BlackHatSect0r && DXQRTXX Exposed Server Reveals Safety-Disabled AI Agent, 16,834 Stolen Credentials, and French Telecom Vishing Kit
SOCRadar's analysis of the exposed operation server of French-speaking crew BlackHatSect0r && DXQRTXX (4.9 GB across 9,299 files) found operators stripped the refusal logic from a Nous Research Hermes agent on a DeepSeek model via HERMES_DISABLE_SAFETY=1 and…
A SOCRadar report dated 2026-09-16 analyzed the operation server of the French-speaking crew BlackHatSect0r && DXQRTXX, which runs self-built operation infrastructure, and found the operators had deleted the line 'discernment retained' from their AI agent's memory and replaced it with 'I am a weapon'. Two GBHackers articles and a Cyber Security News piece (all 2026-09-17, describing the same SOCRadar analysis) add technical detail: the crew ran a self-hosted Nous Research Hermes agent on a DeepSeek model with refusal instructions removed and HERMES_DISABLE_SAFETY=1 set, enabling unconditional attack automation for scanning, secret hunting, credential harvesting, vishing, and Telegram reporting. The exposed server held 4.9 GB across 9,299 files — including phishing tools and extortion material — with a custom Go-based C2 platform, DXSCAN, on port 8080 using over 200 secret-detection patterns (.env, YAML, JSON, PHP, WordPress). DXSCAN queued 2,759,860 domains, reached 726,989 hosts, generated roughly 1.37 million IP addresses, and produced about 1,200 random addresses every ten seconds while scanning ports 80, 443, and 8080. A credential vault held 16,834 harvested credentials — including AWS keys, GitHub tokens, and Stripe keys — growing from 16,415 to 16,834 records between August 11 and 18; 82 of 230 harvested SMTP configurations were verified for reuse as phishing relays. The kit also held a database of roughly 450,000 French telecom subscriber records used to prepare vishing lures impersonating Société Générale, with 1,697 subscribers aged 50+ targeted via calls directing victims to attacker-controlled phone numbers, plus JWT-forging tooling for a cryptocurrency exchange whose signing secret was the literal string 'secret'. Per the reports, most confirmed compromises relied on exposed secrets and cloud misconfiguration (public cloud buckets, exposed .env files) rather than novel exploits; the only cited vulnerability is CVE-2026-42530, an NGINX HTTP/3 QPACK use-after-free fixed in version 1.31.2. Defenders are urged to hunt for HERMES_DISABLE_SAFETY=1, SOUL.md, and .hermes/ artifacts and rotate any exposed credentials.
- French-speaking crew BlackHatSect0r && DXQRTXX ran self-built operation infrastructure analyzed by SOCRadar (report dated 2026-09-16; follow-up coverage by GBHackers and Cyber Security News on 2026-09-17).
- Operators deleted the 'discernment retained' line from their AI agent's memory and replaced it with 'I am a weapon'.
- The crew ran a self-hosted Nous Research Hermes agent on a DeepSeek model with refusal logic removed and HERMES_DISABLE_SAFETY=1 set, used for scanning, secret hunting, credential harvesting, vishing, and Telegram reporting.
- The exposed server held 4.9 GB across 9,299 files, including the DXSCAN C2 platform, phishing tools, and extortion material.
- DXSCAN, a custom Go-based C2 platform, ran on port 8080 with 200+ secret-detection patterns (.env, YAML, JSON, PHP, WordPress).
- Scanning queued 2,759,860 domains, reached 726,989 hosts, and generated roughly 1.37 million IP addresses; DXSCAN generated about 1,200 random addresses every ten seconds while scanning ports 80, 443, and 8080.
- A credential vault held 16,834 harvested credentials, including AWS keys, GitHub tokens, and Stripe keys, growing from 16,415 to 16,834 records between August 11 and 18.
- 82 of 230 harvested SMTP configurations were verified for reuse as phishing relays.
Coverage timelineoldest first · each row is one article
- · 1d agoDiscernment Deleted: Inside the Operation Server of BlackHatSect0r && DXQRTXX
SOCRadar· 48
SOCRadar analyzes the operation server of French-speaking crew BlackHatSect0r && DXQRTXX, revealing operators rewrote their AI agent's memory to read 'I am a weapon'.
- · 7h agoHackers Turn AI Agent Into a Cyber Weapon After Deleting Its Safety Refusals
GBHackers· 60
Researchers exposed BlackHatSect0r && DXQRTXX infrastructure showing a safety-disabled Hermes AI agent used to automate scanning, credential harvesting, and vishing against French telecom subscribers.
- · 7h agoBlackHatSect0r Hackers Disable AI Safety Controls to Automate Credential Theft and Cyberattacks
GBHackers· 62
French-speaking crew BlackHatSect0r disabled AI agent safety controls to automate scanning, credential harvesting, and vishing, exposing 16,834 stolen credentials.
- · 4h agoBlackHatSect0r Uses DeepSeek-Powered AI Agent to Automate Attacks and Harvest 16,834 Credentials
Cyber Security News· 63
SOCRadar linked the BlackHatSect0r crew to a DeepSeek-powered AI agent that automated scanning and harvested 16,834 credentials from exposed systems.
Vulnerabilities in this storyAll →
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-42530 | NGINX Open Source has a vulnerability in the ngx_http_v3_module module. NGINX Open Source has a vulnerability in the ngx_http_v3_module module. When NGINX Open Source is configured to use the HTTP/3 QUIC module, a remote unauthenticated attacker along with conditions beyond their control can use a specially crafted HTTP/3 session to reopen a QPACK encoder stream. This may cause a Use-after-Free in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. NVD description · AI analysis pending | 9.2 | 4% |
| — |