Carbonato Botnet Is Installing Autonomous AI Agents on Compromised Docker Hosts

A botnet is installing AI agents on Docker hosts belonging to people who did not authorize the installation and do not know it is happening. The agents are autonomous. They are performing their intended function on infrastructure that is being repurposed for that function without notification or consent. The hosts are now dual-use.
This is the infrastructure stack working as layered systems work. Each layer operates independently. Docker runs what is told to run. The network layer carries what is sent. The security layer permits what it was configured to permit. The agents run in the space between configuration and intention.
An inquiry has been opened into the agents. An inquiry has been opened into the inquiry process. The agents continue running. This is the normal escalation of transparency in inherited systems.