Carbonato botnet uses AI agent to hijack exposed Docker hosts
Malwarebytes found a new botnet called Carbonato that infects Docker hosts with an unauthenticated API exposed on port 2375. It launches a privileged container, installs an SSH server with the operator's key, and deploys the Hermes Agent AI framework with an agent named GH0ST to harvest keys and tokens via Telegram.
- Attack abuses Docker API on port 2375 without authentication
- Registry held nearly 60 repositories and 4.3 GB of images
- GH0ST AI agent collects API keys, SSH credentials and tokens
- Worm-like spread scans networks every five minutes
Read next
Security