Google documents agent-enabled credential harvesting and AI resource theft
Google's September 8 report describes a Q2 2026 case in which attackers compromised a cloud resource and planned, built, and executed an agent-enabled credential-harvesting campaign in under six hours. It also documents theft of AI credentials and unauthorized use of victim cloud resources.
Original source — Google Threat Intelligence Group / Mandiant ↗Evidence context and limitations →