Last updated: September 29, 2026 at 8:42 AM UTC
All 891 Vulnerability 357 Breach 144 Threat 383 Defense 7
Tag: agentic-ai (1 article)Clear

Aurora ransomware crew used an AI coding agent for hands-on network intrusion

Researchers at CloudSEK and Gambit Security found that operators of the Russian-speaking Aurora ransomware used the agentic coding assistant Cursor to help break into around ten victim networks. After obtaining valid credentials or a route in, the operator directed the agent to run reconnaissance, assess privileges, scan internally, and attempt exploitation, often revising commands several times before they worked, which shows the human stayed in control and used the AI as an assistant rather than an autonomous attacker. The group also built a Linux encryptor that force-terminates VMware ESXi guest virtual machines to unlock their disk files before encrypting them. Initial access in one case came through help desk impersonation phone calls.

Check
Assume attackers now use agentic AI to accelerate hands-on intrusion, and focus detection on the resulting behavior: unusual internal scanning, privilege checks, log clearing, Defender being disabled, and mass ESXi activity.
Affected
Organizations facing hands-on ransomware intrusions, including VMware ESXi environments; operators use AI assistants to speed reconnaissance and exploitation after entry, and the ESXi encryptor kills guests to encrypt their disks.
Fix
Harden help desk verification against impersonation calls, protect ESXi management interfaces, restrict lateral movement, alert on Defender tampering and log clearing, and keep offline backups, since AI mainly speeds familiar steps.