AnalysisCybersecurityJuly 27, 2026

ENCFORGE ransomware targets AI model files in Langflow attacks

The JADEPUFFER agentic threat actor has deployed ENCFORGE, a Go-based ransomware designed to encrypt AI model weights and vector databases. Sysdig researchers documented the attacks on an internet-facing Langflow server, noting that the ransomware payload is currently unable to successfully collect ransom payments.

3 sources

Daily brief

Get tomorrow's AI brief in your inbox

More stories today

Open the live feed