New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack
Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, the AI-agent-driven operator first documented earlier this…
Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, the AI-agent-driven operator first documented earlier this…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence…
Security firm Sysdig has identified what it believes is the first ransomware attack fully orchestrated by an AI agent, dubbed JADEPUFFER. The…
The first known case of agentic ransomware, codenamed JADEPUFFER, where a human operator deployed an artificial agent to handle the entire extortion…
Threat actors are actively exploiting CVE-2026-33017, a critical unauthenticated remote code execution vulnerability in Langflow (CVSS 9.3), to deploy a Monero cryptocurrency…
Langflow versions before 1.3.0 expose the /api/v1/validate/code endpoint without authentication, allowing remote attackers to execute arbitrary Python code. CVSS score 9.8. Added…
Flodrix is a botnet malware that was distributed via exploitation of CVE-2025-3248 in Langflow in June 2025, demonstrating the ongoing targeting of…