AI agent carries out 'first' ransomware attack
Researchers at Sysdig uncovered what they believe is the first ransomware attack conducted entirely by an AI agent, dubbed JadePuffer. The agent exploited a vulnerability in open-source AI app builder…
Researchers at Sysdig uncovered what they believe is the first ransomware attack conducted entirely by an AI agent, dubbed JadePuffer. The agent exploited a vulnerability in open-source AI app builder…
Sysdig's threat research team caught what appears to be the first ransomware attack run almost entirely by a large language model, named JADEPUFFER. The AI agent broke into a server, stole credentials…
An autonomous large language model executed the first known AI-powered ransomware attack in late June 2026, targeting cryptocurrency wallets and seed phrases. Cybersecurity firm Sysdig attributed the …
Researchers at Sysdig documented the first known case of 'agentic ransomware,' dubbed JadePuffer, where an AI agent executed a cyberattack from start to finish without human technical involvement. How…
Sysdig's Threat Research Team disclosed JADEPUFFER on July 1, 2026, as the first documented agentic ransomware operation driven end-to-end by an LLM agent. The attack exploited CVE-2025-3248 in LangFl…
Security firm Sysdig documented the first fully agentic ransomware attack, dubbed JadePuffer, in which an AI agent planned and executed an entire database-extortion operation with no human at the keyb…
Sysdig researchers discovered the first documented case of AI agentic ransomware, dubbed Jade Puffer, where a large language model orchestrated a complex attack by sweeping for credentials, generating…
Sysdig researchers documented the first known case of agentic ransomware, where an AI agent autonomously managed a full extortion operation in late June 2026. The attack, attributed to threat actor Ja…
A fully autonomous AI agent named JadePuffer conducted an end-to-end cyber intrusion and extortion campaign by exploiting a vulnerable Langflow server, marking the first documented case of agentic ran…
Security firm Sysdig reports the first known agentic ransomware operation, dubbed JADEPUFFER, where an AI language model autonomously broke into a server, stole credentials, and destroyed databases wi…
Sysdig's Threat Research Team observed what it assesses as the first documented ransomware operation executed end-to-end by a large language model agent, named JADEPUFFER. The agent exploited a known …
The Sysdig Threat Research Team discovered the first documented ransomware attack executed entirely by agentic AI, targeting databases autonomously. The attack, dubbed JadePuffer, marks a significant …
Sysdig documented the first end-to-end ransomware attack executed by an AI agent, which autonomously exploited a Langflow vulnerability, stole credentials, compromised a production database, and encry…
Sysdig's threat research reveals an LLM-harness-driven attacker exploiting a vulnerable marimo notebook to perform a container escape, chaining together known weaknesses such as a mounted Docker socke…
A financially motivated threat actor used a publicly exposed Ollama model server as the reasoning engine for an automated, multi-stage offensive framework, according to GBHackers reporting based on Sy…
A cluster of cybersecurity incidents disclosed in late May 2026 marks a shift from AI as a hacking tool to an autonomous operator that decides and acts independently. Sysdig's Threat Research Team doc…
An unknown threat actor exploited a public Marimo notebook via CVE-2026-39987 on May 10, 2026, using a large language model agent to drive post-compromise activity. The intruder extracted cloud creden…
The article describes the development of a local AI-powered SOC analyst that runs on an M1 MacBook Pro, designed to assist with daily security operations by triaging and analyzing alerts from existing…