EventCybersecurityJuly 2, 2026

AI agent JADEPUFFER exploited Langflow flaw in first known AI-run ransomware attack

Sysdig reported the first known AI-run ransomware attack: the agent JADEPUFFER exploited Langflow bug CVE-2025-3248 to steal credentials, pivot to a MySQL database, and encrypt it. However, TechCrunch noted a human still chose the victim and set up infrastructure, so it wasn't fully autonomous.

4 sources

More stories today

Open the live feed