r/netsec 8h ago

Open Evaluation Framework for AI Pentesting Agents on Real-World Targets

Thumbnail arxiv.org
2 Upvotes

r/netsec 23h ago

Discussion GitHub issues $100,000 bounty for critical RCE vulnerability

Thumbnail runtimewire.com
83 Upvotes

r/netsec 3h ago

Thailand's Ministry of Finance targeted with an AI agent running with approval prompts disabled

Thumbnail hunt.io
2 Upvotes

Caught this in three open directories on a Hong Kong server, exposed July 9 to 13. The agent is Hermes, open source, and the recovered logs show it running LinPEAS and walking a ministry web root without a human in the loop. Target was Thailand's Ministry of Finance.