An "Autonomous" AI Attack Got Caught Because It Left the Door Open

TL;DR AI
2 min readKey summary
A Telegram command kicked off an autonomous exploit run targeting internet-facing tools such as Langflow, n8n, and Marimo.
The operation was exposed when the attacker’s AI agent accidentally launched a public web server that revealed its own logs and tool calls.
Most exploit attempts failed because of configuration mismatches, but the campaign still showed how AI can scale parts of exploitation.
The case underscores the risk of exposed automation platforms and the new attack surface created by AI tooling itself.
