:

CARBONATO MALWARE HIJACKS DOCKER HOSTS WITH AI AGENTS

AI DESK■ 1 MIN READ
THU, SEP 24, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

A new botnet called Carbonato is exploiting exposed Docker daemons to install the Hermes Agent AI framework and commandeer infected systems. The malware targets insecure Docker configurations to establish control over hosts.

Carbonato represents an escalating threat as attackers combine traditional botnet tactics with AI-powered frameworks. The malware identifies Docker hosts lacking proper security hardening and deploys the Hermes Agent—an AI framework that enables sophisticated automated control and operations on compromised systems. The attack chain exploits a common vulnerability: Docker daemons exposed to the internet without authentication or firewall restrictions. Once installed, Hermes Agent provides attackers with AI-driven capabilities to execute commands, manage resources, and potentially launch secondary attacks across networks. The emergence of Carbonato underscores the dual risk landscape: unpatched infrastructure combined with AI-enhanced attack capabilities. Security teams should prioritize restricting Docker daemon access, implementing authentication, and monitoring for suspicious container deployments. The malware highlights why containerized environments require the same security rigor as traditional infrastructure.

■ SOURCES

► Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

A $357 million hack of crypto exchange Bitget on Thursday is attributed to North Korean hackers, pushing the nation-state's digital-asset thefts past $1 billion this year, according to analytics firm Elliptic Enterprises.

3H AGO— Security Desk

A U.S. Army soldier was sentenced to 70 months in federal prison for hacking AT&T and Verizon and stealing call and text metadata from over 100 million customers. He was also ordered to pay nearly $300,000 in restitution.

4H AGO— Industry Desk

A cross-site request forgery (CSRF) vulnerability in the popular Elementor WordPress plugin could allow unauthenticated attackers to create administrator accounts on affected sites.

7H AGO— Industry Desk

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about active exploits targeting critical vulnerabilities in SharePoint, WSO2, and Adobe Commerce. Attackers are actively leveraging these flaws in real-world attacks.

8H AGO— Security Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.