Brazil INSS Systems Hit by AI Agent Attack, 375 Logins Stolen
BRAZIL · CYBERSECURITY
Key Facts
- —What happened Researchers say an attacker used an autonomous AI agent to steal login credentials from Brazilian government servers, including systems around the social security institute INSS.
- —Who said it The security news outlet Cybernews, in a report published on 9 September 2026. No other outlet has published its own account of the incident.
- —The catch The researchers say they found the operation running on 6 July 2026. They could not establish how deep into government systems the intruder had reached.
- —Context INSS pays pensions to tens of millions of Brazilians. Dataprev runs the computer systems behind it.
- —Why it matters Cybernews says the attacker also took digital certificates used to sign and authenticate official transactions.
- —What comes next INSS, Dataprev and the national response centre CERT.br have not published a statement.
A security team says it watched an AI agent working through Brazilian government servers in real time.

An attacker used the autonomous AI agent Manus to steal login credentials from 40 Brazilian government servers. Cybernews reported the intrusion on 9 September 2026. The haul included 375 credential pairs and digital certificates, the researchers say. INSS, Dataprev and CERT.br have not commented.
What the Researchers Describe
Cybernews says its research team found the operation on 6 July 2026, while it was still running.
The attacker was using Manus, an autonomous AI agent that carries out multi-step tasks on its own.
Command-and-control traffic ran through servers hosted on Google Cloud Platform and Microsoft Azure, the report says.
The account rests on the Cybernews team’s own telemetry. No independent report of the same incident has been published.
What Was Taken
The report puts the haul at 375 credential pairs drawn from 40 government servers.
A credential pair is a username and its password, the key to one account on one system.
Cybernews says the servers belonged to Active Directory domains at INSS, Dataprev and the wider social security administration.
Active Directory is the system that decides who inside an organisation may open which file.
The Certificates Are the Bigger Prize
The attacker also took ICP-Brasil A3 certificates, according to the report.
ICP-Brasil is the state-run system that issues Brazil’s digital identities and legally valid electronic signatures.
An A3 certificate normally lives on a smart card or token and stands in for a signature on official business.
Cybernews says the attacker went further and injected a fraudulent certificate authority into the environment.
What That Would Allow
A rogue certificate authority lets an attacker vouch for identities that are not real.
The report says this could place the attacker between an employee and an online service.
From there, traffic can be read and altered while both sides believe the connection is secure.
Security engineers call that a man-in-the-middle position, and it is difficult to notice from either end.
What Manus Is
Manus is an autonomous AI agent that plans and executes tasks with little human supervision.
It was built by Butterfly Effect, a company founded in China by Xiao Hong in 2022.
The firm moved its headquarters to Singapore in mid-2025, taking part of its technical staff with it.
Manus launched in invitation-only beta in March 2025 and has been marketed for research and office work, not intrusion.

Who INSS and Dataprev Are
INSS is Brazil’s national social security institute. It pays retirement pensions, survivor benefits and sickness benefits.
Dataprev is the state technology company that runs the databases and services behind those payments.
Between them they hold income histories, employment records and identity data for most of the adult population.
Cybernews frames the exposure as reaching data touching as many as 214 million Brazilians.
How Far It Went
The researchers could not determine how far into government systems the attacker actually got.
No evidence has been published that pension records were copied or altered.
The attacker has not been identified, and Manus is a commercial product that anyone can buy.
INSS, Dataprev and CERT.br have issued no statement since the report appeared.
Why Brazilians Will Read This Closely
Brazil spent 2025 working through a scandal over unauthorised deductions taken from pension payments.
Federal police and the comptroller general opened arrests, and the government moved to reimburse around 1.8 million retirees.
That episode turned INSS data handling into a political subject rather than a technical one.
A report about stolen credentials therefore lands in a country already arguing about who can reach its pension records.

The Wider Pattern
Security researchers have spent 2026 documenting attacks in which AI agents do the work that once needed a skilled operator.
The effect is speed and scale rather than a new class of vulnerability.
Stolen credentials remain the most common way into a large organisation, with or without an agent driving.
However, an agent can try thousands of doors in the time a person tries a few.
What to Watch
Any statement from INSS, Dataprev or CERT.br confirming or disputing the account.
Whether Brazil’s data protection authority opens a formal inquiry.
Whether the certificates named in the report are revoked, which would be visible to anyone who checks.
And whether a second outlet or a government body publishes its own findings.
More: Brazil news and analysis, every day from The Rio Times.
Frequently Asked Questions
What did Cybernews report?
That an attacker used the AI agent Manus to take 375 credential pairs from 40 Brazilian government servers, including INSS systems.
When did this happen?
Cybernews says its team found the operation running on 6 July 2026. The report was published on 9 September 2026.
What are ICP-Brasil A3 certificates?
Digital certificates issued under Brazil’s state public key system. They authenticate users and carry legally valid electronic signatures.
What is Manus?
An autonomous AI agent from Butterfly Effect, a company founded in China in 2022 and headquartered in Singapore since mid-2025.
Has the government responded?
INSS, Dataprev and CERT.br have not published a statement.
Has anyone confirmed the report independently?
No. The account comes from the Cybernews research team, and no independent report of the same incident has been published.
Sources: Cybernews report of 9 September 2026 on the attack against Brazilian government servers, published at cybernews.com; Butterfly Effect and Manus company information; Brazilian federal police and comptroller general statements on the 2025 INSS deductions case.
This article was produced by The Rio Times’ automated newsroom system. How we use AI · Report an error
Read More from The Rio Times