AnalysisCybersecurityJuly 27, 2026

ENCFORGE ransomware targets AI model files in Langflow attacks

The JADEPUFFER agentic threat actor has deployed ENCFORGE, a Go-based ransomware designed to encrypt AI model weights and vector databases. Sysdig researchers documented the attacks on an internet-facing Langflow server, noting that the ransomware payload is currently unable to successfully collect ransom payments.

2 sources

More stories today

Open the live feed
ENCFORGE ransomware targets AI model files in Langflow attacks