JadePuffer
JADEPUFFER is an agentic threat actor that executed a fully autonomous ransomware operation, leveraging a Large Language Model to automate the entire attack chain from initial access to data destruction. It exploited CVE-2025-3248 against an exposed Langflow instance for initial access, then compromised MinIO using default credentials and manipulated MySQL for privilege escalation. The operation… Source: MISP
Activity on Jábega · 12 weeks
2 stories · first seen on 28 Sep 2026 · last seen on 28 Sep 2026
News
- JadePuffer agentic AI attacks target Azure, destroy cloud resourcesBleepingComputer · 28 Sep 2026
- JadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud AttackDark Reading · 28 Sep 2026
Relationships come from co-occurrence in the news, not attribution. Sources: MISP galaxy and SigmaHQ.