JADEPUFFER evolves: The agentic threat actor deploys ransomware built to destroy AI models
ID: edc0ff94-2648-5f95-9eae-97dfce195508
STIX ID: report--edc0ff94-2648-5f95-9eae-97dfce195508
Feed Name: Sysdig Blog
## Executive summary The Sysdig Threat Research Team documents an active JADEPUFFER campaign that exploited Langflow CVE-2025-3248 to chain reconnaissance, credential harvesting, a Docker-host escape, and deployment of ENCFORGE — a UPX-packed Go ransomware built to irreversibly encrypt AI/ML artifacts (model checkpoints, vector indices, training datasets). The report provides technical analysis of the exploit and escape tooling, unpacked binary characteristics, IOCs (C2 IPs, SHA-256s, embedded RSA key, extortion contact), detection rules, and pragmatic mitigations including patching Langflow, restricting Docker socket access, protecting model assets, and credential rotation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
