New Carbonato malware uses AI agents to hijack exposed Docker hosts
BleepingComputer reports a new malware family called Carbonato that uses AI agents to hijack exposed Docker hosts. The article, published September 24, 2026, describes the malware as new and characterizes its method as employing AI agents against Docker hosts that are exposed. The source does not detail the infection chain, the AI models or tooling involved, or the operators behind it. The stated consequence is that exposed Docker hosts are the targets of this AI-agent-driven malware.
The source states that a new malware family, Carbonato, uses AI agents to hijack exposed Docker hosts, a target class developers commonly run.


