Dream reported that attackers used the open-source AI agent frameworks Hermes and OpenClaw to conduct a near-autonomous intrusion against government entities in Asia, compromising 85 employee accounts and stealing at least 2,500 personnel records. The campaign unfolded in 12 attack waves and used up to eight parallel sub-agents to automate reconnaissance, credential attacks, API testing, data collection, and lateral movement at machine speed.
The attackers reportedly mapped 21 connected government systems and exploited multiple server-side weaknesses, including unauthenticated APIs, insecure authentication endpoints, weak token validation, and acceptance of JWTs using the none algorithm. Dream said the operation harvested employee identifiers from exposed APIs, used OCR-assisted password spraying, and then reused compromised credentials through an SSO bridge to reach internal systems; an archive linked to the campaign also contained internal network ranges, seven SSO client secrets, and six database credentials. The operator was not identified, but Dream observed Chinese-language indicators in the activity, while public reporting linked the targets to Taiwan.

See the actors and campaigns active against you right now.
4 events from the most recent confirmed update back to the earliest known activity.
Dream published research describing a multi-agent AI framework used to compromise government entities in Asia. The report said researchers uncovered a 160 MB archive with 1,395 files documenting the operation and associated secrets and credentials.
The intrusion resulted in the extraction of at least 2,564 personnel records, including 1,409 employee entries, 916 user records from an exposed API, and 239 legal-professional records from a Ministry of Justice endpoint. Dream said the compromises were driven primarily by server-side weaknesses such as unauthenticated APIs, insecure authentication endpoints, weak token validation, and acceptance of JWTs using the none algorithm.
During the campaign, the framework used OCR-assisted password spraying with usernames harvested from exposed APIs and cracked 85 employee accounts. Eighty-four of those accounts successfully authenticated to an internal information system through an SSO bridge, exposing internal dashboards and management tools.
Dream reported that a near-autonomous intrusion campaign against government entities in Asia ran across 12 attack waves using Hermes and OpenClaw with up to eight parallel sub-agents. Public reporting linked the targets to Taiwan, though Dream did not name the victims or operator.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
3 references tracked. Mallory keeps watching after this page renders.
cybersecuritynews.com
Open sourcecryptika.com
Open sourcedreamgroup.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.