The Dutch Institute for Vulnerability Disclosure (DIVD) suffered an AI-driven cyberattack that the organization described as “loud and very, very messy.” DIVD is a nonprofit organization of volunteer security researchers that scans the internet for systems affected by known vulnerabilities, notifies their owners, and provides information on how to mitigate the risks. Late last week, the organization said it had been hacked for the first time in seven years of operations, with the intrusion carried out autonomously by an AI agent.
DIVD explained in a public statement that the attack was unlike any they had seen before. “This is an attack we have not seen before. Not because it’s our first, but because the modus operandi indicates that this is an agentic AI-powered attack,” the organization wrote. The threat actor exploited a “technical vulnerability” in an undisclosed system, which DIVD specifically said was not Citrix NetScaler, and then used an automated AI agent to perform post-exploitation activities.
According to DIVD, the AI agent acted autonomously on their network, deciding the next step itself “at the speed of light and sloppy logic or pattern.” The agent did “some pretty dumb things,” including interfering with its own adversary-in-the-middle attack via password spraying. It also over-explained its decisions in comments, providing investigators with ample material for reverse-engineering.
DIVD launched an investigation and informed the police, the Autoriteit Persoonsgegevens (data protection authority), and the National Cyber Security Center (NCSC). The organization withheld full details to avoid influencing the investigation or putting more victims at risk. DIVD promised to provide a more detailed update on October 1 and to notify other possible victims of the same vulnerability as soon as they can.
BleepingComputer contacted DIVD for additional information about the flaw and its patch status but did not receive a response by publication time.