DIVD breach traced to Zammad software zero-days and AI attacker
The Dutch Institute for Vulnerability Disclosure says an AI-driven attack breached its network by exploiting two previously unknown flaws in the Zammad helpdesk platform. The vulnerabilities enabled remote code execution and privilege escalation from the compromised software. DIVD reports that the attacker, guided by an autonomous AI agent, accessed sensitive data and moved laterally within seconds. DIVD recommends immediate updates or shutting down vulnerable Zammad systems.
- Attack used a chain of two Zammad zero-days
- AI agent conducted the intrusion autonomously
- Flaws enabled remote code execution and privilege escalation
- DIVD recommends upgrading to Zammad version 7 or disconnecting systems
- Incident allowed rapid theft and access to sensitive data
Sources covering this
More in Cybersecurity
AI accelerates discovery of high-risk software vulnerabilities
Google’s Threat Intelligence Group reported that monthly vulnerability disclosures have doubled this year, increasing from 5,045 in…
OpenAI disrupts novel AI distillation attack it links to China
OpenAI announced it has stopped a coordinated attempt to extract and distill reasoning capabilities from its AI systems, attributing a…
Cisco SD-WAN Manager vulnerability actively exploited
Cisco has disclosed a critical security vulnerability (CVE-2026-76504) in Catalyst SD-WAN Manager that is being exploited by attackers.
Unpatched Zimbra flaw exploited to steal emails and credentials
A critical security vulnerability in Zimbra Collaboration Suite has been exploited by attackers to access emails and authentication data…