Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts

MediumDark Reading · Alexander Culafi·

At a glance

Severity
Medium
Used in attacks
No flaws named
Vendors and products
Docker
Reported by
1 outlet

The botnet uses the open source Hermes Agent AI framework to execute commands via Telegram and steal AI API keys from exposed Docker hosts.

We summarise and link; this source is not one we hold a licence to reproduce. Everything below is what CyberBrief adds: the vulnerabilities involved, whether they are being exploited, who is named, and who else covered it.

Fastnexa security experts

Dealing with this in your own company?

If this story touches software, suppliers or systems you use, a Fastnexa security expert can tell you what it means for you and what to do first.

Book a 30-min callWhatsApp us

Think you’ve already been hit? Don’t wait on a form: call or WhatsApp +1 (732) 454 2616. We reply within 1 hour, 24/7. Emergency help →

Coverage

One outlet has carried this so far.

  1. Dark Reading ↗Established SourceFirst reported

    2026-09-28 20:23 UTC

Related stories