once-targets-every-time.html\" aria-label=\"long-standing truism\">long-standing truism<\/a> in the world of physical attacks that defenders need to succeed every time, but attackers need to succeed just once. In the world of inherently scalable and improvable AI attacks, that quickly becomes a nightmare that cannot be contained. <\/p>\n<p>A 99% cybersecurity defensive success rate is now viewed as exceptional. But at agentic scale, the remaining 1% can be tested repeatedly, across thousands of targets. That\u2019s the asymmetry defenders now face. The agent never tires or gives up. It simply changes course and tries again. <\/p>\n","protected":false},"excerpt":{"rendered":"Chinese hackers in action. getty Zero Trust meets agentic AI in the wild. And what happens next should&hellip;\n","protected":false},"author":2,"featured_media":127222,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[179,7493,24,53,63725,935,182,63726,320,11059,9578],"class_list":["post-127221","post","type-post","status-publish","format-standard","has-post-thumbnail","category-agentic-ai","tag-agentic-ai","tag-agentic-artificial-intelligence","tag-ai","tag-anthropic","tag-china-hacker","tag-chinese","tag-claude","tag-deepest","tag-microsoft","tag-open","tag-zero-trust"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/127221","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=127221"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/127221\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/127222"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=127221"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=127221"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=127221"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}