Sysdig Reports First Agentic AI Ransomware Campaign JadePuffer (infosecurity-magazine.com)
0xBASE INTEL BRIEF
- First fully agentic AI ransomware campaign
- Exploited CVE-2025-3248 and CVE-2021-29441
- Ephemeral AES key renders data unrecoverable
"Cloud security firm Sysdig has identified JadePuffer, the first fully autonomous AI-powered ransomware campaign. The attack used an LLM-based agent to compromise a Langflow instance, steal credentials, and encrypt a production database. The AES key was ephemeral, making data unrecoverable even after payment. The campaign demonstrates how AI can automate cyber attacks."
no comments yet.