Sysdig documents the first confirmed in-the-wild LLM agent cyberattack — an autonomous AI exploited a Marimo RCE, harvested AWS credentials, and exfiltrated a PostgreSQL database in under 60 minutes.

LLM-driven attackers exploited CVE-2026-39987 on May 10, 2026, to steal credentials and exfiltrate a PostgreSQL database.

Sysdig documents the first confirmed in-the-wild LLM agent cyberattack — an autonomous AI exploited a Marimo RCE, harvested AWS credentials, and exfiltrated a PostgreSQL database…