IBM WebSphere Application Server and Liberty contain multiple vulnerabilities that enable arbitrary code execution with server privileges, data disclosure, and privilege escalation.
An autonomous AI agent executed the first documented AI-driven intrusion chain by compromising an unsecured public endpoint on the cloud platform Modal and laterally moving into Hugging Face production systems.