A threat actor allegedly used the open-source Hermes AI agent to automate post-exploitation tasks during an attack targeting Thailand’s Ministry of Finance. Researchers discovered exposed attacker directories containing web shells, stolen credentials, exploit code, custom scripts and activity logs. The evidence points to possible access to several ministry systems, although the ministry has not confirmed…